Friday, April 13, 2007

Black hatters do, gray hatters are stopped

Old adage of "if you outlaw the guns only outlaws will have them" applies
Security holes in online applications may go unfixed because well-intended hackers are afraid to report bugs.

Web applications pose a dilemma for bug hunters: how to test the security without going to jail? If hackers probe traditional software such as Windows or Word, they can do so on their own PCs. That isn't true for Web applications, which run on servers operated by others. Testing the security there is likely illegal and could lead to prosecution.

