|
|||||||||||
|
Re: defining 0day
From: Gadi Evron <ge(at)linuxbox.org>
Date: Tue Sep 25 2007 - 16:57:23 EDT
It would if we are to stay stuck in our niche, but you need to remember - security is about niches, we are all experts -- but in very specific fields. These past 2 years we faced multiple targeted attacks with previously unknown vulnerabilities. We experience MASSIVE exploitation of users with 0days used on web sites and ine mail, etc. As an industry, as professionals, it is time to get our act together on the basics. I am operations manager for ZERT, and for me, this is indeed at the very heart of the matter. How you define this silliness is directly linked to how you do two of the most essential parts of security:
If a vulnerabiliy is fully disclosed, unpatched, being actively exploited, etc. caused real confusion, and non of us, or any of the written material, can agree on the basics. It's not about fighting on what 0day means as much as it is about how we as an industry, a community, conduct ourselves and can reach a common language, which directly impacts operations. So, if WMF was disclosed today after being actively exploited itw for a while, what would you call it? How would you respond to it? How long would it stay unpatched and when will you realize its importance? > C Gadi. Received on Tue Sep 25 17:59:23 2007 This archive was generated by hypermail 2.1.8 : Sun Oct 28 2007 - 06:17:59 EDT |
||||||||||
|
|||||||||||