Follow Slashdot blog updates by subscribing to our blog RSS feed

 



Forgot your password?
typodupeerror
Get HideMyAss! VPN, PC Mag's Top 10 VPNs of 2016 for 55% off for a Limited Time ×
Security

Submission + - Vulnerability disclosure for 70 million websites

sectest writes: CSO has a "chilling" article about the shifting landscape of vulnerability disclosure from shrink-wrapped software to real-world websites. "Grossman (CTO, WhiteHat Security) claims XSS vulnerabilities can be found in 70 percent of websites." ... "If you apply those number to a recent Netcraft survey, which estimated that there are close to 100 million websites, you've got 70 million sites with XSS vulnerabilities. Repairing them one-off, two-off, 200,000-off is spitting in the proverbial ocean." Also unclear is the legality of even finding a vulnerability in a website. Recent high profile prosecutions have cautioned security researches about sharing their discoveries. And if those people stop looking, "That leaves the malicious ones, unconcerned by the legal or social implications of what they do, as the dominant demographic still looking for Web vulnerabilities."
Software

Submission + - The Missing MyBlogLog Tools

inblosam writes: MyBlogLog was recently acquired by Yahoo! and is a social network of blogs, sites, authors, and readers. To better harness the power of this expanding social network, Michael Jensen has created "The Missing MyBlogLog Tools". These tools allow you to go beyond searching and browsing at MyBlogLog.com, to discover blogs and people based on your contacts, members in communities, and real-time visitors to blogs.

Slashdot Top Deals

Nearly every complex solution to a programming problem that I have looked at carefully has turned out to be wrong. -- Brent Welch

Working...