Full Disclosure mailing list archives

Re: Publishing exploit code - what is it good for


From: Erik Fichtner <emf () obfuscation org>
Date: Thu, 30 Jun 2005 13:35:37 -0400

Joachim Schipper wrote:

This is doubly true if we're not talking about a dedicated pentester,
but about a sysadmin with a networking/security background who likes to
verify that the patches did, indeed, work.

Likewise; a sysadmin that likes to verify that their other security
management tools work properly:  firewalls, IDS's, VA GUI's, ...

...especially when there isn't a patch yet.

-- 
Erik Fichtner; Unix Ronin

"Mathematics is something best shared between consenting adults
in the privacy of their own office" - Adam O'Donnell

Attachment: signature.asc
Description: OpenPGP digital signature

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Current thread: