> Maybe M$ should put out a bounty for reporting bugs in their > crappy software without going public instead. That might be > more effective. Either have to a) Pay *everyone* who reported the same bug (leading to a nice little money tree where a group of people individually report the same thing) b) live with the fact that the first finder would take the money, the second finder would be pissed at them for not paying and publish immediately...
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
