14 ms·
No, I meant the product line - you don't get this bug in their "pro" version, only "step ahead" - step ahead of the vendors presumably. It seems hard to believ
by trotsky 15y ago
No, I meant the product line - you don't get this bug in their "pro" version, only "step ahead" - step ahead of the vendors presumably.
It seems hard to believe that private 0-days are legitimate pentesting apparatus - what are you testing in this case, whether your enterprise runs software that someone might find a bug in in the future?
As far as I understand it canvas/Immunity is firmly in the offensive security market anyway, aren't they actively part of the scene that derides "killing bugs" aka reporting security bugs to software vendors (for any price)?
I'm sure this bug hasn't been reported to Adobe, all they'd be doing is closing their marketing window.