Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!


Forgot your password?
DEAL: For $25 - Add A Second Phone Number To Your Smartphone for life! Use promo code SLASHDOT25. Also, Slashdot's Facebook page has a chat bot now. Message it for stories and more. Check out the new SourceForge HTML5 Internet speed test! ×

Submission + - Vulnerability disclosure for 70 million websites

sectest writes: CSO has a "chilling" article about the shifting landscape of vulnerability disclosure from shrink-wrapped software to real-world websites. "Grossman (CTO, WhiteHat Security) claims XSS vulnerabilities can be found in 70 percent of websites." ... "If you apply those number to a recent Netcraft survey, which estimated that there are close to 100 million websites, you've got 70 million sites with XSS vulnerabilities. Repairing them one-off, two-off, 200,000-off is spitting in the proverbial ocean." Also unclear is the legality of even finding a vulnerability in a website. Recent high profile prosecutions have cautioned security researches about sharing their discoveries. And if those people stop looking, "That leaves the malicious ones, unconcerned by the legal or social implications of what they do, as the dominant demographic still looking for Web vulnerabilities."

Submission + - The Missing MyBlogLog Tools

inblosam writes: MyBlogLog was recently acquired by Yahoo! and is a social network of blogs, sites, authors, and readers. To better harness the power of this expanding social network, Michael Jensen has created "The Missing MyBlogLog Tools". These tools allow you to go beyond searching and browsing at MyBlogLog.com, to discover blogs and people based on your contacts, members in communities, and real-time visitors to blogs.

Slashdot Top Deals

Refreshed by a brief blackout, I got to my feet and went next door. -- Martin Amis, _Money_