Dailydave mailing list archives

vuln research/disclosure paper from eEye


From: Chris Wysopal <weld () vulnwatch org>
Date: Thu, 19 May 2005 10:12:52 -0500 (EST)


Zero Day: Vulnerability Research, Disclosure and Ethics

By: Ben Nagy
Senior Security Engineer
eEye Digital Security

http://www.eeye.com/~data/publish/whitepapers/research/OT20050512.FILE.pdf

Dave's favorite topic, I know.  What caught my eye was:

"The first professional research teams were created in the late 1990s by
innovative commercial vendors like eEye Digital Security and ISS - at last
presenting a legitimate way for researchers to find software
vulnerabilities for a living"

I guess L0pht wasn't commercial enough for them even though we were
selling software and had 4 fulltime employees years before eEye's first
product was for sale.  L0pht along with Cerberus Information Security,
CORE SDI, Secure Networks, Inc., and yes, ISS really paved the way.  I am
probably missing others.

Zero Day: Vulnerability Research, Disclosure and Ethics

By: Ben Nagy
Senior Security Engineer
eEye Digital Security

http://www.eeye.com/~data/publish/whitepapers/research/OT20050512.FILE.pdf


-Chris
_______________________________________________
Dailydave mailing list
Dailydave () lists immunitysec com
https://lists.immunitysec.com/mailman/listinfo/dailydave


Current thread: