#FullDisclosure

Alexandre Dulaunoyadulau@infosec.exchange
2026-02-08

Full disclosure in computer security still exists and is complementary to other disclosure models. The evolution of vulnerability disclosure is not linear from full disclosure to responsible disclosure to coordinated disclosure. These models coexist and all need to be taken into account.

You can’t just say “the legal framework will solve it” or “just do coordinated disclosure.” Vendors, researchers, and users are not all rational actors playing the same game.

Vulnerability disclosure is more complex than that, and if you actually want to address the issue, you can’t just say “it doesn’t exist.”

#cve #gcve #vulnerabilitymanagement #cybersecurity #fulldisclosure #vulnerability

I gave no idea, zero (0), how they got a high severity CVSS out of missing response headers. I mean, are they important? Sure! Don't you put that on reports, Bill? You bet! 8.3 severity? I'd be laughed out of the readout call.

seclists.org/fulldisclosure/20

#fulldisclosure #cvss

j43147 :pentagram:j43147
2025-11-25

I can't think of anything more repulsive than the Andromedan virus who thinks everything is a joke... The Andromedan virus will think it's a joke... but it is Animal Farm; disclosure 101

2025-09-27

To everyone using #MintLinux:

Please run `sudo passwd` and set a password for your root shell right now!

Failing to do so will keep your system wounderable to a password-less recovery root shell, which's only security measure asking you to press "Enter", nothing else.

I am doing #FullDisclosure of this massive #SecurityBreach right now, as this huge problem is apparently known for years already, but nobody seems to care at @linuxmint

forums.linuxmint.com/viewtopic.

What the...

#RootShell #Linux

2025-08-14

this had me laughing uncontrollably when i heard it…the scene was perfection mastodon.social/@filmfreakmafi

2025-08-14

@CannaParts
Komisch ich hab noch hat kein critical cve für MS Teams gesehen heute. Wann geht das raus? #FullDisclosure

Funny how often an arms industry tie-in is omitted, despite obvious relevance. #FullDisclosure

RE: https://bsky.app/profile/did:plc:cpshddqofvb6kgmi3rng4nyv/post/3lw43tgpis22n

Rpsu (326 ppm)rpsu@mas.to
2025-07-03

Lisäänpä heti tähän samaan ketjuun, että kyllä, ajan polkupyörällä, vaikka tällä hetkellä en työmatkaa sillä tyypillisesti taitakaan (lähinnä lenkkeilen). Ja ajan autolla, km-määrissä ihan selvästi enemmän kuin pyörillä.

En silti preferoi autoa enkä varsinkaan kaupunki-infra-asioissa. Raivostuttavaa ajaa pyörällä, kun se on vähiten tärkeä liikkumismuoto kaupungin infrassa ja suunnittelussa.

#fullDisclosure

Mary's nephew is in the band, as is her niece's husband. #FullDisclosure #notes #connections #music #WaysOfSeeing

EVL Magazineevlear
2025-02-08

Insolate opens up and brings out the Full Disclosure album, filled with great techno from the shores of Croatia, on her Out Of Place Records label.

evl.one/full-disclosure-with-i

viNomadicvinomadic
2025-01-05

@thesinkingbelle ...but, being a bit of an old bad boy putting a taste of campari/vermouth into my homemade weak tea 'soda' now...

2024-11-26

Playing around with #Modyfi, that does support #VariableFonts now. This shrink-wrap modifier seems destined to be used with #ElectricBlue.
#Animating variable fonts has never been so easy!

app.modyfi.com
(I’m not payed to say that, Daniël tipped me off and they reached out to hime for some collaboration #fulldisclosure)

2013-01-05

But it's only a strawberry one, I'd prefer a apple/pear cider slushy #fulldisclosure

Jayne :wales_flag:🇪🇺🏳️‍🌈TCMuffin@toot.wales
2024-07-10

@RosePuckey

They didn't sound fluent, but Bravo Zulu for a good attempt to promote the Cornish language.

#FullDisclosure Although I was raised in Cardiff (from six weeks old), I was born in Rosemundy House in St Agnes.

2024-06-29

There we go, confirmation of a hard coded user credential in Asus iKVM/IPMI/Redfish.

Is there a better contact than security@?

serverfault.com/a/1161387

#FullDisclosure #InfoSec

2024-03-11

Sooo.. it's an election year.

I post about #politics. If that's not what you want, you should probably unfollow me.

I do not insult people. If you do, I will block you without further discussion. Those are the ground rules. We now return you to our regularly scheduled programming.

#FullDisclosure

2024-02-21

i often follow accounts that have avatars i like...

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst