posted by Amjith Ramanujam on Fri 18th Jul 2008 04:42 UTC, submitted by snydeq
IconNeil McAllister deliberates the question of public disclosure of open source vulnerabilities, contrasting Ounce Labs' announcement of security vulnerabilities in the Spring Framework for Java with Linus Torvalds recent missive on the Linux kernel development mailing list. Sure, vulnerability bulletins raise awareness of real danger, but they also distract from other productive activities. To find the right balance between keeping users informed and maintaining an orderly and holistic development process, McAllister suggests we take a biologist's view of how species deal with risk perception.
e p (0)    3 Comment(s)

Related Articles

posted by Amjith Ramanujam on Sat 9th Aug 2008 23:00, submitted by pas de calais
posted by David Adams on Tue 5th Aug 2008 21:16, submitted by pas de calais
posted by Thom Holwerda on Mon 30th Jun 2008 11:34, submitted by matej