[Full-disclosure] Right, or wrong?

Brian Eaton eaton.lists at gmail.com
Wed Aug 8 04:14:31 BST 2007


On 8/7/07, Sol_Invictus <sol at haveyoubeentested.org> wrote:
> My 2 cents?  Anyone trying to sell a bug to the vendor with the problem is
> extortion.  Feel free to sell it to others, but only AFTER giving the vendor
> a chance to fix it.  If the vendor ignores you then that's what FD is all
> about... but please lets be responsible out there!

As far as some vendors are concerned, threatening full disclosure is
equivalent to extortion.  I don't know what lawyers would think of
that definition.

- Brian




Full-Disclosure is hosted and sponsored by Secunia.