Comment Blacklist the DMCA (Score 1) 261
To an extent, I would say it is fair to give an organization a set amount of time to respond with a patch, but if the organization does not respond, then who is benefitted by staying silent? It is better to get the word out and inform those that care for their systems rather than entrusting that security to an unresponsive organization.
If an organization uses the DMCA to coerce an individual to stop disclosing information that pertains to the security of the organization's software or OS, then perhaps it is time to consider foregoing the 30-day notice period. In the end, we (generally) are just trying to build more secure systems. If the organizations who write/sponsor the code cannot support maintaining the security of the product, then screw them!
Uzmo