>The one question that Fedora and Red Hat will have to answer at some point is this: how did the intruder get in? [...] That said, anything the project can say to tell its users whether they should be worried about an undisclosed vulnerability in their systems would be most welcome, and sooner would be better than later.
My guess is that a company like Microsoft would not even tell the world that intrusions have happened. So Redhat is a big step ahead already.