Full Disclosure mailing list archives
Re: UN support for "security by obscurity"
From: Brian McWilliams <brian () pc-radio com>
Date: Sat, 07 Dec 2002 20:25:46 -0500
Note that the policy of "security by obscurity" in WMD info has been ratified by the UN via accords including the Chemical Weapons Convention, the Biological Weapons Convention and the Nuclear Non-Proliferation Treaty.
http://www.nytimes.com/2002/12/07/international/middleeast/07NATI.htmlI don't believe the IT industry has yet reached equivalent accords on the handling of vulnerability info.
Brian At 07:21 PM 12/6/2002, Richard M. Smith wrote:
Another data point in the full-disclosure/security-by-obscurity debate: http://www.cnn.com/2002/WORLD/meast/12/06/sproject.irq.un.report/index.h tml UNITED NATIONS (CNN) -- After Iraq hands over its declaration on weapons of mass destruction programs Saturday, U.N. weapons inspectors will analyze and edit out parts of it before distributing it to members of the U.N. Security Council. Hans Blix, chief U.N. weapons inspector, said Friday the 15-member council agreed to the procedure after discussing "the risks of releasing parts of this declaration that might help to achieve proliferation of nuclear, biological, or chemical weapons." The United States, Russia, and other countries are concerned about releasing information that would provide "a training manual for how to build weapons of mass destruction," a Western diplomatic source told CNN. ... Richard _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
_______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- UN support for "security by obscurity" Richard M. Smith (Dec 06)
- Re: UN support for "security by obscurity" Brian Hatch (Dec 06)
- Re: UN support for "security by obscurity" Rick Updegrove (Dec 07)
- *Including* Security through obscurity measures is good. Brian Hatch (Dec 08)
- Re: UN support for "security by obscurity" Rick Updegrove (Dec 07)
- Re: UN support for "security by obscurity" Georgi Guninski (Dec 07)
- Re: UN support for "security by obscurity" Michal Zalewski (Dec 07)
- Re: UN support for "security by obscurity" Brian McWilliams (Dec 07)
- "security by obscurity" Berend-Jan Wever (Dec 07)
- Re: "security by obscurity" Niels Bakker (Dec 08)
- Re: "security by obscurity" Georgi Guninski (Dec 09)
- Re: "security by obscurity" Roland Postle (Dec 09)
- "security by obscurity" Berend-Jan Wever (Dec 07)
- Re: UN support for "security by obscurity" Brian Hatch (Dec 06)
- <Possible follow-ups>
- RE: UN support for "security by obscurity" Schmehl, Paul L (Dec 07)