Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Microsoft Reveals Anti-Disclosure Plan
Kevin Poulsen, SecurityFocus 2001-11-09

Five computer security firms join Microsoft to set an official standard for limiting disclosure of software security holes

Comments Mode:
Microsoft Reveals Anti-Disclosure Plan 2001-11-09
Anonymous (1 replies)
Microsoft Reveals Anti-Disclosure Plan 2001-11-10
Gregarious Monk
What about the admins? 2001-11-09
ferretzero
Microsoft Reveals Anti-Disclosure Plan 2001-11-09
russell handorf
Microsoft Reveals Anti-Disclosure Plan 2001-11-09
Angus Blitter
30 days makes no difference 2001-11-09
Anonymous
Microsoft Reveals Anti-Disclosure Plan 2001-11-09
kishg (at) optonline (dot) com [email concealed]
Shocking developments 2001-11-09
H Carvey <keydet89 (at) yahoo (dot) com [email concealed]> (2 replies)
Shocking developments 2001-11-09
Anonymous
Shocking developments 2001-11-09
Greggory Peck
Be careful what you wish for. 2001-11-09
Surreal
Such a policy for disclosure already exists 2001-11-09
Dumky (1 replies)
Such a policy for disclosure already exists 2001-11-10
H Carvey <keydet89 (at) yahoo (dot) com [email concealed]>
...on second thought...Kudos! 2001-11-09
H Carvey <keydet89 (at) yahoo (dot) com [email concealed]> (1 replies)
RE: ...on second thought...Kudos! 2001-11-10
Gregarious Monk
RFP (Rain Forest Puppy) 2001-11-10
Anonymous
Read the fine print 2001-11-11
Anonymous
Cross your fingers... 2001-11-11
Anonymous
Full disclosure will survive 2001-11-11
Ben - Canberra AUS
So, green light to sue? 2001-11-12
Anonymous
Microsoft have no server monopoly: this may reduce their share 2001-11-12
Kirsten Bayes (kirruth@hushmail)
As ever, some good comments above.

My thought is that even though they have the desktop monopoly, Microsoft are a long way from having a monopoly on servers or the data centre.

In the end, if a vendor can't or won't provide timely, detailed information about its products (in any area of interest, not just security), that needs to be factored into the purchase decision.

For me, the no brainer client-server decision was always MS desktops, Unix servers. If the Unix server is going to be Intel in future (no reason why not), Linux or the BSDs look like the natural first choice.

Microsoft needs to do more to convince CIOs and data centre managers why they should use its products on their servers.

Limiting security information to a clique is categorically not the way to do this: all this does is mean that those people outside the clique will recommend other solutions, and so they should.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/281/8764#8764







 

Privacy Statement
Copyright 2007, SecurityFocus