Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



WebApp Sec: Re: Felony For Refreshing A Web Page

Re: Felony For Refreshing A Web Page

From: Jason Coombs <jasonc_at_science.org>
Date: Sat Jan 7 17:57:24 2006

> It's official. Americans are crazy.

Although your sentiment is appreciated it's more likely a sign of a change of expectation that society is adopting across-the-board, perhaps just a political swing and perhaps more lasting in its implications.

The rules are now simple: when you find a weakness in society, you are expected to do one of the following but never both:

1. Report the vulnerability to the appropriate authority or peer group being careful never to make use of your knowledge of the weakness in any way but still spreading awareness of the vulnerability and hoping that everyone else obeys the rules and acts in accordance with the principles of responsible disclosure.

2. Run away and hide, staying away from anything that even resembles the vulnerability, unless there is computer forensic evidence that you discovered the vulnerability, in which case you must opt for #1 above or else you can and will be prosecuted for wrongdoing based solely on some person's so-called 'expert' opinion.

Following these two simple rules will keep you out of harms way when other people fail to follow these rules, and ensure that you always appear trustworthy and law-abiding.

Regards,

Jason Coombs
jasonc_at_science.org
Received on Jan 07 2006

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]