Issue No.01 - January-February (2005 vol.3)
Eric Rescorla , RTFM
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/MSP.2005.17
Despite the large amount of effort that goes toward finding and patching security holes, the available data does not show a clear improvement in software quality as a result.
blackhat, whitehat, software patches, vulnerability disclosure
Eric Rescorla, "Is Finding Security Holes a Good Idea?", IEEE Security & Privacy, vol.3, no. 1, pp. 14-19, January-February 2005, doi:10.1109/MSP.2005.17