@dakami Right, meaning 500 of the 10k may be silly RFI that get lost in the noise of the RFI scanners....
-
-
Replying to @attritionorg
@attritionorg I wonder where you're going with this. Looking forward to finding out.1 reply 0 retweets 0 likes -
Replying to @attritionorg
@attritionorg One caveat, I strongly prefer one 0day that works reliably against everything vs. 10,000 0days that I have to precisely target1 reply 0 retweets 0 likes -
Replying to @attritionorg
@attritionorg@dakami red, blue & suits all more likely to take a working exploit more seriously than many vuln of unquantifiable risk/use1 reply 0 retweets 0 likes -
Replying to @kickfroggy
@kickfroggy@dakami Even if you can convert those 10k into working exploits with some coding skills?1 reply 0 retweets 0 likes -
Replying to @attritionorg
@attritionorg@dakami can definitely vs can potentially get a working exploit changes how much time/effort/resources you're gambling with1 reply 0 retweets 0 likes -
Replying to @kickfroggy
@kickfroggy@dakami Assume you have a skilled exploit dev. Those 10k can be converted into exploits with varying degrees of time.2 replies 0 retweets 0 likes -
Replying to @attritionorg
@attritionorg@dakami the faster a vuln can become a reliable exploit the more valuable it becomes...1 reply 1 retweet 0 likes
@kickfroggy @dakami Say 10% of the 10k are < 10m to reliably exploit.
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.