Matasano’s Disclosure Rules of Engagement

Thomas Ptacek | May 16th, 2006 | Filed Under: Disclosure, Matasano, Navel Gazing, Uncategorized

Jeremy and I started Matasano just over a year ago.

We’re a product company, but we haven’t taken any funding. Instead, we consult to vendors and enterprises, beating the hell out of applications and infrastructure. It’s something we’re good at, that we’ve done for a long time, and that we enjoy doing.

Since last May, we’ve found a few vulnerabilities.

Here’s how we handle them.

Why point this out? So we can be held to it.

Request to other practitioners in the field: you don’t have to agree with us (we know you don’t [I’m looking at you, Ivan and Nate]!), but we think it’d be a good thing if you let everyone know where you stand.

Your comments here are welcome.

We have a new website, by the way. It’s slightly less awful than the old one, but feel free to tell us exactly how small that delta is.

No comments yet. Be the first.

Leave a reply