in reply to Re: application stress testing with Perl
in thread application stress testing with Perl
Making the bug public at least gives users the opportunity to do *something* (extra monitoring, taking down the service etc etc), rather than being blindsided by a previously "unknown" attack...
I'm also a fan of letting the vendor know about the exploit before going public, so at least they have some time to respond...
|
|---|