Complete.Org: Mailing Lists: Archives: linux-help: October 2003:
[linux-help] Re: security list
Home

[linux-help] Re: security list

[Top] [All Lists]

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index] [Thread Index]
To: linux-help@xxxxxxxxx
Subject: [linux-help] Re: security list
From: John Goerzen <jgoerzen@xxxxxxxxxxxx>
Date: Thu, 2 Oct 2003 13:01:13 -0500
Reply-to: linux-help@xxxxxxxxx

On Thu, Oct 02, 2003 at 12:46:16PM -0500, M. Osten wrote:
> Bugtraq is heavily moderated and censored (due to corporate interests),
> so I wouldn't call it a "good" list.

Sometimes I want a moderated and censored list.  If you want to find out
about patches for software you run and some security headlines, it's a good
place to be.

> A better list is Netsys's "Full Disclosure" list.  Be prepared for the
> usual flame-wars, and retarded banter, but also be prepared to be very
> disturbed by the general lack of security in all software.  "Full
> Disclosure" usually has "0 day" bulitins and exploit code before anyone
> else (and usually before the vendor even has been contacted).

I've found that full disclosure has such a low signal-to-noise ratio that
it's nearly useless.  I don't care about exploit code except perhaps to
verify that a fix has worked, so that's no extra benefit for me.

-- This is the linux-help@xxxxxxxxx list.  To unsubscribe,
visit http://www.complete.org/cgi-bin/listargate-aclug.cgi


[Prev in Thread] Current Thread [Next in Thread]