<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Rap Sheets on Top Software Vendors</title>
	<atom:link href="http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/feed/" rel="self" type="application/rss+xml" />
	<link>http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/</link>
	<description>In-depth security news and investigation</description>
	<lastBuildDate>Sun, 19 May 2013 06:15:27 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5.1</generator>
	<item>
		<title>By: Bill Newhouse</title>
		<link>http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/comment-page-1/#comment-16160</link>
		<dc:creator>Bill Newhouse</dc:creator>
		<pubDate>Tue, 21 Dec 2010 20:18:34 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=6920#comment-16160</guid>
		<description><![CDATA[I would be interested in knowing if the awareness of the exploits targeting older versions of Adobe really had an impact on Adobe&#039;s bottom line.   They NY Times reports, &quot;Adobe Posts Its First Billion-Dollar Quarter&quot;, http://www.nytimes.com/2010/12/21/technology/21adobe.html?ref=technology.

Would the US be better off if we could devise a cyber economic incentive policy that pushed US companies to develop more secure software?]]></description>
		<content:encoded><![CDATA[<p>I would be interested in knowing if the awareness of the exploits targeting older versions of Adobe really had an impact on Adobe&#8217;s bottom line.   They NY Times reports, &#8220;Adobe Posts Its First Billion-Dollar Quarter&#8221;, <a href="http://www.nytimes.com/2010/12/21/technology/21adobe.html?ref=technology" rel="nofollow">http://www.nytimes.com/2010/12/21/technology/21adobe.html?ref=technology</a>.</p>
<p>Would the US be better off if we could devise a cyber economic incentive policy that pushed US companies to develop more secure software?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: David Ward</title>
		<link>http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/comment-page-1/#comment-13804</link>
		<dc:creator>David Ward</dc:creator>
		<pubDate>Fri, 10 Dec 2010 05:04:12 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=6920#comment-13804</guid>
		<description><![CDATA[Isn&#039;t some of the update points mute when it comes to Chrome; Since Chrome updates continiously, includes a pseudo/maybe-real sandboxed PDF viewer and I think probably updates Java as well; And flash components which are particularly sandboxed. I think several of these points were brought up again at the recent Google Announcement about Chrome OS. (See www.twit.tv/specials for more info and coverage)]]></description>
		<content:encoded><![CDATA[<p>Isn&#8217;t some of the update points mute when it comes to Chrome; Since Chrome updates continiously, includes a pseudo/maybe-real sandboxed PDF viewer and I think probably updates Java as well; And flash components which are particularly sandboxed. I think several of these points were brought up again at the recent Google Announcement about Chrome OS. (See <a href="http://www.twit.tv/specials" rel="nofollow">http://www.twit.tv/specials</a> for more info and coverage)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: KFritz</title>
		<link>http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/comment-page-1/#comment-13519</link>
		<dc:creator>KFritz</dc:creator>
		<pubDate>Wed, 08 Dec 2010 21:59:43 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=6920#comment-13519</guid>
		<description><![CDATA[Anyone dealing w/ the Library of Congress Copyright process is forced to use Adobe. I download, install, use, and uninstall it on each occasion, using the Search tool to make sure that our dear fiends @ Adobe (now better than ever with Larry Ellison is in charge!) don&#039;t leave any detritus in the machine.]]></description>
		<content:encoded><![CDATA[<p>Anyone dealing w/ the Library of Congress Copyright process is forced to use Adobe. I download, install, use, and uninstall it on each occasion, using the Search tool to make sure that our dear fiends @ Adobe (now better than ever with Larry Ellison is in charge!) don&#8217;t leave any detritus in the machine.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Bill</title>
		<link>http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/comment-page-1/#comment-13328</link>
		<dc:creator>Bill</dc:creator>
		<pubDate>Wed, 08 Dec 2010 01:15:51 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=6920#comment-13328</guid>
		<description><![CDATA[Russ,  Thanks for the comment.  Installed Sumatra today and happy so far (replaced Nuance -- I gave up on Adobe long ago).  Need to note that I don&#039;t require a lot of resource-intensive functionality.]]></description>
		<content:encoded><![CDATA[<p>Russ,  Thanks for the comment.  Installed Sumatra today and happy so far (replaced Nuance &#8212; I gave up on Adobe long ago).  Need to note that I don&#8217;t require a lot of resource-intensive functionality.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Al Huger</title>
		<link>http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/comment-page-1/#comment-13316</link>
		<dc:creator>Al Huger</dc:creator>
		<pubDate>Wed, 08 Dec 2010 00:14:04 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=6920#comment-13316</guid>
		<description><![CDATA[When held in that light Secunia has the same vested interests than Symantec. More so in fact, Secunia makes their living in this space (vulns and their related tech) and it&#039;s nearly all their revenue base. Symantec makes their coin in AV (and storage etc. of course) and accounts for vuln related software on a very, very minimal basis. I personally trust both but if I wanted to be cynical I would pick the one make the least amount of the space. Either way, I think Secunia&#039;s stuff is great, I am not weighting one against the other.]]></description>
		<content:encoded><![CDATA[<p>When held in that light Secunia has the same vested interests than Symantec. More so in fact, Secunia makes their living in this space (vulns and their related tech) and it&#8217;s nearly all their revenue base. Symantec makes their coin in AV (and storage etc. of course) and accounts for vuln related software on a very, very minimal basis. I personally trust both but if I wanted to be cynical I would pick the one make the least amount of the space. Either way, I think Secunia&#8217;s stuff is great, I am not weighting one against the other.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: TJ</title>
		<link>http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/comment-page-1/#comment-13315</link>
		<dc:creator>TJ</dc:creator>
		<pubDate>Wed, 08 Dec 2010 00:05:39 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=6920#comment-13315</guid>
		<description><![CDATA[Al - Your probably right.  Fair or not, however, I think more people trust the impartiality of Secunia over Symantec in analyzing this type of vulnerability data. I know I find it hard to read anything published by anti-malware vendors, such as Symantec, where I&#039;m not questioning what the self-serving motivation was.]]></description>
		<content:encoded><![CDATA[<p>Al &#8211; Your probably right.  Fair or not, however, I think more people trust the impartiality of Secunia over Symantec in analyzing this type of vulnerability data. I know I find it hard to read anything published by anti-malware vendors, such as Symantec, where I&#8217;m not questioning what the self-serving motivation was.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Al Huger</title>
		<link>http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/comment-page-1/#comment-13286</link>
		<dc:creator>Al Huger</dc:creator>
		<pubDate>Tue, 07 Dec 2010 20:33:51 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=6920#comment-13286</guid>
		<description><![CDATA[I did not say the &#039;sheets&#039; are not new. I said the data being presented to the public, this exact sort of data, is not new. It does not make it any less valuable, it&#039;s just now new.]]></description>
		<content:encoded><![CDATA[<p>I did not say the &#8216;sheets&#8217; are not new. I said the data being presented to the public, this exact sort of data, is not new. It does not make it any less valuable, it&#8217;s just now new.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Phoenix</title>
		<link>http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/comment-page-1/#comment-13272</link>
		<dc:creator>Phoenix</dc:creator>
		<pubDate>Tue, 07 Dec 2010 19:41:05 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=6920#comment-13272</guid>
		<description><![CDATA[Secunia says fact sheets are new so I&#039;&#039;ll take their word for it.
 http://secunia.com/company/blog_news/news/157]]></description>
		<content:encoded><![CDATA[<p>Secunia says fact sheets are new so I&#8221;ll take their word for it.<br />
 <a href="http://secunia.com/company/blog_news/news/157" rel="nofollow">http://secunia.com/company/blog_news/news/157</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Al Huger</title>
		<link>http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/comment-page-1/#comment-13257</link>
		<dc:creator>Al Huger</dc:creator>
		<pubDate>Tue, 07 Dec 2010 18:07:55 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=6920#comment-13257</guid>
		<description><![CDATA[I am not sure this is new per se. This exact data has been being published in Symantec&#039;s Internet Security Threat Report for years. 

al]]></description>
		<content:encoded><![CDATA[<p>I am not sure this is new per se. This exact data has been being published in Symantec&#8217;s Internet Security Threat Report for years. </p>
<p>al</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Russ</title>
		<link>http://krebsonsecurity.com/2010/12/rap-sheets-on-top-software-vendors/comment-page-1/#comment-13251</link>
		<dc:creator>Russ</dc:creator>
		<pubDate>Tue, 07 Dec 2010 17:55:26 +0000</pubDate>
		<guid isPermaLink="false">http://krebsonsecurity.com/?p=6920#comment-13251</guid>
		<description><![CDATA[Sure, but even if your default PDF reading app is set to Foxit the possibility exists for exploits to go through Adobe.  Just as certain apps I run that open their reports in IE despite my default browser being Firefox, I believe there are ways to force a PDF to open in a specific tool as opposed to the user set default.

Foxit&#039;s nice, but I&#039;ve really taken to Sumatra myself.  Very small footprint and very, very snappy.]]></description>
		<content:encoded><![CDATA[<p>Sure, but even if your default PDF reading app is set to Foxit the possibility exists for exploits to go through Adobe.  Just as certain apps I run that open their reports in IE despite my default browser being Firefox, I believe there are ways to force a PDF to open in a specific tool as opposed to the user set default.</p>
<p>Foxit&#8217;s nice, but I&#8217;ve really taken to Sumatra myself.  Very small footprint and very, very snappy.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Page Caching using memcached (User agent is rejected)
Database Caching 18/19 queries in 0.019 seconds using memcached
Object Caching 385/395 objects using memcached

 Served from: krebsonsecurity.com @ 2013-05-19 09:51:03 by W3 Total Cache -->