Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Subscribers to organizations that sell exploits for vulnerabilities not yet known to software developers gain daily access to scores of flaws in the world's most popular technology, a study shows. . NSS Labs, which is in the business of testing security products for corporate subscribers, found that over the last three years, subscribers of two major vulnerability programs had access on any given day to at least 58 exploitable flaws in Microsoft, Apple, Oracle or Adobe products. The link for this article located at CSO Online is no longer available. . Recent findings from NSS Labs showcase the vast range of zero-day vulnerabilities accessible to those enrolled in their security initiative.. Zero-Day Exploits, Flaw Access, Security Analysis, Vulnerability Testing. . LinuxSecurity.com Team
Vulnerability researchers, software makers, and security companies that buy information about software flaws found little in common during a panel discussion on Wednesday debating the merits of vulnerability-purchasing programs. The discussion, wrapping up the first day of the CanSecWest Security Conference, left software makers and the companies that run vulnerability-purchasing programs at loggerheads over whether paying for information about flaws makes sense. Such initiatives help secure the end user, argued Michael Sutton, director of the vulnerability research labs for VeriSign subsidiary iDefense, which pioneered the first permanent bounty program for security vulnerabilities. . The link for this article located at TheRegister.co.uk is no longer available. . A group examined advantages of bug bounty initiatives at BlackHat Europe, emphasizing discussions in vulnerability acquisition strategies.. Flaw Bounty Programs, Vulnerability Research, Software Security Initiatives. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.