OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
RE: [Dailydave] Lap Dances for All

From: Chris Wysopal (weldvulnwatch.org)
Date: Thu Mar 03 2005 - 13:40:18 CST


On Thu, 3 Mar 2005 surrealdelusory.org wrote:

> Does the NDA, or anything other than pride, prevent Microsoft from
> joining the VSC and addressing these "tactical nukes" as they're
> deployed? If so, it would be magnanimous to offer MS a special license
> at a reasonable price ($300K too cheap?) that would allow them to share
> the vulnerabilities internally and address them.

I imagine that Microsoft doesn't want to join a VSC to get vulnerability
information as that would set a precedent with the ultimate result being
200 VSCs, each with one researcher contributing and charging ever higher
membership fees.

-Chris
_______________________________________________
Dailydave mailing list
Dailydavelists.immunitysec.com
https://lists.immunitysec.com/mailman/listinfo/dailydave