2004-06-11 21:15

by Vasil Kolev

Something good to read – http://www.dtc.umn.edu/weis2004/rescorla.pdf. In the beginning his ideas looked stupid, but after reading it I convinced myself that I was somewhat wrong…

Of course, he doesn’t look at the exact quantity of compromises that are the result from exploiting the vulnerabilities, and without them this paper isn’t finished… But according to ‘anecdotal evidence’, as he says, I think that his ideas are on the right track. Interesting, what effect on this will have an effective automatic patch management system, that deals _ONLY_ with security patches.

Leave a Reply