• Patches@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    3
    ·
    7 months ago

    How do you know if a company is going to pay to fix?

    Do you just have to take a chance and notify them?

    Either I make a bunch of money, or they say fuck off, or they send me to jail? It seems too iffy

    • aksdb@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      7 months ago

      I assume the idea is, that the company then has a contract with the hacker, so they can no longer sue him. They essentially hack themselves via proxy.