Posted 21 October 2003 - 03:19 PM
I would have voted Vulnerabilities Source Code (without Analayzer :D ), Didnt you say shaun you'd try and see whats the demand for xploits ?
I'm pretty confident this is the only thing myself (and many others) will have use of, but not only for whooping boxes, yet also helping others understand how exploits work and how to write them. I'm sure not few coders could use such examples, and ask questions directly.
But eventually, since you are complaining that most of the masses will use it for defacing boxes, I can just say that most of whats talked about in governmentsecurity forums is defacement of sites, tools for defacement, autorooters, new exploits and so on. not to mention - giving a public stage for defacing experiences, and compiled working exploit codes. So you're not quite "off the responsibility" on this one. You do help the kids deface, whether you like it or not. I, however, personally don't have any objection to this act, since those companies who make the programs, Micro$oft at particular, will never do enough to improve their products' security otherwise. they just won't learn, and customers who get hit might try alternatives, which will also affect those companies who release buggy products, to improve. and fact is, as much as i believe in the microsoft-u.s. government infamous conspiracy, they have got security standards much higher then how it was few years ago (yet still not good enough).
just my 2cents...