|
Source: eff.org - Posted by Bill Keys
|
A computer security researcher who has inadvertently violated the law during the course of her investigation faces a dilemma when thinking about whether to notify a company about a problem she discovered in one of the company’s products. By reporting the security flaw, the researcher reveals that she may have committed unlawful activity, which might invite a lawsuit or criminal investigation. On the other hand, withholding information means a potentially serious security flaw may go unremedied.
Are you a "Grey Hat"? This article looks at how computer security researcher can be breaking the law even if they are working for the good side.
Read this full article at eff.org
Only registered users can write comments. Please login or register. Powered by AkoComment! |