Dailydave mailing list archives

Re: Exploits matter.


From: dan () geer org
Date: Tue, 06 Oct 2009 11:13:32 -0400



The summary is this: You may think increasing exploit costs
is a simply good thing. But the side effect of relying on
mitigations as opposed to software assurance is that it is
getting extremely expensive to avoid being drowned in the
noise.


The other side effect is that for exploitable vulnerabilities
a rising fraction are privately held as the probability that
you will give away something is inversely proportional to what
it cost you to obtain it.


--dan

_______________________________________________
Dailydave mailing list
Dailydave () lists immunitysec com
http://lists.immunitysec.com/mailman/listinfo/dailydave


Current thread: