Why is it so slow to fix flaw at university Web site
April 23rd, 2006 by Juha-Matti, Filed under: Commentary, Corporate Security, Full Disclosure, Privacy
Recent discussion at FD shows how difficult it’s to fix security hole at university Web site. This ongoing case is related to disclosing SSNs at public Web site.
Comments from list readers are interesting; from giving a news tip to the local campus TV station to exploiting this flaw by the discoverer. Sad.
Let’s hope that IT staff at that university are reading Full-Disclosure.
-
BadDawG
-
Tosca



