Would you rather have 10 0-day, or 10,000 vulns that were technically public, but no VDB or vuln scanner knew about? Justify your answer.
@seccubus you think that of the 10k holes, a few aren't as big as the 'sink' ones?
-
-
@attritionorg that why I believe in solutions like#bromium have the future, and av is losing the race. -
@seccubus these are classic vulns, not malware/virus. you wouldn't expect AV to catch any of them. -
@attritionorg av never spots vulns, just exploits. However it can only spot known exploits, so helpless in either case.
End of conversation
New conversation -
-
-
@attritionorg it helps me indirectly to know how many pumps and how much timber I need to take along on my voyage. -
@seccubus point is you don't know about 10 0day -- OR -- you don't know about 10k published, but unknown to you, vulns. -
@attritionorg so from a defender perspective they are the almost the same. However the 0day attack may know how to id them.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.