, 2006-03-07
There is value in finding vulnerabilities. Yet many people believe that a vulnerability doesn't exist until it is disclosed to the public. We know that vulnerabilities need to be disclosed, but what role do vendors have to make these issues public?

Matthew Murphy
...Didn't think so.
Fact is, OSes are inherently vulnerable to attack because they have the nearly-impossible task of protecting the system from itself, from attackers and...
[ more ]