Apple anklagas nu för att ha åtgärdat en allvarlig bugg, utan att nämna den säkerhetsforskare som rapporterat buggen med namn, och för att ha struntat i att åtgärda tre andra allvarliga buggar.
Signaturen
I want to share my frustrating experience participating in Apple Security Bounty program. I’ve reported four 0-day vulnerabilities this year between March 10 and May 4, as of now three of them are still present in the latest iOS version (15.0) and one was fixed in 14.7, but Apple decided to cover it up and not list it on the security content page. When I confronted them, they apologized, assured me it happened due to a processing issue and promised to list it on the security content page of the next update. There were three releases since then and they broke their promise each time.
Apple har inte kommenterat uppgifterna.
0 kommentarer