TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Apple refused to pay bounty to Kaspersky for uncovering vulnerability

91 点作者 uladzislau11 个月前

15 条评论

koolba11 个月前
For context (that of course is buried far from the title), Kaspersky is a Russian company and Apple, being an American one, is subject to the embargo and sanction list of the USA:<p>&gt; While Kaspersky is a multi-national company, it was founded and headquartered in Russia, a country the United States has heavily sanctioned due to the war in Ukraine. This could severely restrict financial transactions between U.S. companies and those in the region.<p>&gt; Additionally, per Apple Security Bounty’s terms and conditions, “Apple Security Bounty awards may not be paid to you if you are in any U.S. embargoed countries or on the U.S. Treasury Department’s list of Specially Designated Nationals, the U.S. Department of Commerce Denied Person’s List or Entity List, or any other restricted party lists.”
评论 #40629032 未加载
评论 #40629586 未加载
Modified301911 个月前
Title is misleading&#x2F;clickbait.<p>Should be “Apple cannot legally pay bounty to Russian company due to sanctions.”
评论 #40631031 未加载
评论 #40632261 未加载
评论 #40631062 未加载
评论 #40629573 未加载
Hizonner11 个月前
I&#x27;ve always felt sorry for Kaspersky. The leadership seems to have put together a company that&#x27;s about as ethical, in culture and in the general sweep of its actions, as you can ever find in the industry. Their products tend to be in the upper tier in terms of delivering what they promise. They try to behave like &quot;good citizens&quot;.<p>But the company constantly gets squeezed between trying to fight obnoxious demands from the Russian government (including, I suspect, by not expanding into businesses where those demands would be un-resistable), and trying to fight suspicion from everybody else.
评论 #40634546 未加载
littlecosmic11 个月前
Trade sanctions rarely achieve their stated aim, but that doesn’t mean they aren’t the law.
评论 #40629604 未加载
mediumsmart11 个月前
Can’t Apple pay the bounty through a third country to avoid the embargo like the way that Shell and BP sell Russian oil to US companies?
评论 #40630233 未加载
评论 #40639716 未加载
SanjayMehta11 个月前
Apple just ensured that Kaspersky won’t report the next vulnerability they unearth.
评论 #40630094 未加载
mensetmanusman11 个月前
Apple loves money, it’s why they changed the airdrop policy for China to knee-cap protesters from using sneaker net.
demarq11 个月前
Talk about burying the lede
enlightenedfool11 个月前
Does Kaspersky care at all about the monetary aspect of the bounty? I think they are ethically bound and probably already know they will not get paid.
评论 #40629185 未加载
devwastaken11 个月前
Don&#x27;t look for payouts in bug bounties. It&#x27;s not a fair deal and you will always be taken advantage of.
jakupovic11 个月前
Good job Apple!
waffletower11 个月前
Is 9to5mac another one of Vladimir&#x27;s puppets now? Quite the pro-Russian headline there.
评论 #40637524 未加载
SquidJack11 个月前
Better sell next time
pudwallabee11 个月前
Apple’s excuse is poppycock. 10s of thousands of developers in the US use Jetbrains products in the US and pay for them routinely with their debit cards on subscription. Jetbrains is located in St Petersburg.<p>They should be sued, and also given that such sophisticated attacks are usually the domain of state sponsors, if they dont pay they can be assured that the next one wont be reported to them.<p>..or maybe thats the plan.
评论 #40631267 未加载
评论 #40630775 未加载
评论 #40631246 未加载
Nginx48711 个月前
Strange how it&#x27;s a subject for discussion. It&#x27;s like during WWII consider paying to operator of gas chamber in Aushwitz.
评论 #40632096 未加载