[NEWS] Highly Respected OpenBSD and OpenSSH Programmer Censors Website, Cites DMCA

From: support@securiteam.com
Date: 09/05/01


From: support@securiteam.com
To: list@securiteam.com
Subject: [NEWS] Highly Respected OpenBSD and OpenSSH Programmer Censors Website, Cites DMCA
Message-Id: <20010905212654.9F795138C0@mail.der-keiler.de>
Date: Wed,  5 Sep 2001 23:26:54 +0200 (CEST)

The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com
- - promotion

When was the last time you checked your server's security?
How about a monthly report?
http://www.AutomatedScanning.com - Know that you're safe.
- - - - - - - - -

  Highly Respected OpenBSD and OpenSSH Programmer Censors Website, Cites
DMCA
------------------------------------------------------------------------

SUMMARY

Dug Song is a highly respected OpenBSD and OpenSSH programmer, the author
of Dsniff and numerous security papers including a common vulnerability in
many firewall applications and servers. Dug Song decided that he could no
longer publish his web site without violating the DMCA (Digital Millennium
Copyright Act).

DETAILS

At this time it is not clear whether the site was taken down under
pressure from corporations or simply attempting to express feelings about
the DMCA and possibly start a trend whereby security researchers withhold
their own research because they are at risk under the DMCA.

Many people outside of the security industry do not fully understand that
independent security research by people like Dug Song often find security
holes, vulnerabilities and are the driving force toward stronger software
and security practices within corporations. They are the watch dogs that
ensure independent security testing (often, if not always) without
compensation and simply for the challenge and to promote safer, stronger
software.

ADDITIONAL INFORMATION

The information has been provided by <mailto:jono@microshaft.org> Jon O
.

========================================

This bulletin is sent to members of the SecuriTeam mailing list.
To unsubscribe from the list, send mail with an empty subject line and body to: list-unsubscribe@securiteam.com
In order to subscribe to the mailing list, simply forward this email to: list-subscribe@securiteam.com

====================
====================

DISCLAIMER:
The information in this bulletin is provided "AS IS" without warranty of any kind.
In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages.



Relevant Pages

  • RE: Comment on DMCA, Security, and Vuln Reporting
    ... Statutory damages are only $15000 at the maximum, ... Comment on DMCA, Security, and Vuln Reporting ... > I believe system-level security is MUTUALLY-EXCLUSIVE from copyright ...
    (Vuln-Dev)
  • RE: Xbox (Was -Online Games Consoles and Security Implications)
    ... Xbox (Was -Online Games Consoles and Security Implications) ... Sure the XBox is protected by the DMCA. ... encryption research apparently does not. ...
    (Vuln-Dev)
  • Comment on DMCA, Security, and Vuln Reporting
    ... I find it sadly amusing that technology companies see "security debate" on ... disclosure of the generic password on the default Unix "guest" account will ... be prosecutable under DMCA, or that a given exploit uses a "buffer overflow" ... I believe system-level security is MUTUALLY-EXCLUSIVE from copyright ...
    (Vuln-Dev)
  • Comment on DMCA, Security, and Vuln Reporting
    ... I find it sadly amusing that technology companies see "security debate" on ... disclosure of the generic password on the default Unix "guest" account will ... be prosecutable under DMCA, or that a given exploit uses a "buffer overflow" ... I believe system-level security is MUTUALLY-EXCLUSIVE from copyright ...
    (Bugtraq)
  • RE: Comment on DMCA, Security, and Vuln Reporting
    ... In light of the fact that 2600 was successfully sued over merely linking to ... Comment on DMCA, Security, and Vuln Reporting ... I find it sadly amusing that technology companies see "security debate" on ... I believe system-level security is MUTUALLY-EXCLUSIVE from copyright ...
    (Vuln-Dev)