Microsoft Faces Criticism Over Zero-Day Vulnerabilities and Patch Delays

1 min read
Source: The Register
Microsoft Faces Criticism Over Zero-Day Vulnerabilities and Patch Delays
Photo: The Register
TL;DR Summary

Trend Micro's Zero Day Initiative (ZDI) criticized Microsoft for not crediting them in the disclosure and patching of a zero-day vulnerability in MSHTML, reported in May and patched in July. ZDI claims the flaw is a remote code execution vulnerability, contrary to Microsoft's classification as a spoofing vulnerability. This incident highlights broader issues in the coordinated vulnerability disclosure process, with vendors often failing to properly communicate and credit researchers.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

5 min

vs 6 min read

Condensed

94%

1,12869 words

Want the full story? Read the original article

Read on The Register