Full disclosure of vulnerabilities is as important for software security as free journalism is for figthing koruption.
Defining some rules for responsibly doing that is a step in the right direction. However - since M$ has a history of ingnoring industry standards I do not have high hopes that it will actually improve something...
nuff said.
If I want a water heater I buy a coffe machine - not a notebook.
Full disclosure of vulnerabilities is as important for software security as free journalism is for figthing koruption. Defining some rules for responsibly doing that is a step in the right direction. However - since M$ has a history of ingnoring industry standards I do not have high hopes that it will actually improve something...