While it's good to expose such a security issue why would he grab 1000 signatures and than share the script? What do white hat security researches think of that?
This is 2013. It's not about the "grab". The act is publishing, making available. Those who access are not the gatekeepers.
As to why I shared the script, I dunno I just figured others might find it interesting - though on reflection it's not particularly advanced.