Comodo CIS Bug fix policy

Trident

Level 34
Verified
Top Poster
Well-known
Feb 7, 2023
2,349
I fail to understand your logic. The company behind Comodo is a large company. Offering a free product does not mean they should not invest in it. The bugs cause system issues. Unpatched vulnerabilities are a security risk. Leaving those unpatched and unfixed, especially by a security company, is pure irresponsibility.

Firefox is free, does this mean that Mozilla should not pay a dollar to fix vulnerabilities and bugs?
And I gotta add to that, who decides the price of the product?

The CEO is not telling you take it or leave it, they make it look like they are actively working on the product.

Very dishonest company.

I wouldn't use software published by a bunch of clowns, even if it's the most amazing ever.
 

Decopi

Level 8
Verified
Oct 29, 2017
361
Comodo's CEO, for the last 10 years, in countless public statements proudly repeated the same thing that the irresponsible and immoral Comodo's fanatics here at MT, like pirate parrots, insistently repeat: COMODO HAS BUGS AND BUGS WILL NOT BE FIXED.

Therefore at MT, Comodo should be labeled as “DEPRECATED”.
 

Chuck57

Level 12
Verified
Top Poster
Well-known
Oct 22, 2018
590
Comodo's CEO, for the last 10 years, in countless public statements proudly repeated the same thing that the irresponsible and immoral Comodo's fanatics here at MT, like pirate parrots, insistently repeat: COMODO HAS BUGS AND BUGS WILL NOT BE FIXED.

Therefore at MT, Comodo should be labeled as “DEPRECATED”.
Irresponsible and Immoral??? Really? Using a software someone else (you) disapprove of is irresponsible and immoral?

I can only imagine what you'd say about my politics, among other personal choices.
 

bazang

Level 7
Jul 3, 2024
301
If he doesn’t wanna spend and invest, absolutely fine, nobody is forcing him to.
He will spend as little as possible because it is a freeware product. Spending as close to $0 is an appropriate financial model for that category of product.

If he wants his software to stay relevant in a dynamic world, then he will spend whatever he has to spend and will find a way to ensure revenue stream.
Melih said he has no intention of creating a revenue stream from Comodo. He said that years ago. It's buried on his thread in the Comodo forum.

He paid for the creation of CIS\CFW and a long time ago he said that is what he is willing to do, but to expend the resources to make it a refined, highly-polished product - that he is not willing to do. Why? Because it would be very expensive to do so.

He also said is has no interest nor intent to sell Comodo. He offers what he is willing to offer and users\people can accept that or just do not use it.

And also, if he doesn’t wanna have his company expensed, then why all the smoke and mirrors? We will release 2025, we will fix bugs… why lie to the users?
"We will fix bugs" is not the same as "We will fix all the bugs."

On the Comodo forum, Melih's response to all the criticisms is "I am OK with bugs. Software has bugs."

Again, since the product has $0 revenue, the owner is going to spend as close to $0 possible.

I fail to understand your logic. The company behind Comodo is a large company.
Comodo does have large revenue, but it is not derived from the Comodo software.

Offering a free product does not mean they should not invest in it.
The correct business model for software is that the resources spent on that software are directly proportional to the amount of revenue it brings into an organization. That is how the software industry works.

For every 4 software engineers that I hire to develop & support a software, that software needs to generate $1,200,000 USD in revenue. If it does not, then I do not hire anyone and the software receives the most minimal support.

All software should be managed as its own profit center. Since Comodo generates $0 revenue, it "earns" minimal product support.

The bugs cause system issues. Unpatched vulnerabilities are a security risk. Leaving those unpatched and unfixed, especially by a security company, is pure irresponsibility.
All software is developed and offered "As Is." Read any software EULA and you will see the same thing in every single one of them - "This product is sold "As Is" and you, the user, are responsible for what you do with it and on your system." Kaspersky, Bitdefender, Norton, Avast, ......... they all say the same thing in their EULA.

Comodo has no obligation or responsibility - legal, ethical, moral, or otherwise - to anybody - to fix a freeware's bugs.

Should there be a provable security vulnerability then Melih has had them fixed over the years. The issue here at MT is there are members that categorize any bug as a vulnerability and that is not realistic.
 

bazang

Level 7
Jul 3, 2024
301
Firefox is free, does this mean that Mozilla should not pay a dollar to fix vulnerabilities and bugs?
Firefox is funded by search engine results, subsidized heavily by Google, receives donations, royalties, etc which all add up to a cash reserve of $1,000,000,000.

Official Firefox statement:

"The Mozilla Foundation is a California non-profit corporation exempt from Federal income taxation under IRC 501(c)(3). The majority of Mozilla Corporation’s revenue is from royalties earned through Firefox web browser search partnerships around the world. But also donations are welcome."

Firefox is targeted by threat actors for vulnerabilities. Vulnerabilities not merely bugs that annoy people and they have to be more than just a proof of concept in some instances before the publisher fixes them. The vast majority of bugs are not a threat to security.

For users that want "bug free" Comodo is not a good choice. The product owner is never going to fix most of the bugs.
 

Trident

Level 34
Verified
Top Poster
Well-known
Feb 7, 2023
2,349
I agree with your 2 posts above.

In addition, a lot of the feature requests from the posted lists are dumb. People think that implementing these features involves just firing Visual Studio and writing 500 lines of code.
They’ve got no use case for these features and are requesting them because someone else has got it.
Example: UEFI scanner.

But then promoting software like this, software where the CEO is telling you “this is what I offer, take it or leave it” and trying to convince people how it’s better than everything else, seems at the very least, highly suspicious.
 

rashmi

Level 12
Jan 15, 2024
551
"With the iron glowing red-hot... it's time to channel your inner Thor and swing that hammer!" 😉

Amidst the world's obsession with the security goddess Comodo... it's a fitting moment to explore the captivating universe of "written reviews" on Comodo Firewall 2025! 😊
 
  • HaHa
Reactions: Behold Eck

Trident

Level 34
Verified
Top Poster
Well-known
Feb 7, 2023
2,349
Ethically or morally, a company might choose to address issues even if not strictly obligated, to maintain user trust and satisfaction.
Comodo doesn’t care about the user satisfaction, this is what bazang is explaining.

It looks like Melih is perfectly aware that he has created software for the geeks who don’t know or can’t run/afford any better. Hence, even Melih doesn’t take Comodo as seriously as he is taking his other businesses. He is not ensuring revenue stream, and without revenue stream, again, as explained by bazang, it is not worth implementing any improvements.

It is safe to conclude that Comodo will always remain a user-dependant blocker, working for some, disaster for others, slowly losing its old glory and fame.

The truth about Comodo has been revealed by @bazang
 

Decopi

Level 8
Verified
Oct 29, 2017
361
But then promoting software like this, software where the CEO is telling you “this is what I offer, take it or leave it” and trying to convince people how it’s better than everything else, seems at the very least, highly suspicious.

I agree with your comment! The problem has nothing to do with Comodo being full of unfixed bugs, or having no upgrades or updates etc. Comodo is free to offer free poop. But the irresponsibility and immorality is Comodo publicly claiming to offer "free caviar" (as called by its fanatics), when in fact it offers "free poop".

The irresponsibility and immorality is to fraud the public by presenting a fake new CIS 2025, which has absolutely nothing new, accumulates more than 500 old and dangerous unfixed bugs, and worse, Comodo specifically built a whole new webpage to advertise the fraud, presenting a super mega product ("free caviar"), with capabilities that the product does not have ("free poop")!

Also, the irresponsibility and immorality is never telling the truth, not admitting publicly on the webpage itself that the product is full of unfixed bugs, that it is a CEO and company policy not to do software maintenance, that since 2017 the software is abandonware, has no real updates or upgrades, that the modules are mediocre garbage, and that “Containment” is nothing more than a simple blocker (Comodo does not detect viruses/malware, it is the user who blocks or allows the execution of files).

And the irresponsibility and immorality is also with the Comodo fanatics, who like pirate parrots repeat the same old fallacies, like self-convincing mantras:
“I never had a problem.”
“It's good for me, then it's good for everyone.”
“It's free caviar”
blah blah blah
 
Last edited:

rashmi

Level 12
Jan 15, 2024
551
Till the day you wake up flat in a hospital and find out that you encounterned a very nasty 'I can fly' bug.
Ah, here comes the former pilot of the 'I can fly' bug, sharing past crashes and shattered dreams! 😛 Let's hope he'll learn how to land this time from an expert! 😊
 

Behold Eck

Level 18
Verified
Top Poster
Well-known
Jun 22, 2014
864
pirate parrots repeat the same old fallacies, like self-convincing mantras:
“I never had a problem.”
“It's good for me, then it's good for everyone.”
“It's free caviar”
blah blah blah
Nope, wrong again they only say, " pieces of eight" , "pieces of eight".

Regards Eck :)
 
  • HaHa
Reactions: rashmi

Chuck57

Level 12
Verified
Top Poster
Well-known
Oct 22, 2018
590
And the irresponsibility and immorality is also with the Comodo fanatics, who like pirate parrots repeat the same old fallacies, like self-convincing mantras:
“I never had a problem.”
“It's good for me, then it's good for everyone.”
“It's free caviar”
blah blah blah
I've never had a problem with Comodo. I've never had any malware break through it. What am I supposed to say? Should I lie, to please you?
 

wat0114

Level 13
Verified
Top Poster
Well-known
Apr 5, 2021
620
I'm not sure whether you found a new bug or not. There is this checkbox 'filter IPv6 traffic', doesn't that work as intended?
No. Even with it checked, a wide open hole exists in the firewall for all IPv6 traffic.
 
  • Wow
Reactions: Pico

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top