Google – Once Again – Publicly Discloses Windows Bug After Microsoft Fails to Patch It
Google is once again dropping the same bomb on Microsoft – disclosing a vulnerability publicly after the company failed to patch it in time.
The Redmond software giant was expected to a send a security update on Patch Tuesday last week. However, it failed to do so and said that the updates will now be released “as part of the planned March Update Tuesday,” on March 14, 2017 – a whole month after they were supposed to go live.
Even before this delay, a security researcher released a Windows Server zero-day exploit on GitHub after Microsoft failed to release a fix, despite being warned three months ago. The public release of zero-day security vulnerability triggered a security advisory from the US-CERT Coordination Center (CERT/CC). When asked if the public disclosure of the security vulnerability was irresponsible on the part of Laurent Gaffie (security researcher responsible for the detection of the bug) he had said the responsibility lies with Microsoft.