Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If someone is willing to spend (e.g.) $1,000,000 on an exploit on the black market, but the software developer is only paying $50 (or nothing!) for people to report exploits, don't you think that something is wrong with this picture?


That's because the costs of a security vulnerability are externalized.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: