Free Republic
Browse · Search
General/Chat
Topics · Post Article

To: N3WBI3
An IT administrator can use that information to protect against the attack of someone else who has it, leaving IT administrators without information is like leaving them unarmed..

You want to help the hackers build an arms race on both sides. A better solution is to annihilate the hackers, and you don't do that by feeding them vulnerabilities. You feed them patches, and catch anyone who cracks it.

37 posted on 08/02/2006 9:39:08 AM PDT by Golden Eagle (Buy American. While you still can.)
[ Post Reply | Private Reply | To 36 | View Replies ]


To: Golden Eagle
You feed them patches, and catch anyone who cracks it.

The problem with that is you inherently trust the vendor. Several companies have been known to sit on information that shows their product to have been cracked, and until the information went public, they did nothing about it.

Part of releasing the vulnerability information is to force the hand of the vendor to act. I agree that the vendor should be notified first. However, if nothing is done about it, then the information should be released publicly to force their action.

38 posted on 08/02/2006 9:44:17 AM PDT by ShadowAce (Linux -- The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 37 | View Replies ]

To: Golden Eagle
A better solution is to annihilate the hackers

Which I am all for, if you illegally hack you should go away a long time. Someone telling me my front door is open should not be a crime...

41 posted on 08/02/2006 10:46:24 AM PDT by N3WBI3 ("I can kill you with my brain" - River Tam)
[ Post Reply | Private Reply | To 37 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson