Researchers schedule January as ‘month of Apple bugs’
Friday, December 22nd, 2006
Two security researchers intend to kick off the new year by detailing a range of Mac exploits.
Kevin Finisterre, an independent security researcher, and a hacker known only as LMH, will begin publishing information on vulnerabilities in Apple products on 1 January 2007. Each day they plan to disclose one flaw involving Apple’s operating system Mac OS X or applications that run on the OS. Neither individual plans to notify Apple before publishing the exploits.
Security research H.D. Moore started the latest craze for ‘a bug a day for a month’ with a month of browser bugs which revealed flaws not only in Microsoft’s Internet Explorer, but also in Mozilla Firefox, Apple’s Safari and Opera.
Hmm. I think this is irresponsible, self-serving and disgusting. If their aim was to make computing more secure for users of Apple, Microsoft, Mozilla etc products, they would inform the company in question and give them an opportunity to fix the vulnerability, rather than advertise it to people who would exploit it. Of course, their aim is to sell their services.
I would quite like to see a scenario where a company wasn’t able to fix a vulnerability that these wankers had announced before an exploit was created and doing harm. I’d like then for those who suffered disruption or data loss to sue them.











