Why is it so slow to fix flaw at university Web site

Recent discussion at FD shows how difficult it’s to fix security hole at university Web site. This ongoing case is related to disclosing SSNs at public Web site.

Comments from list readers are interesting; from giving a news tip to the local campus TV station to exploiting this flaw by the discoverer. Sad.

Let’s hope that IT staff at that university are reading Full-Disclosure.

  • BadDawG

    similar problem at one of the universities in the arabian gulf.

    May God help us all. :-)

  • Tosca

    This is sad. Shows just how bad fd has become