Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




firewall-wizards logo Firewall Wizards mailing list archives

Re: concerning ~el8 / project mayhem
From: ant () notatla demon co uk (Antonomasia)
Date: Mon, 19 Aug 2002 23:57:25 +0100 (BST)

From: Barney Wolff <barney () tp databus com>

I'm really bemused by this whole thread.  When a hole is published,
do people really wait for reports of exploits before patching?

Yes.  Haven't we been round this before ?  Managers decide how much
to skimp on security and geeks get to decide (within limits) which
windows to bar with the rolled-up newspaper.  Geeks get the rest of the
day off for web surfing provided they don't complain too much.  Certain
windows aren't allowed newspaper - Mr Big must have his wireless LAN.

But what's the point of talking patches before you can get the admins to
chmod the world-writable root directories ?  That state of affairs and the
fact that I can't fire people might not be completely unrelated.

And still the auditors are only interested in whether we can show on what
date each password was set.

--
##############################################################
# Antonomasia   ant notatla.demon.co.uk                      #
# See http://www.notatla.demon.co.uk/                        #
##############################################################
_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]