Full Disclosure mailing list archives

RE: What's wrong with this picture?


From: "Replugge[ROD]" <packet () vtr net>
Date: Thu, 26 Feb 2004 16:49:24 -0300

 The fact that exploit code is made available after the patch is released,
is probably because the researchers
Made the vulnerability publicly available at same time as the patch was
released, otherwise MS wouldnt give
Credit to the researchers for the vuln.

Rgds

Rod.-

-----Mensaje original-----
De: full-disclosure-admin () lists netsys com
[mailto:full-disclosure-admin () lists netsys com] En nombre de
Valdis.Kletnieks () vt edu
Enviado el: Jueves, 26 de Febrero de 2004 14:38
Para: bugtraq () securityfocus com; full-disclosure () lists netsys com
Asunto: [Full-Disclosure] What's wrong with this picture?

Somebody want to explain to this guy that there's a difference between
"publicly available" exploits and 0-day exploits circulating in the
underground?

http://news.bbc.co.uk/1/hi/technology/3485972.stm

Scary part is that he's a high honcho at Microsoft's security unit.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: