Full Disclosure mailing list archives
Re: W2K source "leaked"?
From: Gadi Evron <ge () egotistical reprehensible net>
Date: Fri, 13 Feb 2004 19:51:18 +0200
As for your comments on zero day, I have some strong opinions on that: First, I recall two massive zero day exploits being used last year. One in IE being used by spammers and one in IIS.
Two out of how many?
We should expect this trend to advance exponentially, I would think, just considering the amount of people coming online, the natural progression of security, the infiltration time required for the marketto meet the demand and such other natural factors.
That's the future, not the present. :)
Read: organized crime, corrupt governments and corporations and such... have yet to really understand the unorthodox ways of bugfinding or the power of the field. But that they will... That is simply a force ofnature. It is inevitable.
Why would organized crime (etc.) chose to make such exploits in their arsenal public?
We should prepare for this now. But, like most events similar to this in history, we won't. Or, we won't do a very good job of it. Maybe others are more optimistic.
Of course we will, after-the-fact. :) Gadi Evron. _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- Re: W2K source "leaked"?, (continued)
- Re: W2K source "leaked"? Zhenkai Liang (Feb 13)
- Re: W2K source "leaked"? p0eta (Feb 13)
- Re: W2K source "leaked"? sil (Feb 13)
- Re: Re: W2K source "leaked"? Mike Roetto (Feb 13)
- Re: W2K source "leaked"? Allen/gore/SlackWareWolf (Feb 13)
- Re: Re: W2K source "leaked"? Valdis . Kletnieks (Feb 13)
- Re: W2K source "leaked"? jim_walsh (Feb 13)
- RE: [inbox] W2K source "leaked"? Curt Purdy (Feb 13)
- RE: W2K source "leaked"? Drew Copley (Feb 12)
- RE: W2K source "leaked"? Paul O'Malley (Feb 13)
- Re: W2K source "leaked"? Gadi Evron (Feb 13)
- RE: RE: W2K source "leaked"? Andre Ludwig (Feb 12)
- Partial protection against MyDoom Tomasz Grabowski (Feb 12)
- RE: Partial protection against MyDoom ragdelaed (Feb 12)
- RE: Partial protection against MyDoom ragdelaed (Feb 12)
- Re: RE: W2K source "leaked"? wolvie (Feb 12)
- Partial protection against MyDoom Tomasz Grabowski (Feb 12)
- RE: W2K source "leaked"? tlarholm (Feb 12)
- Re: RE: W2K source "leaked"? Byron Copeland (Feb 12)
- RE: W2K source "leaked"? Nick Jacobsen (Feb 12)
- Re: W2K source "leaked"? gabriel rosenkoetter (Feb 12)
- Re: Re: W2K source "leaked"? Byron Copeland (Feb 12)
- Re: W2K source "leaked"? gabriel rosenkoetter (Feb 12)
(Thread continues...)