Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

What stops them bundling something malicious into the “security patch” and then not writing it into the change log?


Traditionally, when someone deliberately does something that causes significant harm to someone else, we address that by giving them a chance to defend their actions in court and if their defence is not acceptable we penalise them. It is strange how easily we forget normal behaviour as soon as technology comes into the picture.

If you had a shower fan/light that broke, and the manufacturer supplied a new model to replace it that had a working fan but no light and also an undisclosed camera and connectivity that sent everything it saw home to the manufacturer, no-one would be debating the situation. People would be going to jail.


App review... maybe? But the review (especially on Android) would have to be much more careful than it is nowadays...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: