Thursday, January 09, 2003
Exploit Code At Security Focus Removed

"Observant Derek Vadala noted that it ' Looks like the exploit code from the Security Focus (i.e. Bugtraq) vulnerability database has been removed. There used to be an _exploit_ tab between _discussion_ and _solution_ on the individual vulnerabilty pages. It provided exploit code, if available. This was extremely useful for doing vulnerability testing so it's too bad. Seems to me that this is just one less resource for white hats and one more advantage for the blacks hats. I wonder if the recent acquisition by Symantec had something to do with the change."'

Of course, there's a flip side to Symantec aquiring all those companies.  Securityfocus takes one more step towards irrelevence.


Info Security From Wozz
Permalink  comment []  

The View From Symantec's Security Central (TechNews.com)

"Inside a cavernous room on the first floor there, security analysts for Symantec sit in long, curved rows 24 hours a day, working on computers and facing a wall of theater-size screens. Information displayed on the screens helps them keep tabs on whether any attacks are underway at any of the company's more than 600 corporate clients. "

A good short article on Symantec's managed security business and what they've been doing with their recent aquisition of Riptech and Securityfocus.  While this type of operation isn't really new - Security Operation Center's (SOC's) have been around for a couple of years now - it does give a good layman's picture of the usefulness of data collection and mining for insight into security problems, something on many people's minds with the emergence of TIA.  They even have a video tour!

[via SecurityNewsPortal]


Info Security From Wozz | World Affairs from Wozz
Permalink  comment []