[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [Full-Disclosure] What's wrong with this picture?



 The fact that exploit code is made available after the patch is released,
is probably because the researchers
Made the vulnerability publicly available at same time as the patch was
released, otherwise MS wouldnt give
Credit to the researchers for the vuln.

Rgds

Rod.-

-----Mensaje original-----
De: full-disclosure-admin@xxxxxxxxxxxxxxxx
[mailto:full-disclosure-admin@xxxxxxxxxxxxxxxx] En nombre de
Valdis.Kletnieks@xxxxxx
Enviado el: Jueves, 26 de Febrero de 2004 14:38
Para: bugtraq@xxxxxxxxxxxxxxxxx; full-disclosure@xxxxxxxxxxxxxxxx
Asunto: [Full-Disclosure] What's wrong with this picture?

Somebody want to explain to this guy that there's a difference between
"publicly available" exploits and 0-day exploits circulating in the
underground?

http://news.bbc.co.uk/1/hi/technology/3485972.stm

Scary part is that he's a high honcho at Microsoft's security unit.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html