[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-Disclosure] Vulnerability response times -- MS and others



On Wed, 07 Apr 2004 11:34:34 CDT, hggdh <hggdh@xxxxxxxxxxx>  said:

> Anyways... the report seems to indicate that Microsoft is the fastest
> on solving security issues.
> 
> Comments?

That's only because they smack down anybody who doesn't follow their style of
disclosure.  I'll bet if you recompute based on the time lag between when the
black hats first have a 0day and when the patch comes out, you'll find a far
different story.

Remember - CERT has taken a lot of heat over the years for delaying
announcements until patches are ready.  Microsoft is just doing more of the
same.

Attachment: pgp00019.pgp
Description: PGP signature