OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Ichinin (ichininSWIPNET.SE)
Date: Fri Aug 17 2001 - 20:53:41 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Howard Marsh wrote:
    > Could so many security vulnerabilities be fixed so simply?

    Yes.

    Because of..

    1) Some developers are lazy A-holes and just shovle the
    variables into a DB or app without checking validity, hence
    the great number of insecure products.

    2) Some people does not understand security or are ignorant
    or choose the ostridge approach to security.

    /Ichinin

    _____________________________________________________________________
    ** TO UNSUBSCRIBE, send the command "UNSUBSCRIBE win2ksecadvice"
    ** FOR A WEEKLY DIGEST, send the command "SET win2ksecadvice DIGEST"
    SEND ALL COMMANDS TO: listservlistserv.ntsecurity.net