Hacker News new | past | comments | ask | show | jobs | submit login

The "vulnerabilities equities process", adopted in 2010, requires the FBI disclose the exploit details to Apple on request.

More info can be found in am EFF case: https://www.eff.org/files/2014/07/01/eff_v_nsa_odni_-_foia.p...

Maybe I misread the redacted doc [0] but from what I see, it is sent to the Entities Review Board (ERB) that then determines whether they should disseminate. I was unable to find the requirement to disclose. Can you point to it?

0 - https://www.eff.org/document/vulnerabilities-equities-proces...

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact
