{"type":"rich","version":"1.0","provider_name":"Transistor","provider_url":"https://transistor.fm","author_name":"Shared Security Podcast","title":"Microsoft Threatens Legal Action Over Exploit Disclosure","html":"<iframe width=\"100%\" height=\"180\" frameborder=\"no\" scrolling=\"no\" seamless src=\"https://share.transistor.fm/e/9265c82b\"></iframe>","width":"100%","height":180,"duration":1044,"description":"Microsoft’s response to a researcher publicly disclosing proof-of-concept exploit code has reignited an old debate in security: where does responsible disclosure end and reckless disclosure begin? Tom and Scott discuss the Nightmare Eclipse controversy, the history of full disclosure, bug bounty incentives, and why legal threats against researchers may ultimately hurt customers. They also explain why researchers still need to follow responsible processes — and why vendors need to avoid punishing the people who help make their products safer.\n\nSpecial thanks to Guardsquare for sponsoring this episode! Guardsquare is the leader in mobile application security, with multi-layered protection for your Android and iOS apps. Learn more at Guardsquare.com.\n\n** Links mentioned on the show **\n\nThe Verge: Microsoft is threatening legal action for disclosing exploits\nhttps://www.theverge.com/tech/940416/microsoft-nightmare-eclipse-zero-day-vulnerability\nMicrosoft MSRC Blog: A shared responsibility: Protecting customers through coordinated vulnerability disclosure\nhttps://www.microsoft.com/en-us/msrc/blog/2026/05/a-shared-responsibility-protecting-customers-through-coordinated-vulnerability-disclosure\nKevin Beaumont / DoublePulsar: Microsoft’s stance on zero day exploits is a dumpster fire of their own making\nhttps://doublepulsar.com/microsofts-stance-on-zero-day-exploits-is-a-dumpster-fire-of-their-own-making-0946117940a4\n\n\n\n\n\n\n\n\n\n\n\n\n** Watch this episode on YouTube **\n\n** Become a Shared Security Supporter **\nGet exclusive access to bonus episodes, listen to new episodes before they are released, receive a monthly shout-out on the show, and get a discount code for 15% off merch at the Shared Security store. Become a supporter today by going to our YouTube channel’s membership section: https://www.youtube.com/channel/UCg9CCDIYkDDqwEZ3UYaxjnA/join\n** Thank you to our sponsors! **\nSLNT\nVisit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to...","thumbnail_url":"https://img.transistorcdn.com/KqWtfSXNrzCIv-9CcJw5FJ2bisqb1Rc2u0BgXHLhkoE/rs:fill:0:0:1/w:400/h:400/q:60/mb:500000/aHR0cHM6Ly9pbWct/dXBsb2FkLXByb2R1/Y3Rpb24udHJhbnNp/c3Rvci5mbS8yYWI5/YjhhNTU1NjFkZmJh/ZWNhZjM3ZTdlNTIy/ODJhMC5qcGc.webp","thumbnail_width":300,"thumbnail_height":300}