this post was submitted on 10 Jun 2024
419 points (89.6% liked)

Technology

63009 readers
3471 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS
 
  • Kaspersky uncovered iOS vulnerabilities in 'Operation Triangulation', reported to Apple, but was refused bounty payment
  • Apple's Security Bounty Program offers rewards up to $1 million for discovering vulnerabilities to prevent them from being sold on the dark web
  • Apple's refusal to pay Kaspersky could be due to restrictions on financial transactions with companies in sanctioned countries like Russia.
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 239 points 8 months ago (4 children)

Apple Security Bounty awards may not be paid to you if you are in any U.S. embargoed countries or on the U.S. Treasury Department’s list of Specially Designated Nationals, the U.S. Department of Commerce Denied Person’s List or Entity List, or any other restricted party lists.

Kaspersky can whine all they want. Russia is embargoed. They're not getting their money.

Kaspersky is a good company doing good work in the cyber security space. Unfortunately, because of the embargo, they may have to turn to the black market to sell future exploits. Or maybe not; I'm not totally sure what kind of ethical standards they have.

[–] [email protected] 60 points 8 months ago

Yeah sorry guys, did you forget you work for an asshole?

[–] [email protected] 32 points 8 months ago (2 children)

It would be very very bad for world if the folks at Kaspersky turned to black hat activity

[–] [email protected] 8 points 8 months ago

That is not for Apple to decide. They should just follow the law.

[–] [email protected] 2 points 8 months ago

I wish they opensource their framework

[–] [email protected] 2 points 8 months ago

Kaspersky also has a bunch of US-based subsidiaries or partners they're selling their software through. Or Apple could have just escrowed their reward until the embargo was over.

[–] [email protected] 1 points 8 months ago

Who/what are on those other lists.