Adventures in Disclosure: A Look at the Legal Exploit Sales Market presented at AUScert 2008

by Charles Miller,

Summary : This talk will focus on the topic of vulnerability disclosure from the perspective of a security researcher. The different forms of disclosure as well as researcher motivations will be discussed. Significant time will be spent on the legal exploit sales market. A few case studies involving disclosures I've made will be addressed. The talk will culminate in a discussion of the implications of these topics on Internet security in general.