this post was submitted on 01 May 2026
1 points (100.0% liked)
cybersecurity
6149 readers
2 users here now
An umbrella community for all things cybersecurity / infosec. News, research, questions, are all welcome!
Community Rules
- Be kind
- Limit promotional activities
- Non-cybersecurity posts should be redirected to other communities within infosec.pub.
Enjoy!
founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
view the rest of the comments
It technically follows the industry standard rules (and companies who have been exploited have 30 days to disclose breaches in the U.S. so there's probably similar "best practice" stuff with these kinds of disclosures)
It's technically still a dick move unless it's seen in the wild and distros are dragging their heels.
Sometimes it's best to use logic instead of best practices.