
Microsoft threatened criminal investigation and police involvement after an independent security researcher, identified as Nightmare Eclipse, published several unpatched bugs in Microsoft products along with exploit code. The company's aggressive response — including threats of legal action and contacting law enforcement — has reignited debate over who is responsible for securing software and whether such threats chill important security research. Recent coverage highlights that Microsoft's tone and language have alarmed commentators who fear it could discourage useful disclosures. The dispute comes as accidental vendor disclosures, public exploit leaks, and AI-assisted vulnerability discovery accelerate exploit development and complicate coordinated patching and disclosure.
Click a connection line between nodes to view confidence and evidence.