All the latest UK technology news, reviews and analysis

Freedom of speech

by eMedia

22 Aug 2005

Be the first to comment

  • Tweet this

It's an oft quoted and utterly stupid statement that freedom of speech doesn’t include the right to shout "Fire!" in a crowded cinema. It does, if there is a fire.

 

Microsoft has problems with the way the latest flaw in their software has been publicised, and they have reason to be. Had this flaw been reported to them first they could have built a patch to solve it; as it is IT administrators have a rough weekend ahead.

 

There's considerable disagreement about how to deal with vulnerability reporting. Software manufacturers don't want flaws reported because it makes the hacker's job easier. Vulnerability testers want to make headlines and get business for themselves and claim if they didn’t publicise flaws then they wouldn’t get fixed.

 

There's a logical way out of this. If you find a flaw report it to the company. Give them time to find a patch, say three months, and then if there's no action release the news. When the patch is ready the person or firm who found the vulnerability gets the credit and administrators can deal with the problem immediately.

 

This latest announcement shouts of publicity hunting. So if you're thinking of hiring these people you might want to ask them to be a little more responsible next time.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

IT priorities for 2012

What is the most important IT priority for your company this year?

97%

1%

1%

0%

1%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Accurev

Top 5 software development challenges

This paper focuses on a series of best practices and techniques for development teams looking to improve their software development processes

Talend

Rubbish in, rubbish enterprise

Why good data management at all levels is essential in the modern business (video, 6mins)

Technical support Specialist (2/3rd Line) CCNA/MCITP

Technical support Specialist (2/3 rd Line) CCNA...

Senior .NET Engineer

Aufgabe: - Das Design, die Implementation und Durchführung...

Supporter

Aufgaben: - Provide basic IT support for the end users...

Network Engineer - Wireless - Manchster - CCNP - Contract

VPN - WAN - LAN - ASA - FSWM - Cisco - Routers - Swicthes...

To send to more than one email address, simply separate each address with a comma.