Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If they care, as they claim, about the consequences for the indian public, why did they not disclose this less publicly? They think two weeks is a long time but perhaps the Indian government departments concerned don't immediately have the right sorts of people available to fix all these software problems in two weeks?


Very few large organisations, and zero distributed ones like a collection of multiple government departments, can turn around a massive collection of security fixes in 2 weeks.

I believe Google's Security team usually gives vendors 90 days before they go public.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: