[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-disclosure] Who Do I Contact?
- To: CrYpTiC MauleR <crypticmauler@xxxxxxxxxxxxx>
- Subject: Re: [Full-disclosure] Who Do I Contact?
- From: Sol Invictus <sol@xxxxxxxxxxxxxxxxxxxxx>
- Date: Sat, 22 Apr 2006 18:09:51 -0400
"I am a supporter of full disclosure, but when I see in this situation the pros and
cons of going FD the cons heavily outweigh any benefit. Yes the school may move faster,
or they wont but in the process it would put thousands of student records at risk to
misuse and id theft."
What you don't realize is that just by posting here that an Educational
Institution is vulnerable to this, Some Readers (not me) might already be
scanning for web vulnerabilities at these sites across the US.
So Why not just post it here and tell everyone and then maybe the President of
the Institution may get a call at 2 am Sunday morning realizing that they need
to fix this now.
Sol.
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/