Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Microsoft Reveals Anti-Disclosure Plan
Kevin Poulsen, SecurityFocus 2001-11-09

Five computer security firms join Microsoft to set an official standard for limiting disclosure of software security holes

Submit Comment Mode:
Name:
Subject:
Message:
 
  Enter the characters that appear above
 
Such a policy for disclosure already exists 2001-11-09
Dumky
There is a disclosure policy available on the web:

http://www.wiretrip.net/rfp/policy.html

It details a reasonable protocol for the person who discovers a security flaw to follow with the vendor.

A good read and I think a good solution for moderated full-disclosure.

See you,

Dumky...

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus