Disclaimer: The opinions of the columnists are their own and not necessarily those of their employer.
Kenneth F. Belva

Some perspective on patching and exploit publishing

Just to give some perspective to the fact that exploits are publicly released a day after (or the day of) the MS patch release, HD Moore comments in this Microsoft Bluehat video that exploits are normally developed about 3 months before the patch is released.

This is really no surprise to any security researcher that discovered a security vulnerability and submitted it to a major vendor; but it should put some perspective to the often heard argument that “the time between patch release and exploit time is shrinking”.

Popularity: 2%

Post a Comment

Your email is never published nor shared. Required fields are marked *

*
*