Thanks For Helping Fix Our Software -- We Won't Sue You This Time

from the small-thanks dept

A security company discovered some vulnerabilities in some Sybase code a couple weeks ago and handed them over to the company -- who did a good job of patching the problem relatively quickly. Then, things started to get messy, as the security company got ready to explain what the vulnerabilities were, leading Sybase to threaten to sue them. That's some thank you for finding the security hole. After a public backlash, Sybase has called off its legal dogs and issued an odd announcement "thanking" the company they were thinking about suing just a day before. It's amazing that this sort of thing keeps coming up. While this case had a bit of a twist, in that the bug was already patched, it's still all about a company trying to hide where its vulnerabilities are, rather than owning up to them. Security holes happen. Everyone knows that. The real question is how a company deals with them -- and that goes beyond just how quickly they patch the holes, but how they treat those who are helping them fix their software by finding the holes in the first place.
Hide this

Thank you for reading this Techdirt post. With so many things competing for everyone’s attention these days, we really appreciate you giving us your time. We work hard every day to put quality content out there for our community.

Techdirt is one of the few remaining truly independent media outlets. We do not have a giant corporation behind us, and we rely heavily on our community to support us, in an age when advertisers are increasingly uninterested in sponsoring small, independent sites — especially a site like ours that is unwilling to pull punches in its reporting and analysis.

While other websites have resorted to paywalls, registration requirements, and increasingly annoying/intrusive advertising, we have always kept Techdirt open and available to anyone. But in order to continue doing so, we need your support. We offer a variety of ways for our readers to support us, from direct donations to special subscriptions and cool merchandise — and every little bit helps. Thank you.

–The Techdirt Team


Reader Comments

Subscribe: RSS

View by: Time | Thread


  • identicon
    snowmobiles, 11 Mar 2007 @ 7:53pm

    Lol, good story. Sounds like Sybase drew even more attention to their software's security hole. They definatly learned that lesson the hard way.

    link to this | view in chronology ]


Follow Techdirt
Essential Reading
Techdirt Deals
Report this ad  |  Hide Techdirt ads
Techdirt Insider Discord

The latest chatter on the Techdirt Insider Discord channel...

Loading...
Recent Stories

This site, like most other sites on the web, uses cookies. For more information, see our privacy policy. Got it
Close

Email This

This feature is only available to registered users. Register or sign in to use it.