Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

There should really be a Department of Computer Security run by most national governments where people can anonymously report exploits, and that Department takes care of contacting the company or organization. If that group also deals with certain types of personal information that is threatened, there should have 30-60 days to demonstrate that they addressed the vulnerability appropriately, or face penalties.

Its really dumb that we're this far into the internet age already and companies and organizations can still play it so fast and loose with security and personal information. It's irresponsible and negligent.



There are "Computer Emergency Readiness Teams" in most countries, the United States one is

http://www.us-cert.gov/

The one in my country gets anonymous report exploits for state-run software. Not sure what they do wit them though :)




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: