Sunday, July 5, 2020
Home Lead Story Google Makes Changes To "Project Zero" Disclosure Programme

Google Makes Changes To “Project Zero” Disclosure Programme

Announced in July, 2014, the Project Zero is a team of security analysts employed by Google

In a bid to give developers more time to address security vulnerabilities, Google has made changes to its Project Zero disclosure programme which could also mean that other companies roll out half-baked patches.

Announced in July, 2014, the Project Zero is a team of security analysts employed by Google who are tasked with finding zero-day vulnerabilities, the secret hackable bugs which are exploited by criminals, state-sponsored hackers, and intelligence agencies.

“We recently reviewed our policies and the goals we hope to accomplish with our disclosure policy. As a result of that review, we have decided to make some changes to our vulnerability disclosure policy in 2020. We will start by describing the changes to the policy, and then discuss the rationale behind these changes,” Tim Willis, Manager, Project Zero, wrote in a blog post on Tuesday.

“For vulnerabilities reported starting January 1, 2020, we are changing our Disclosure Policy: Full 90 days by default, regardless of when the bug is fixed.”

If there is mutual agreement between the vendor and Project Zero, bug reports can be opened to the public before 90 days elapse.

For example, a vendor wants to synchronise the opening of our tracker report with their release notes to minimise user confusion and questions.

Google
In a bid to give developers more time to address security vulnerabilities, Google has made changes to its Project Zero disclosure programme which could also mean that other companies roll out half-baked patches. Pixabay

“Fix a bug in 20 days? We will release all details on Day 90. Fix a bug in 90 days? We will release all details on Day 90,” noted Willis.

ALSO READ: Tech Giant Samsung Sold Approx 4 Lakh Galaxy Fold Smartphones in 2019: Tech Report

The tech giant said it will try this policy for 12 months, and then consider whether to change it long term. (IANS)

STAY CONNECTED

18,999FansLike
362FollowersFollow
1,779FollowersFollow

Most Popular

Country of Origin of Products: A Concern For Indians

As the government orders e-commerce players to display the "Country of Origin" of products sold on their platforms, a survey reveals three in ten...

JioMeet, A Make in India App to Compete with Zoom

With Reliance Jio launching a Make in India free video-conferencing application JioMeet that directly takes on Zoom, the US-based company said on Saturday they...

Instagram to Redesign it’s Story Feature

Facebook-owned Instagram is preparing to launch a huge redesign that would make it easier to watch favorite Stories in one place. Follow us on our...

In Conversation with Annu Rizvi

Annu Rizvi is a lyricist and a writer who has worked in several big projects including 'transparency', 'meri saheli’ and many others. He worked...

WhatsApp Launches First Brand Campaign in India

WhatsApp on Saturday launched its first brand campaign in India that narrates real stories about how Indians communicate daily on WhatsApp with their closest...

Government to Propose Triple Solar Manufacturing Capacity

The central government has proposed a major push to domestic manufacturing of renewable energy equipment in the country that would completely eliminate the need...

Here’s Why some Covid-19 Patients can Breathe Well with Low Oxygen Level

Researchers have found possible explanations for Covid-19 patients who present with extremely low, otherwise life-threatening levels of oxygen, but no signs of difficulty in...

Morning Walk can Help Heart Bypass Surgery Patients Get Sound Sleep

Just half an hour of morning walk can help heart bypass surgery patients get a sound sleep at night, says a study. "Many patients have...

Recent Comments