PDA

View Full Version : [HIB]Industry still split on vulnerability disclosure



newsbot
19-08-2010, 01:22 AM
Over the last few weeks we’ve seen increasing moves by the software industry to solve one of its oldest dilemmas; vulnerability disclosure. Last month Microsoft changed its policy on disclosure and recently research firm TippingPoint told manufacturers that it was setting a six month time limit between alerting them to a flaw and disclosing the information to its customers. There are growing signs that the industry is getting serious about sorting out its patching protocols. “I amazes me that here we are, a dozen years down the line, and we’re still talking about this,” Dan Holden, director of security research for TippingPoint told V3.co.uk. “Some of the arguments are pure semantics. We need to be mature about what our responsibilities are. The threat landscape has changed drastically; we’re up against a much larger beast.”

**Hidden Content: Check the thread to see hidden data.**