Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security FullDisclosure
[Top] [All Lists]

Re: [Full-Disclosure] To anybody who's offended by my disclosure policy-

Subject: Re: [Full-Disclosure] To anybody who's offended by my disclosure policy-GET THIS GUYS
Date: Sun, 28 Nov 2004 17:06:56 +0200
Hi Rafel. 'Sup?

What i am saying is, it is now who codes the software, it is how you do.
(if i was not in a job working frame, i would publishing things that will
cause you all to say its shit)
FireFox team claimed its an old bug.bla bla bla.and has no problem and no
security risk...bla bla bla... and didn't fix it after 4 month...
Just like MS when they are not even commercial, than what they are? on the
way to making money...to be the second size'd market share browser.

What does Mozilla and MS have to do with the guy? Yes, he seems like a nice guy who knows what he is doing.. but that's where it ends.


He might do things differently usually, or in the future, but he didn't in this case, at least as far as I see it.

He did not just release, hold back or notify the vendor - he just sends things out with claims of semi-world-domination and "you'll-pay-for-ignoring-me" - and then.. blames people for braking GPL when they mis-use his "creations" or "findings" if you prefer.

Give me a break.

I think both him and myself now reached an understanding of what the other guy was trying to say.

Your claims of "I WOULD HAVE RELEASED IF I DIDN'T WORK HERE" sound just as vain. Release or be quiet.
Nobody's perfect - not MS or Mozilla. Let's leave the MS sucks debate to other threads.


GO SKYLINED!

GO SKYLINED!

Or in other words, Rafel: "I am working for a company now, so I can go out and act like an idiot." :)

You should add some "the opinions expressed in the email message are not necessarily those of my employer" or the like.. I doubt Finjan needs the bad publicity among the security community of one of their researchers saying this kind of behaviour is "COOL".

        Gadi.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html

<Prev in Thread] Current Thread [Next in Thread>