Thinking of Security Vulnerabilities As Defects

SecureThroughObscure writes "ZDNet Zero-Day blogger Nate McFeters has asked the question, 'Should vulnerabilities be treated as defects?' McFeters claims that if vulnerabilities were treated as product defects, companies would have an effective way of forcing developers and business units to focus on security issue. McFeters suggests providing bonuses for good developers, and taking away from bonuses for those that can't keep up. Firehose:Vulnerabilities Treated as Defects? The Fine Print: The following comments are owned by whoever posted them. Thread over on the first post. Re:Of course vulnerabilities are defects by ardle (Score:1) Saturday June 28, @05:51PMRe:Of course vulnerabilities are defects by noidentity (Score:1) Saturday June 28, @07:24PMRe:Of course vulnerabilities are defects by kesuki (Score:3) Saturday June 28, @11:21PMRe:Of course vulnerabilities are defects by Feanturi (Score:2) Sunday June 29, @01:42PMRe:Of course vulnerabilities are defects by spidr_mnky (Scor...
Originally from: http://slashdot.org/article.pl?sid=08/06/28/2016226

1 Kommentar 18.7.08 10:05, kommentieren