Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Why Sardonix Failed
Hal Flynn, 2004-02-04

The DARPA-funded security auditing project was done in by its own obscurity, and some misconceptions about what security researchers really want.

Comments Mode:
Why Sardonix Failed 2004-02-05
Anonymous
Why Sardonix Failed 2004-02-05
Anonymous
Like I said in the previous article:

It is absolutely naive to think that anyone in their right mind would do this. Labour over code and receive a pat on the back. Nonsense. This is not a carrot at the end of a stick rather a pea. With bugtraq depending on how you play the game be it a 0 day you get the thrill of causing a bit of chaos or if you work with a major vendor you get to piggy back on their publicity when they announce the news.

Your scheme gives you nothing. Doesn't spark one iota of motivation. Suggest brush up on psycology one-o-one and learn what motivates people. Otherwise go to a monestry and look for monks who can code for the 'better of mankind'.

As the author mentions, if you stumble across something, its cool to submit it pro bono, however if you hunting for it, you need a reward be it one of the two I mention already. Kind of like winning the lotter, 10 million, you won it, you have no qualms giving some away, however if you work like a dog and have earned it, you ain't going to give it away so quickly.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/columns/218/24877#24877
Did Sardonix even try? 2004-02-07
Anonymous
effort involved in an audit 2004-02-11
Anonymous
Why Sardonix Failed 2004-02-14
Anonymous







 

Privacy Statement
Copyright 2009, SecurityFocus