Comment by nextaccountic
3 days ago
Flock is an awful company, but what's the trouble with Gecko security? Are you talking about https://www.gecko.security/ or something else?
3 days ago
Flock is an awful company, but what's the trouble with Gecko security? Are you talking about https://www.gecko.security/ or something else?
There are documented public disputes about Gecko Security’s conduct when it comes to claiming credit for vulnerability research. For example, FuzzingLabs publicly accused Gecko Security of copying PoCs and submitting CVE reports for vulnerabilities that FuzzingLabs had originally disclosed, and of misdating their posts to make it appear they found them first. Gecko publicly denied intentional wrongdoing, but later updated their attributions to credit the original researchers [1].
That's one example that's already reported online; I also have another related situation that isn't public yet and involves one of my companies.
[1] https://www.bleepingcomputer.com/news/security/security-firm...