logo

ZDI Slams Microsoft for Not Crediting It in Last Week’s Patch Tuesday

ID: 3b37b1ef-52d3-5799-9487-e5632e7cd92f

STIX ID: report--3b37b1ef-52d3-5799-9487-e5632e7cd92f

Feed Name: HackRead

Threat Score
45/100

Date Published: 2024-07-16

Date Updated: 2026-04-22

Author: Deeba Ahmed

...
...

The article describes backlash from security researchers and Trend Micro’s Zero Day Initiative toward Microsoft for poor transparency and coordination in vulnerability disclosure—highlighting CVE-2024-38112 where researchers were initially uncredited, inconsistent CVE/CVSS treatment across reports, and concerns that rushed or unclear patching practices harm end users; it also notes an exploit demonstrated at Pwn2Own and Microsoft’s subsequent patching and partial crediting.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.