Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Responsible Disclosure by Corporate Fiat
Jon Lasser, 2002-10-30

The new Organization for Internet Safety aims to make vulnerability disclosure more responsible. It's a good idea, but is the group too corporate to pull it off?

Submit Comment Mode:
Name:
Subject:
Message:
 
  Enter the characters that appear above
 
Responsible Disclosure by Corporate Fiat 2002-10-31
Bob Dowling <rjd4@cam.ac.uk>
I do not think you are a Microsoft lackey, a fascist, or a dolt but I do think you are being naive about the vendors.
Suppose I report a security flaw to a vendor. What's to stop them responding with a court order gagging me? It doesn't matter if the court order wouldn't stand up to challenge. I...

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus