Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Microsoft Reveals Anti-Disclosure Plan
Kevin Poulsen, SecurityFocus 2001-11-09

Five computer security firms join Microsoft to set an official standard for limiting disclosure of software security holes

Comments Mode:
Microsoft Reveals Anti-Disclosure Plan 2001-11-09
Anonymous (1 replies)
Microsoft Reveals Anti-Disclosure Plan 2001-11-10
Gregarious Monk
What about the admins? 2001-11-09
ferretzero
Microsoft Reveals Anti-Disclosure Plan 2001-11-09
russell handorf
Microsoft Reveals Anti-Disclosure Plan 2001-11-09
Angus Blitter
30 days makes no difference 2001-11-09
Anonymous
Microsoft Reveals Anti-Disclosure Plan 2001-11-09
kishg (at) optonline (dot) com [email concealed]
Shocking developments 2001-11-09
H Carvey <keydet89 (at) yahoo (dot) com [email concealed]> (2 replies)
Shocking developments 2001-11-09
Anonymous
Shocking developments 2001-11-09
Greggory Peck
Be careful what you wish for. 2001-11-09
Surreal
Such a policy for disclosure already exists 2001-11-09
Dumky (1 replies)
Such a policy for disclosure already exists 2001-11-10
H Carvey <keydet89 (at) yahoo (dot) com [email concealed]>
Dumky,

> There is a disclosure policy available on the web:

> http://www.wiretrip.net/rfp/policy.html

Good point. Which is why many of are probably shocked at the developments...last July at BH and DefCon, I saw several of the people employed by some of the listed companies chatting w/ RFP. I'm sure everyone's aware of the policy. There's been a lot of discussion and many have supported it.

Though the companies themselves signed up for the MS agreement, I don't think that we should assume that many of the big names agree with it. I think, however, in the case of one or two of the companies, that there had to be some agreement by those folks, or it wouldn't have happened...

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/281/8717#8717
...on second thought...Kudos! 2001-11-09
H Carvey <keydet89 (at) yahoo (dot) com [email concealed]> (1 replies)
RE: ...on second thought...Kudos! 2001-11-10
Gregarious Monk
RFP (Rain Forest Puppy) 2001-11-10
Anonymous
Read the fine print 2001-11-11
Anonymous
Cross your fingers... 2001-11-11
Anonymous
Full disclosure will survive 2001-11-11
Ben - Canberra AUS
So, green light to sue? 2001-11-12
Anonymous
Microsoft have no server monopoly: this may reduce their share 2001-11-12
Kirsten Bayes (kirruth@hushmail)







 

Privacy Statement
Copyright 2009, SecurityFocus