4 ms·
They used it correctly. From wiki: "Zero-day attacks occur when a vulnerability window exists between the time a threat is released and the time security vendo
by wyday 17y ago
They used it correctly.
From wiki: "Zero-day attacks occur when a vulnerability window exists between the time a threat is released and the time security vendors release patches."
A flaw exists. No released patches yet.
- ramchip 17y agoI was surprised to read this. Wikipedia also has "Zero-day warez: copyrighted works that are pirated on the same day they are released", so the meaning of zero-day is different depending on the context. I'm not quite convinced by the Wiki quote though; more than once, I've heard 0-day attacks to mean a vulnerability found on the day a new version of a software is released. Perhaps both meanings exist.
- ars 17y ago> I've heard 0-day attacks to mean a vulnerability found on the day a new version of a software is released. I've never heard that meaning. It doesn't really make sense - why would someone care if the vulnerability was the same day of the new version or not? (Except to show off.) Zero day to me, means it's the first day after the vulnerability was found. i.e. it's a brand new vulnerability, and no one else knows about it or has a defense for it. (It being assumed that all vulnerabilities are fixed the day they are found.) Extending it to mean "until it's fixed" makes sense too when dealing with certain vendors who don't fix things very fast.
- tptacek 17y agoThe term comes from #warez. Groups like Razor 1911 and Fairlight would brag about how recent their software was. 0 day was release day. First-run warez. There are as many different definitions of zeroday in the security scene as there are people with strong opinions, but all the definitions boil down to, "it's zeroday if it's new". There's patched zeroday (when SUNW releases code that fixes a flaw and they don't tell anyone about it, the exploit for that flaw is zeroday). Unpatched flaws are usually by definition zeroday. It's kind of a silly thing to argue about, since there's no consensus definition. This TLS flaw definitely qualifies by most people's definitions.