[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <87wudpw9vz.fsf@deneb.enyo.de>
From: fw at deneb.enyo.de (Florian Weimer)
Subject: Vulnerability Disclosure Debate
"Joel R. Helgeson" <joel@...geson.com> writes:
> If they did that, how could we write NESSUS plugins that would accurately
> scan for vulnerabilities?
You don't, so you buy a proprietary scanner.
Look at who's takes part in those coordinating forums. Some companies
certainly have conflicting interests.
> Managing security by applying patches is fundamentally flawed. The
> programmers need to write secure code. The onus is on them, not us.
Then why do you think it's of any importance to write Nessus plugins? 8-)
Powered by blists - more mailing lists