Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

> “The position of the FFmpeg X account is that somehow disclosing vulnerabilities is a bad thing. Google provides more assistance to open source software projects than almost any other organization, and these debates are more likely to drive away potential sponsors than to attract them.”

This position likely to drive away maintainers. Generally the maintainers need these projects less than the big companies that use them. I'm not sure what Google's endgame is



I doubt there's an endgame in mind. It's probably small teams trying to optimize their quarterly KPIs


> FFmpeg X account is that somehow disclosing vulnerabilities is a bad thing

I mean, I follow that account and never got this impression from them at all.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: