There's always a gamble for security researchers when reporting vulnerability disclosures to companies. Is the company going to read your report? How will they react to me testing their security? Where can I send this report anyway? These are some of the questions the researcher is going to contemplate before making a decision that can financially impact the company they are trying to help.
Increasing Your Company’s Security by Encouraging Responsible Disclosures.
Author:
Brett Buerhaus
