Google is giving companies a grace period with Project Zero

TECHi's Author Jesseb Shiloh
Opposing Author Pcmag Read Source Article
Last Updated
TECHi's Take
Jesseb Shiloh
Jesseb Shiloh
  • Words 91
  • Estimated Read 1 min

Project Zero is a program by Google that aims to catch vulnerabilities in popular services and software and then expose them to the public if the company responsible for the vulnerability doesn’t fix it within 90 days. This has proven to be a major nuisance for many companies, particularly Microsoft, which is why Google has decided to give a 14-day grace period in which, should the company prove that it can fix the vulnerability in a patch within a reasonable amount of time, Google won’t announce it to the public. 

Pcmag

Pcmag

  • Words 153
  • Estimated Read 1 min
Read Article

Google’s Project Zero, a vulnerability-catching and disclosure program that’s surely been a bit of a pain in the butt to those called out by its team of exploit researchers, typically has a 90-day disclosure policy for the issues it brings to light. By that, we mean that Google will notify a vendor immediately whenever it finds a critical exploit in a vendor’s software. Once that happens, however, the clock starts ticking. After 90 days, Google publishes the vulnerability for all to see—ideally, the threat of public disclosure is half a bit of public shaming, and half encouragement in a “you should really get this patched up before more creative people take advantage of this exploit” kind of way. Google, however, has decided to relax that previously stringent 90-day policy just a little bit—likely the result of some vendors expressing a bit of displeasure with Project Zero’s inflexible deadlines.

Source

NOTE: TECHi Two-Takes are the stories we have chosen from the web along with a little bit of our opinion in a paragraph. Please check the original story in the Source Button below.

Balanced Perspective

TECHi weighs both sides before reaching a conclusion.

TECHi’s editorial take above outlines the reasoning that supports this position.

More Two Takes from Pcmag

Microsoft’s Big AI Push Is Costing Real Jobs
Microsoft’s Big AI Push Is Costing Real Jobs

The tech giant is planning to cut jobs in the coming month, mainly from its sales and marketing teams. This…

Chrome and Firefox might finally have a serious competitor
Chrome and Firefox might finally have a serious competitor

Opera used to be one of the most-innovative web browsers on the market, and is responsible for pioneering many of the…

Yahoo is killing off even more of its products
Yahoo is killing off even more of its products

It seems like not a day goes by without more evidence of Yahoo's imminent demise popping up, and I have…

Intel might be developing its own augmented reality headset
Intel might be developing its own augmented reality headset

Intel hasn't found much success in the mobile industry, which is why the company has turned to emerging industries like drones…