Skip to content
OnMSFT.com
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
Menu
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
  1. Home
  2. News
  3. Google’s Project Zero Bug Disclosure Policy Gets Some Human Decency Built In – onmsft.com

Google’s Project Zero Bug Disclosure Policy Gets Some Human Decency Built In – onmsft.com

Joseph Finney Joseph Finney
February 16, 2015
2 min read

Google's auto discloser bug policy gets some human decency built in

Security is a part of every IT company’s development process because their customers need to be safe and protected from cyber threats. Google, through its “Project Zero”, has a policy of bug discovery and disclosure which forces companies to patch bugs in their code fast or be outed. Recently Microsoft has been at the receiving end of this security policy when Google publicly posted malicious code to exploit vulnerabilities in Windows, even as Microsoft was working on a fix, delivered just a few days after Google’s “deadline”. Now the rigid automated security initiative will be slightly relaxed when it comes to the automatic disclosure of bugs.

The new policy will give companies two extra weeks if the bug is actively being patched. Also Google will not disclose on weekends or holidays giving companies more working hours to focus on their rollout. These new delays in releasing bugs and sample code could have prevented a couple of Windows vulnerabilities from being published, but some would have been released anyway. Microsoft had planned to fix a bug in the January patch Tuesday but pushed it back a month due to compatibility, and Google’s new two weeks wouldn’t have been enough to prevent the malicious code from being released.

Adobe makes such popular software their code is under high scrutinity

While this is a step in the right direction there will still be several cases where companies don’t patch their code in time. Companies like Microsoft and Adobe have massive install bases with billions of computers running their code and their development and testing time would be significantly longer than small companies. However popular software packages also have the greatest potential to put the most people at risk with security flaws so patching code fast needs to be a priority. Google’s security project seems well intended and seems to be aimed at protecting consumers, but time will tell if their efforts do more harm or good. In the meantime popular software products like Windows and Adobe Reader and Flash may remain the focus of Google’s well intended corporate bullying.

Share This Post:

Share this article:
Tags:
Google Security
Previous Article Lumia 532 Makes Its Way To India, Costs Rs. 6,499 – onmsft.com Next Article Microsoft Adopts Policies To Protect User Privacy In The Cloud, First To Meet ISO Standard – onmsft.com

Related Articles

Intel Panther Lake laptops see major price hikes due to component shortages, while Apple MacBook M5 models continue with unchanged pricing globally.

Intel Laptop Price Increase Hits Panther Lake Models, Apple MacBook M5 Stays Stable

April 5, 2026
State of Decay 3 Playtests Confirmed With Mutated Zombies and Co-op

State of Decay 3 Playtests Confirmed With Mutated Zombies and Co-op

April 5, 2026
Starfield launches on PS5 with 4K visual mode, 60FPS performance option, DualSense features, and new DLC available at release for players

Starfield Launches on PS5 With Two Modes and Full DualSense Support

April 5, 2026

Leave a Comment Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • Intel Laptop Price Increase Hits Panther Lake Models, Apple MacBook M5 Stays Stable
  • State of Decay 3 Playtests Confirmed With Mutated Zombies and Co-op
  • Starfield Launches on PS5 With Two Modes and Full DualSense Support
  • ASUS Accused of Failing to Fix Laptop After 10 RMAs, User Denied 11th Request
  • New Rowhammer Attacks Turn NVIDIA GPUs Into a System-Level Security Risk

Recent Comments

  1. XxRIVTYxX on Intel Says It Tried to Help Before Crimson Desert Dropped Arc Support
  2. Gaurav Kumar on Chrome Prepares Nudge to ‘Move Tabs to the Side’ as Vertical Tabs Near Release
OnMSFT.com

The Tech News Site

Categories

  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Gaming
  • Edge
  • Teams

Recent Posts

  • Intel Laptop Price Increase Hits Panther Lake Models, Apple MacBook M5 Stays Stable
  • State of Decay 3 Playtests Confirmed With Mutated Zombies and Co-op
  • Starfield Launches on PS5 With Two Modes and Full DualSense Support
  • ASUS Accused of Failing to Fix Laptop After 10 RMAs, User Denied 11th Request
  • New Rowhammer Attacks Turn NVIDIA GPUs Into a System-Level Security Risk

Quick Links

  • About OnMSFT.com
  • Contact OnMSFT
  • Join Our Team
  • Privacy Policy
© 2010–2026 OnMSFT.com LLC. All rights reserved.
About OnMSFT.comContact OnMSFTPrivacy Policy