Re: How to publish a new vulnerability?



Vinod,
Check this
http://www.wiretrip.net/rfp/policy.html

First contact the vendor , inform them. Give them decent time to work on patch n fix. Once its fixed send it to bugtraq@xxxxxxxxxxxxxxxxxx

Meanwhile you can send it to CERT

http://www.cert.org/reporting/vulnerability_form.txt

Regards
Syed Mohamed A

Or you can publish it through CERT
----- Original Message ----- From: "vinod sharma" <vinodsharma_neo10@xxxxxxxxxxx>
To: <pen-test@xxxxxxxxxxxxxxxxx>
Sent: Wednesday, September 19, 2007 12:01 AM
Subject: How to publish a new vulnerability?


Hi friends,

I have found a new vulnerability but dont know the
procedure for getting it published on securityfocus or
milworm.
Please tell me if any know about the procedure.

Thanks in advance.

Vinod


Download prohibited? No problem. CHAT from any browser, without download. Go to http://in.messenger.yahoo.com/webmessengerpromo.php/

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------



------------------------------------------------------------------------
This list is sponsored by: Cenzic

Need to secure your web apps NOW?
Cenzic finds more, "real" vulnerabilities fast.
Click to try it, buy it or download a solution FREE today!

http://www.cenzic.com/downloads
------------------------------------------------------------------------



Relevant Pages

  • Re: Fast UDP scan
    ... Need to secure your web apps NOW? ... Cenzic finds more, "real" vulnerabilities fast. ... buy it or download a solution FREE today! ...
    (Pen-Test)
  • Re: web service fuzzers
    ... Need to secure your web apps NOW? ... Cenzic finds more, "real" vulnerabilities fast. ... buy it or download a solution FREE today! ...
    (Pen-Test)
  • Re: IPS Testing
    ... Need to secure your web apps NOW? ... Cenzic finds more, "real" vulnerabilities fast. ... buy it or download a solution FREE today! ...
    (Pen-Test)
  • RE: InfoSec certification EC/BackTrack?
    ... Need to secure your web apps NOW? ... Cenzic finds more, "real" vulnerabilities fast. ... buy it or download a solution FREE today! ...
    (Pen-Test)
  • Re: Gear
    ... Need to secure your web apps NOW? ... Cenzic finds more, "real" vulnerabilities fast. ... buy it or download a solution FREE today! ...
    (Pen-Test)