lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <200510071643.j97GhLWg016044@turing-police.cc.vt.edu>
Date: Fri Oct  7 17:43:40 2005
From: Valdis.Kletnieks at vt.edu (Valdis.Kletnieks@...edu)
Subject: Websites vulnerabilities disclosure 

On Fri, 07 Oct 2005 14:38:34 +0530, Raghu Chinthoju said:
> I say, "... hey listen! your house entrance door latch isn't strong
> enough.. there are only 4 screws instead 16, which is the practice..
> you have a risk of some one easily barging into your house ...". For
> some reason you don't respond.. I publish it in the local news paper
> that ".. Mr. X's door latch is week and any one can break it easily
> ..." Do you think it is ethical??? I seriously think not.

The ethics change somewhat if instead of Mr. X, it's a branch of a bank with
many customers, or one of those "You-Store-It" storage facilities, or if it's a
medical research lab that works with dangerous pathogens, or anyplace else
where it's more than just Mr. X's goods or well-being that's endangered....

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 226 bytes
Desc: not available
Url : http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20051007/e54a05b0/attachment.bin

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ