Free Republic
Browse · Search
General/Chat
Topics · Post Article

To: Golden Eagle
MS will get a better insight as to the flaws in their product and how people will exploit them during this one conference than they would in a whole year looking at it themselves. Passing this up would be plain stupid.

I am all for you when it comes to legally going after people who exploit without permission the systems of others (no matter what their supposed motivation). But doing internal security research and then saying 'hey I found out there is this big error in IE7' should never be illegal. I would not go about it quite that way (I would always give the vendor a heads up but if the problem is not addressed I would feel obligated to let the public know)
27 posted on 08/01/2006 6:42:15 PM PDT by N3WBI3 ("I can kill you with my brain" - River Tam)
[ Post Reply | Private Reply | To 26 | View Replies ]


To: N3WBI3
I am all for you when it comes to legally going after people who exploit without permission the systems of others (no matter what their supposed motivation).

I agree, with the exception of our military who may do such things against foreign adversaries, at the time of war or in response to hack attempts made against us.

But doing internal security research and then saying 'hey I found out there is this big error in IE7' should never be illegal. I would not go about it quite that way (I would always give the vendor a heads up but if the problem is not addressed I would feel obligated to let the public know)

Finding the holes shouldn't be illegal, but reporting them publicly without first notifying the vendor, or even worse releasing exploit code prior to the vendor having time to develop a patch, should be.

30 posted on 08/02/2006 7:54:19 AM PDT by Golden Eagle (Buy American. While you still can.)
[ Post Reply | Private Reply | To 27 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson