Saturday, September 06, 2008

Snosoft: If you outlaw SCADA exploits, only outlaws will have SCADA exploits.

I've unsubscribed from all the SCADA mailing lists cause they raised my blood pressure too much (well that and the amount of rubbish that was sent to the list and that anything of value would show up on Digital Bond,) but The Five Ws of Citect ODBC Vulnerability CVE-2008-2639 came up in my Google Alerts this morning.

I definitely have opinions on this, but I've exceeded my quota of comments on vulnerability disclosure for the decade.


Jake Brodsky said...

awwww c'mon Matt, we know you want to say something...


Matt Franz said...

Sure I do and (believe it or not) it wouldn't be vendor bashing.