Educause Security Discussion mailing list archives

Re: Help with notice about TCP vulnerability rrequested


From: Marty Hoag <Marty.Hoag () NDSU NODAK EDU>
Date: Thu, 22 Apr 2004 14:03:05 -0500

Melissa Guenther wrote:

Something written geared to the average user is needed with regard to
the latest top vulnerability and  I wonder if anyone has communicated
something that thy are willing to share.  Most postings are for the
technical person.

   Hmmmm. I think the postings for technical people are
confusing enough in this case. Most of the stuff I've seen
is how this could perhaps be used to cause instability of
unprotected BGP sessions which control the routing on the
Internet. I guess I've felt it was important for the technical
people to evaluate this but I wonder if it would just confuse
most users. Of course the other side of this is how to respond
when users see all the hype about the new vulnerability but
haven't heard anything from "us".

   I think it is one thing to alert people to specific, imminent
threats for which they can take some action. But in this case
I'm a bit ambiguous all all the part of that (specific,
imminent, user action). I'll be interested to hear what others
have done.

   Marty

**********
Participation and subscription information for this EDUCAUSE Discussion Group discussion list can be found at 
http://www.educause.edu/cg/.

Current thread: