I used oCERT for the only bug I've ever disclosed. 50k ColdFusion servers got hit by it 1 week before disclosure.https://twitter.com/andreabarisani/status/895336188050944000 …
-
-
Replying to @dguido
It was oCERT-2009-007 and my company at the time wouldn't let me report it under my own name lol: http://andrea.bio/ocert/advisories/ocert-2009-007.html …
#opsec2 replies 1 retweet 4 likes -
Replying to @dguido
Trail of Bits used oCERT again when our HS intern, Loren, reported the exploitable bugs she found in VLC: http://andrea.bio/ocert/advisories/ocert-2015-009.html …
1 reply 0 retweets 3 likes
Andrea and co have always been a pleasure to work with and I'm sad to see them go!
11:25 AM - 9 Aug 2017
0 replies
0 retweets
1 like
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.