Главная
Study mode:
on
1
Intro
2
Alan Friedman
3
History
4
Katie Masseur
5
More public attention
6
Dip in the water
7
The middlemen
8
The two sides
9
The researcher side
10
The heroes
11
The academics
12
The knowledge
13
Slytherin
14
Everyone is special
15
Vendors just want money
16
They want the same thing
17
Vendors want security
18
Vendors have different capabilities
19
Different firms have different abilities
20
Different firms have different markets
21
What are the outcomes
22
Theres no silver bullet
23
There is no onesizefitsall model
24
People are looking for different things
25
Building a set of principles
26
Magna Carta of Vulnerability Disclosure
27
How are we going to do that
28
Finding common ground
29
Getting things done
30
Building trust
31
Building predictability
32
Reducing friction
33
Markets evolve
34
Predictability
35
Challenges
36
The US Government
37
Peer Pressure
38
Final Bullets
39
How can you help
40
Hard question
41
Mikey Dickerson
42
A provocative idea
43
Public pressure moves companies
44
Software liability
45
Civil society
46
Transparency
47
German Researcher
48
Companies have gotten worse
49
Disclosures are getting worse
50
We have gotten worse in this experience
51
This conversation has to be with both groups
Description:
Explore a comprehensive conference talk that delves into the complex dynamics of vulnerability disclosure, focusing on how the government is facilitating dialogue between researchers and vendors. Learn about the history of vulnerability disclosure, the various stakeholders involved, and the challenges faced by both researchers and vendors. Discover the efforts to establish common ground principles, build trust, and reduce friction in the disclosure process. Gain insights into the evolving market dynamics, the role of public pressure, and the potential impact of software liability. Examine the importance of transparency, civil society involvement, and the need for ongoing conversations between all parties to improve the vulnerability disclosure landscape.

Don't Hate the Disclosure, Hate the Vulnerability - How the Government is Bringing Researchers and Vendors Together to Talk Vulnerability Disclosure

BSidesLV
Add to list
0:00 / 0:00