WebApp Sec mailing list archives

Fwd: SF new column announcement: How not to respond to a security advisory


From: Andrew van der Stock <vanderaj () greebo net>
Date: Thu, 19 Jan 2006 13:52:34 +1100

A new article on Security Focus today.

Begin forwarded message:

How not to respond to a security advisory
by Jason Miller
2006-01-18

A recently announced weakness in the BSD securelevel system isn't going to be fixed in OpenBSD. While securelevel may have problems, the vendor's security response is unacceptable and doesn't fit with their stated goals.

http://www.securityfocus.com/columnists/380



-------------------------------------------------------------------------
This List Sponsored by: Watchfire

Watchfire's AppScan is the industry's first and leading web application security testing suite, and the only solution to provide comprehensive remediation tasks at every level of the application. See for yourself. Download AppScan 6.0 today.

https://www.watchfire.com/securearea/appscansix.aspx?id=701300000003Ssh
--------------------------------------------------------------------------


Current thread: