The particular bug in question was revealed by Google's Tavis Ormandy, a security engineer, back in May. But Ormandy revealed the bug on the Web without telling Microsoft first. Normally a serious bug report like this is made to the company in question so it can patch the hole before the information is made public. According to the Guardian, Ormandy has reacted to Microsoft's complaint by saying the company's security office was hard to work with.
[Image: By Flickr user Samat Jain]