Disclosing Exploit Code
Wednesday December 3, 2003
When security researchers find a vulnerability, and the vendor has been notified and created a fix- the vulnerability is made public and often the exploit code as well. Security researchers are now wrestling with the ethical implications of this practice and a few major security researchers and groups have chosen to voluntarily cease releasing exploit code at all. Disclosing Exploit Code.
