, 2006-03-07
There is value in finding vulnerabilities. Yet many people believe that a vulnerability doesn't exist until it is disclosed to the public. We know that vulnerabilities need to be disclosed, but what role do vendors have to make these issues public?

Anonymous
Finding exploits = time = money
For commercial applications there is no free lunch. I still have to see some commercial application developer come and give me a free unlimited copy of his product. So please give me a valid reason to pass free information to someone who will profit...
[ more ]