Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
'Responsible Disclosure' Draft Could Have Legal Muscle
Mark Rasch, 2002-03-11

A proposed Internet standard would dictate how researchers report and vendors close security vulnerabilities. Ignoring it could be risky for either side.

Submit Comment Mode:
Name:
Subject:
Message:
 
  Enter the characters that appear above
 
Some good points, but too legalistic. 2002-03-22
Anonymous
The characterization of the responsible disclosure protocol in this
piece goes well beyond the intent of the Internet Draft itself. There is
a world of difference between an informal guideline that will serve both
the security research and software development communities, as a
tool, and the kin...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus