Disclosure of the week (1): Opera 9.10
January 13th, 2007 by Juha-Matti, Filed under: Commentary, Corporate Security, Culture, Web
There are many ways how to disclose the vulnerabilities.
This is the Opera Software way:
1. Release new 9.10 version of the browser (Dec 18th ’06)
2. Don’t publish any information in the Security section of official changelog
3. Check if iDefense will release their related advisories
4. Release two knowledge base advisories
5. Update the changelog with no revision history or Last Updated date
6. Wait if users will not notice your way to act
-
http://- Anne W.



