<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title>Technosailor - Latest Comments in How to Handle Security Flaws</title><link>http://technosailor.disqus.com/</link><description></description><atom:link href="https://technosailor.disqus.com/how_to_handle_security_flaws/latest.rss" rel="self"></atom:link><language>en</language><lastBuildDate>Thu, 11 Jan 2007 00:24:44 -0000</lastBuildDate><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693874</link><description>&lt;p&gt;"If people have lowered standards of it"&lt;/p&gt;&lt;p&gt;Oh well that bit didn't make sense.&lt;/p&gt;&lt;p&gt;I meant.&lt;/p&gt;&lt;p&gt;"If people have lost respect or lowered their opinion of it,"&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Andy Merrett</dc:creator><pubDate>Thu, 11 Jan 2007 00:24:44 -0000</pubDate></item><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693873</link><description>&lt;p&gt;"Blog Herald is just going down the toilet."&lt;/p&gt;&lt;p&gt;"Blog Heraldâ€™s reputation slipped with me after the purchase from Matt Craven and BlogMedia"&lt;/p&gt;&lt;p&gt;Wow I like a challenge, seeing as some are quite happy to tarnish every new writer at the Blog Herald with the same brush.&lt;/p&gt;&lt;p&gt;That'd be like me dissing everyone who writes a blog at b5media because of "issues" I have with them as an organisation.&lt;/p&gt;&lt;p&gt;Every individual deserves their own chance. BH is evolving. If people have lowered standards of it, or think it's going down the toilet, then that's fine - just stop reading it. It's what I've done (generally) for blogs I dislike.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Andy Merrett</dc:creator><pubDate>Thu, 11 Jan 2007 00:23:09 -0000</pubDate></item><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693866</link><description>&lt;p&gt;BTW Aaron, I love your site and all that you do for the WordPress community.&lt;/p&gt;&lt;p&gt;Hope there are no hard feelings.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Ryan</dc:creator><pubDate>Mon, 08 Jan 2007 17:50:07 -0000</pubDate></item><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693864</link><description>&lt;p&gt;No, frankly, the topic is 3 days old, I've already cleared the air with Tony Hung at BH, and I don't really want to rehash things. You take it as you want it, Ryan.&lt;/p&gt;&lt;p&gt;By the way, BH failed to mention 2 other issues that were fixed in 2.0.6. Recommend actually upgrading instead of thinking you're safe by taking Blog Herald's suggestion.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Aaron Brazell</dc:creator><pubDate>Mon, 08 Jan 2007 17:33:36 -0000</pubDate></item><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693862</link><description>&lt;p&gt;Yeah, it wouldn't have been applicable to the post if you hadn't mentioned your resentment towards them explicitly in the closing paragraph in your post.  When you take a pot shot in the body of your post, not to mention the closing comment, the pot shot becomes applicable.&lt;/p&gt;&lt;p&gt;In any case, it seems clear to me that you are totally taking this further then "here's what not to do, do X in the future." You're using this as an opportunity to blast Blog Herald for something that, to me, seemed like a positive act in the general interest of the blogging community.&lt;/p&gt;&lt;p&gt;Script Kiddies don't have quick turnaround.  So there was no worry there.  Hacker communities are already privy to this sort of knowledge, so that's obviousvly not an issue.&lt;/p&gt;&lt;p&gt;I for one took the Blog Herald's advice and fixed the templates.php file on all my blogs, without having to go through the arduous task of upgrading each one to WP 2.06&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Ryan</dc:creator><pubDate>Mon, 08 Jan 2007 17:31:02 -0000</pubDate></item><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693860</link><description>&lt;p&gt;It really doesn't matter, Ryan, as my issue with BH has nothing really applicable to this post.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Aaron Brazell</dc:creator><pubDate>Mon, 08 Jan 2007 17:22:18 -0000</pubDate></item><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693856</link><description>&lt;p&gt;Blog Heraldâ€™s reputation slipped with me after the purchase from Matt Craven and BlogMedia&lt;/p&gt;&lt;p&gt;So what exactly caused their reputation to slide in your mind?  Was it the way the site has been operated post-sale?  Or do you have something against the new owners?&lt;/p&gt;&lt;p&gt;My hope is that you're simply unhappy with the post-sale operation, and that my perception of seeping axe-to-grind cronyism in this post is just an illusion/delusion on my part.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Ryan</dc:creator><pubDate>Mon, 08 Jan 2007 17:20:33 -0000</pubDate></item><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693854</link><description>&lt;p&gt;I agree with you Aaron. Blog Herald is just going down the toilet. It has obviously become an ATM for the new owners and that is said. I'm glad David spun up 901am.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Tony</dc:creator><pubDate>Mon, 08 Jan 2007 06:44:05 -0000</pubDate></item><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693851</link><description>&lt;p&gt;Dangerous precidents are set by showing idiots holes they should never know.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">David Krug</dc:creator><pubDate>Mon, 08 Jan 2007 03:22:40 -0000</pubDate></item><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693849</link><description>&lt;p&gt;Hart: Hackers may not need Abe or me. Script Kiddies do. Until a flaw is publically pointed out, it has to be discovered first.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Aaron Brazell</dc:creator><pubDate>Sat, 06 Jan 2007 18:26:28 -0000</pubDate></item><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693844</link><description>&lt;p&gt;I'll have to be 100% opposite advocate on this one. For a layman who is not a hacker or capable of hacking. If you knew about the problem and there was a patch in beta .. you should have mentioned it just as much as you claim he should not have mentioned it. I am assuming that the people crazy enough to do the hacking doesn't need Abe or the Blog Herald to instruct them how to do it for them.&lt;/p&gt;&lt;p&gt;And .. now you are using beta 2.1? What problems in 2.0.6 is there that makes you want to use 2.1 instead?&lt;/p&gt;&lt;p&gt;Just a little harsh i.m.o.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">HART (1-800-HART)</dc:creator><pubDate>Sat, 06 Jan 2007 18:23:58 -0000</pubDate></item><item><title>Re: How to Handle Security Flaws</title><link>http://technosailor.com/2007/01/05/how-to-handle-security-flaws/#comment-928693839</link><description>&lt;p&gt;I guess its kinda silly for me to comment on this, but I will anyways.&lt;/p&gt;&lt;p&gt;I 100% agree with everything you have said here...&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">David</dc:creator><pubDate>Sat, 06 Jan 2007 17:27:18 -0000</pubDate></item></channel></rss>