WASHINGTON - The U.S. government informs software companies of 90 percent of the security flaws the intelligence community finds in their products, but a significant number of vendors ignore the warnings, the federal cyber czar said Wednesday.
Rob Joyce, the White House cybersecurity coordinator, said many high-tech firms act quickly to issue patches when told of vulnerabilities. But some firms balk, leaving consumers exposed.
“We’ve gone to companies and told them, ‘Here’s a flaw. It needs to be fixed in your device.’ And they’ve said, ‘That’s great but we’re telling customers they need to buy our new, shiny, next-generation thing, right?’ So they have no intention of patching,” Joyce said.