Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Panel Probes the Half-life of Bugs
Kevin Poulsen, SecurityFocus 2003-07-30

LAS VEGAS--Software security holes never die, they fade from the Internet at a rate of 50% every thirty days after a patch is released, according to the results of a study released at the Black Hat Briefings security conference here Wednesday.

Comments Mode:
Panel Probes the Half-life of Bugs 2003-07-31
Anonymous (1 replies)
Panel Probes the Half-life of Bugs 2003-08-02
comp-secure (at) iservhost.com (dot) au [email concealed]
Panel Probes the Half-life of Bugs 2003-08-06
Anonymous
My reaction to the opening statement, "Software security holes never die, they fade from the Internet at a rate of 50% every thirty days after a patch is released" is

did they include CodeRed and Nimbda?

I find a very consistent % of blocked attempts in my web logs of these exploits. Granted, I'm one site, but I believe certain attacks are "classic" and automated because they are still easily overlooked by admins who don't understand IIS security.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/6568/21162#21162







 

Privacy Statement
Copyright 2008, SecurityFocus