Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

[flagged]


Nice non-sequitur. Somehow the limiting factor on the ability of someone to judge professionalism is the number of papers they've written?


No, I'm just noticing again that people who don't don't do a lot of vulnerability research have a lot of interesting opinions about the professional norms of people who do that work. But you never know --- maybe they do a lot of research, in which case, yes, their opinion on security research norms is a lot more interesting to me.


I am not a security researcher, and I do not speak for the person you are replying to, but I do believe that Intel's documented history of unethical, anticompetitive practices against AMD, for example, deliberate compiler handicapping for non Intel CPUs[1], is enough evidence to establish at least some suspicion regarding these results, especially considering the short warning given to AMD before public disclosure.

I also wonder, what is the purpose of such white hat operations if vulnerabilities are disclosed publicly without anywhere near adequate time for a fix? Isn't SOP to give more time before going public?

1.https://en.m.wikipedia.org/wiki/Intel_C%2B%2B_Compiler#Criti...


I'm not arguing about Intel. If you think this is a giant conspiracy by Intel, more power to you --- I'm not engaging further on that.


[flagged]


What’s the background here?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: