The last week or so, a lot was made of Apple's treatment of the DNS vulnerability. After the company took their time issuing a patch for the flaw, a researcher revealed that it only patches server systems and neglects to address clients.
This started the whole cycle anew and lead just about everyone to once again criticize Apple for its handling of the security flaw. Well, everyone except the guy who discovered the flaw.
Last week, Dan Kaminsky asked the rest of the security community to call off the dogs on Apple, insisting that the company did just fine with its handling. Kaminsky's exact words:
There are scenarios in which the clients are vulnerable, but it's servers we need to worry about right now, and Apple did right by fixing their server.
07 Aug 2008