full disclosure
Microsoft Threatens Legal Action Over Exploit Disclosure
Microsoft’s response to a researcher publicly disclosing proof-of-concept exploit code has reignited an old debate in security: where does responsible disclosure end and reckless disclosure begin? Tom and Scott discuss the Nightmare ...
Passwords Are Still Failing Us (World Password Day 2026)
World Password Day was on May 7th—but are we actually getting better at password security? In this episode, we discuss why compromised credentials are still behind the majority of breaches in 2026 ...
Changing the Disclosure Shame Culture
For Cyber-defense to Progress, We Must Break Through the Cultural Barrier of Breach Disclosure ShameAlthough we repeatedly hear that cyber adversaries have an upper hand due to the sharing and rapid dissemination ...
How Commercial Bug Hunting Changed the Boutique Security Consultancy Landscape
It’s been almost a decade since the first commercial “for-profit” bug bounty companies launched leveraging crowdsourced intelligence to uncover security vulnerabilities and simultaneously creating uncertainty for boutique security companies around the globe.Not ...

