@taosecurity @jeremiahg won't regulation just move the industry offshore..how does a government regulate crews in EE, Asia, etc. etc.?
-
-
Replying to @randomuserid
@randomuserid IMHO, U.S. regulation will legitimize the space and shift $ up to bigger players like Raytheon & Northrop. (Cc@taosecurity)3 replies 4 retweets 0 likes -
Replying to @jeremiahg
@jeremiahg@randomuserid@taosecurity ummmm, you do know that@revuln is two prominent Italian researchers not subject to US laws, right?2 replies 0 retweets 0 likes -
Replying to @SushiDude
@SushiDude@randomuserid let's say the US outlawed 0day sales and@revuln sold one affecting a US software vendor. Grounds for extradition?3 replies 0 retweets 0 likes -
Replying to @jeremiahg
@jeremiahg@sushidude@randomuserid@revuln Can the US extradite a company? The CEO? Did we establish what law they are breaking?2 replies 0 retweets 0 likes -
Replying to @attritionorg
@attritionorg I was speaking hypothetically, should the US regulate / outlaw 0day sales. Dunno much about how extradition works in practice.1 reply 0 retweets 0 likes -
Replying to @jeremiahg
@jeremiahg First, would depend on severity of law. Anything short of Felony 1, can't imagine extradition being considered.2 replies 0 retweets 0 likes -
Replying to @attritionorg
@attritionorg Then whatever Gary McKinnon was charged w/ must've been a Felony 1 offense. Perhaps they'd go for the same in 0day sales.2 replies 0 retweets 0 likes -
Replying to @jeremiahg
@jeremiahg If not felony 1, the target of the hack, and the .gov likely claiming 'national security' would justify it in their minds1 reply 0 retweets 0 likes -
Replying to @attritionorg
@attritionorg and then we're back to a SCADA conversation of which @ReVulns claims to have 0-days in. heh. This industry is so weird.2 replies 0 retweets 0 likes
@jeremiahg Yep! All the while ignoring the fact that SCADA vendors are criminally negligent. Any other industry, they would be accountable
-
-
Replying to @attritionorg
@attritionorg your right! we've done such a good job ensuring M$ is held accountable for their vulns and the millions of $ in lost ip.2 replies 0 retweets 0 likes -
Replying to @kodefupanda
@kodefupanda@attritionorg@jeremiahg see history - SCADA/ICS vendors are 10+ yrs behind ISVs like MS, the only diff is that ppl can die now0 replies 0 retweets 0 likes
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.