Authentication (ACL) - Challenges - Solutions - Dilemmas |
[eluser]Pascal Kriete[/eluser]
Manilodisan, it wasn't aimed directly at you, but the people who may now do dumb things. Finding security issues is a good thing. What I will say though, it doesn't sound like you contacted Randy before disclosing this vulnerability. Some very clever folks have written up guidelines for this kind of thing. If someone finds a vulnerability in your own software, I think you would want them to extend the same courtesy to you. A fix is infinitely more important than immediate public disclosure. |
Welcome Guest, Not a member yet? Register Sign In |