Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Guesswork Plagues Web Hole Reporting
Kevin Poulsen, SecurityFocus 2002-03-06

A good Samaritan has trouble getting the attention of a fashion retailer leaking customer credit card numbers. Should reporting security holes in e-commerce sites be easier?

Comments Mode:
Guesswork Plagues Web Hole Reporting 2002-03-06
Anonymous (4 replies)
Guesswork Plagues Web Hole Reporting 2002-03-08
Anonymous (1 replies)
Guesswork Plagues Web Hole Reporting 2002-03-13
Andrew Daviel
www.ietf.org/rfc/rfc2142.txt

RFC 2142 specifies several standard mailboxes. "abuse"

is very common, "security" less so. Someone should at least

listen on "abuse" as that's the place to report their

servers doing a DDoS attack. Reading this mail is the price

of doing business on the net.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/346/10991#10991







 

Privacy Statement
Copyright 2008, SecurityFocus