Re: Public Review of OIS Security Vulnerability Reporting and ResponseGuidelines
Grok Headline matches for Re: Public Review of OIS Security Vulnerability Reporting and ResponseGuidelines
Re: Public Review of OIS Security
Vulnerability Reporting and Response
Guidelines
Re: Public Review of OIS Security
Vulnerability Reporting and Response
Guidelines
07/05/2004 11:57 PMPete Herzog (Jul 05 2004)
Public Review of OIS Security
Vulnerability Reporting and Response
Guidelines
Public Review of OIS Security
Vulnerability Reporting and Response
Guidelines
07/03/2004 11:49 AMOIS (Jul 02 2004)
Do not adopt OIS standards (Was: Public
Review of OIS Security Vulnerability
Reporting and Response Guidelines)
Do not adopt OIS standards (Was: Public
Review of OIS Security Vulnerability
Reporting and Response Guidelines)
07/05/2004 07:32 PMFerguson, Ann (Jul 05 2004)
Re: [Full-Disclosure] Public Review of
OIS Security Vulnerability Reporting and
Response Guidelines
Re: [Full-Disclosure] Public Review of
OIS Security Vulnerability Reporting and
Response Guidelines
07/05/2004 02:38 PMdave (Jul 04 2004)
Re: [Dailydave] Re: [Full-Disclosure]
Public Review of OIS Security
Vulnerability Reporting and Response
Guidelines
Re: [Dailydave] Re: [Full-Disclosure]
Public Review of OIS Security
Vulnerability Reporting and Response
Guidelines
07/05/2004 02:38 PMHalvar Flake (Jul 05 2004)
Reporting a Security Vulnerability in a
Microsoft Product
Reporting a Security Vulnerability in a
Microsoft Product
05/19/2004 02:58 PMMicrosoft Security Response Center (May 19 2004)
Flacks Cannot Say They're "Reporting"
Anymore, says the Public Relations
Society of America
Flacks Cannot Say They're "Reporting"
Anymore, says the Public Relations
Society of America
04/20/2004 11:16 AMA statement today by the Public Relations Society of America says that
Video News Releases should no longer use sign offs like the one that
got Karen Ryan into hot water, "In Washington, I'm Karen Ryan
Reporting." The PRSA now agrees that the practice, though common, can
be confusing or misleading.
WebTrends Reporting Center Path
Disclosure vulnerability
WebTrends Reporting Center Path
Disclosure vulnerability
01/22/2004 02:58 AMOliver Karow (Jan 20 2004)
Security FAQ: Reporting Security
Incidents to Government Authorities
Security FAQ: Reporting Security
Incidents to Government Authorities
08/03/2004 05:45 AMSecurity FAQ: Reporting Security
Incidents to Microsoft
Security FAQ: Reporting Security
Incidents to Microsoft
12/31/2004 06:55 PMim liking this ny times ombudsm...ur,
public editor. half the newspaper should
be bs reporting and the other half
should be used to deconstruct the
articles
im liking this ny times ombudsm...ur,
public editor. half the newspaper should
be bs reporting and the other half
should be used to deconstruct the
articles
01/05/2004 06:08 AMwe will see if they quit misrepresenting Dean remarks .. finally
comments .. weighed
in
nytimes.com/2004/01/04/weekinreview/04bott.html
track this
site | 5 links
Reporting Process for Security Bugs
Reporting Process for Security Bugs
12/04/2003 01:18 AMChris De
Herrera posts his discovery process about finding a security bug
in Windows Mobile. I think this is a great process to go through if
you find a security problem. Yes, we have real people watching the secure@microsoft.com alias. I
met a few of them at our security fest over the summer. They work hard
to figure out what the problems are and fix them fast.
ZH2004-02SA (security advisory): PJ CGI
Neo review (NeoBoard review) Remote
arbitrary file retrieving
ZH2004-02SA (security advisory): PJ CGI
Neo review (NeoBoard review) Remote
arbitrary file retrieving
01/01/2005 04:55 AMZetaLabs (Jan 29 2004)
Forum Stories: DSUW reporting
unsupported security scan tool
Forum Stories: DSUW reporting
unsupported security scan tool
07/06/2004 06:46 PMInkra Networks Enhances Security and
Bandwidth Reporting with eIQnetworks'
FirewallAnalyze
Inkra Networks Enhances Security and
Bandwidth Reporting with eIQnetworks'
FirewallAnalyze
09/21/2004 08:38 AMJudith Miller's WMD reporting - New York
Times war reporting - Hunt for WMD
Judith Miller's WMD reporting - New York
Times war reporting - Hunt for WMD
06/01/2004 08:18 PMWhat Time is It When You're a Radical Neo-Con Administration and You
Need a Reporter to Write Stories for the "Paper of Record" in the U.S.
Based on the Flimsiest of Assertions? It's Judith Miller Time! 6/1 ..
New York Magazine's
turn
metronewyork.com/nymetro/news/media/features/9226/index.html
track
this site | 4 links
Versioning -- Public Review Begins
Versioning -- Public Review Begins
01/26/2004 06:27 PMAs we announced last
week, we're getting ready to roll out Version 2.0 of the eleven
original Creative Commons licenses. Review a draft of
v2.0 of the by-sa-nc license (from which all other licenses are
composed) and let
us know what you think. It'll be up until Feb. 15, and we may make
updates in the meantime -- we'll let you know.
A review of the changes, with directions to the relevant
section:
- Warranties will now be a matter of choice for the licensor. See Section
5a.
- The attribution clause will include a link-back requirement
simliar to the one previously discussed here. Licensees will only be
required to link back to licensors if (1) it's reasonably practical to
do so; (2) the licensor actually specifies a URI; (3) that URI
actually points to license information about the work. See Section
4d.
- The Share Alike provision will be more flexible. The provision
will allow licensees to license resulting derivative works under
Creative Commons licenses that feature the same license
restrictions/permissions, including future and iCommons versions of
the same license. The Share Alike provision will also be clearer about
what happens when different kinds of Share Alike content is mixed
together (e.g., How to license a collage made from an SA photograph
combined with an NC-SA photograph). See Section
4b.
- Ideas for creating compatibility between our SA license and the
GNU FDL are coming soon. We'll post here and to the cc-licenses list
when it's ready.
Thanks.
Year in review: Eye on public policy
Year in review: Eye on public policy
12/19/2004 03:35 PMThis year's overall trends were defined by two distinctly
forward-looking themes: government and new competition.
Google, now public, comes under review
by analysts
Google, now public, comes under review
by analysts
08/20/2004 02:31 PMReuters Aug 20 2004 7:21PM GMT
Public review and comment - X12
Reference Model for XML Design (ASC)
Public review and comment - X12
Reference Model for XML Design (ASC)
08/15/2002 04:44 PMPublic review period for Creative
Commons 2.0 licenses
Public review period for Creative
Commons 2.0 licenses
01/28/2004 01:12 AMCreative Commons, the organization founded by Lawrence Lessig
dedicated to expansion of public culture, is revising its very
successful series of Open Content licenses. The draft of the next
version of the Attribution-NonCommercial-ShareAlike, which contains
all the stipulations used in the other 11 licenses, is available here.
The review period extends until February 15, 2004.
OpenTravel Alliance releases new spec
for public review (E-Business Standards
Today)
OpenTravel Alliance releases new spec
for public review (E-Business Standards
Today)
06/26/2002 05:04 PMOS X security vulnerability
OS X security vulnerability
12/16/2003 06:33 PMA new Mac OS X security vulnerability has been discovered. Apparantly
this vulnerability can allow execution of arbitrary code with "root"
priviledges. The issue is considered a "Less Critical" vulnerability,
and affects Mac OS X 10.3.1 and possibly other versions of the
operating system.
UN/CEFACT releases ebXML Core Component
Technical Specification for second
public review (XML Cover Pages)
UN/CEFACT releases ebXML Core Component
Technical Specification for second
public review (XML Cover Pages)
10/03/2002 11:39 AMSecurity Alert: Another IE6
Vulnerability
Security Alert: Another IE6
Vulnerability
11/25/2002 11:55 AMA new exploit has been found in IE6 that allows a serious security
vulnerability. Although this is not directly related to PHP Freaks, I
thought I would take a moment to point this out to our readers.
IE Security Vulnerability Exploited
IE Security Vulnerability Exploited
12/29/2003 11:46 PMThe security vulnerability in Internet Explorer that was published a
few weeks ago has been exploited. Not only that, it's been done almost
exactly as I commented (envisioned?) here on Sam Ruby's blog, only
using spam instead of a weblog entry. This is the spam email I
received: Viewing the html-source revealed that the "click here" link
does not actually... (306 words)
Report a Security Vulnerability
Report a Security Vulnerability
10/29/2003 11:30 PMTo report a security vulnerability, just complete the form below and
submit it. Help is available for many fields in the form -- just place
the mouse pointer over the field you need help with, and pop-up text
will appear.
RE: vBulletin Security Vulnerability
RE: vBulletin Security Vulnerability
01/22/2004 02:58 AMFerruh Mavituna (Jan 20 2004)
vBulletin Security Vulnerability
vBulletin Security Vulnerability
01/22/2004 02:58 AMgcf_at_hush.com (Jan 20 2004)
Public Key Infrastructure (PKI) -
Interforest & Internet Security
Public Key Infrastructure (PKI) -
Interforest & Internet Security
03/26/2005 05:40 AMLockergnome Mar 26 2005 10:08AM GMT
Public Events & Venues Security & Safety
Public Events & Venues Security & Safety
01/22/2004 03:30 PMmarcus evans Jan 22 2004 7:24PM GMT
Mozilla moves to fix security
vulnerability
Mozilla moves to fix security
vulnerability
07/09/2004 11:56 AMThe Mozilla Foundation has urged users of its open-source Mozilla
Application Suite, Firefox browser and Thunderbird e-mail client to
download a small patch to work around a security vulnerability
discovered Thursday.
NetObserve Security Bypass Vulnerability
NetObserve Security Bypass Vulnerability
12/30/2003 02:58 PMPeter Winter-Smith (Dec 29 2003)
How to Report a Security Vulnerability
to Microsoft
How to Report a Security Vulnerability
to Microsoft
04/09/2005 05:51 PMPosted by Microsoft Security Response Center, Apr 08 2005
URGENT: Shorewall Security Vulnerability
URGENT: Shorewall Security Vulnerability
07/10/2004 11:24 PM“Javier Fernández-Sanguino Peña has discovered an exploitable
vulnerability in the way that Shorewall handles temporary files and
directories. The vulnerability can allow a non-root user to cause
arbitrary files on the system to be overwritten. LEAF Bering and
Bering
uClibc users are generally not at risk due to the fact that LEAF boxes
do not typically allow logins by non-root users. For 2.0 users, the
problem is corrected in version 2.0.3a. For 1.4 users, the correct
version is 1.4.10f.”
FBI shuts down public e-mail system over
possible security breach
FBI shuts down public e-mail system over
possible security breach
02/05/2005 10:05 PMMac OS X security update fixes Safari
vulnerability
Mac OS X security update fixes Safari
vulnerability
03/22/2005 05:04 PMApple on Monday issued a security update for Mac OS X that fixes
several issues with the operating system, including a vulnerability in
the company's Web browser, Safari. The update also addresses several
other problems with the Mac OS X and Mac OS X Server.
Safeboot PC Security User Emuneration
Vulnerability
Safeboot PC Security User Emuneration
Vulnerability
03/20/2003 02:06 PMAdvisories (Mar 20 2003)
Timeline of Mozilla shell: Security
Vulnerability
Timeline of Mozilla shell: Security
Vulnerability
07/09/2004 10:04 PMGrok Description matches for Re: Public Review of OIS Security Vulnerability Reporting and ResponseGuidelines
GrokA matches for Re: Public Review of OIS Security Vulnerability Reporting and ResponseGuidelines
Re: Public Review of OIS Security Vulnerability Reporting and ResponseGuidelines