(no title)
zerebubuth | 8 years ago
It's great that large, corporate projects like Chrome OS are attracting the sustained attention necessary to find bugs such as this one. But I worry that projects without such deep pockets are crowded out, leaving bugs unreported. Are many people doing security audits of open source projects without bug bounties?
delroth|8 years ago
https://www.google.com/about/appsecurity/patch-rewards/
woodrowbarlow|8 years ago