City
Epaper

New Google Project gives more time to address security bugs

By IANS | Updated: January 8, 2020 14:15 IST

In a bid to give developers more time to address security vulnerabilities, Google has made changes to its Project Zero disclosure programme which could also mean that other companies roll out half-baked patches.

Open in App

Announced in July, 2014, the Project Zero is a team of security analysts employed by Google who are tasked with finding zero-day vulnerabilities, the secret hackable bugs which are exploited by criminals, state-sponsored hackers, and intelligence agencies.

"We recently reviewed our policies and the goals we hope to accomplish with our disclosure policy. As a result of that review, we have decided to make some changes to our vulnerability disclosure policy in 2020. We will start by describing the changes to the policy, and then discuss the rationale behind these changes," Tim Willis, Manager, Project Zero, wrote in a blog post on Tuesday.

"For vulnerabilities reported starting January 1, 2020, we are changing our Disclosure Policy: Full 90 days by default, regardless of when the bug is fixed."

If there is mutual agreement between the vendor and Project Zero, bug reports can be opened to the public before 90 days elapse.

For example, a vendor wants to synchronise the opening of our tracker report with their release notes to minimise user confusion and questions.

"Fix a bug in 20 days? We will release all details on Day 90. Fix a bug in 90 days? We will release all details on Day 90," noted Willis.

The tech giant said it will try this policy for 12 months, and then consider whether to change it long term.

( With inputs from IANS )

Tags: Tim WillisgoogleIans
Open in App

Related Stories

TechnologyGoogle Layoffs: Indian Employees in Hyderabad and Bengaluru Likely to Be Affected

CricketIPL 2025: Google Doodle Celebrates Beginning of Indian Premier League Season 18

LifestyleNowruz 2025: Google Doodle Celebrates Persian New Year to Mark Spring Season

TechnologyGoogle Celebrates March 2025 Final Half Moon With Doodle Game, Challenges Users Knowledge About Lunar Cycle

Social ViralNap Time at Work? Google’s Gurugram Office Lets Employees Sleep on the Job (Watch Video)

टेकमेनिया Realted Stories

TechnologyPilot plant of fortified rice kernels launched at CSIR-NIIST

TechnologyAIIMS Bhubaneswar launches Robotic Knee Replacement facility

TechnologyQuantum computing to revolutionise innovation and scientific discovery: Jyotiraditya Scindia

TechnologyStudy links antibiotic exposure before age two to childhood obesity

TechnologyBoult Audio’s net profit declines by 37 pc in FY24, revenue up 41 pc