Legal implications of security research

The Chilling Effect is quite interesting read (yes, the article is a few months old but I only discovered it now). It shows nicely how security research on web applications is different from research on software you install on your computer. It also shows why responsible disclosure of vulnerabilities is so rare in this field. I also find it very interesting how it explains that most software is of a low quality.


    Wladimir, maybe youve seen this already, but the sheer hubris of Herr Peter Smith is something not trivial. Your extension (NoScript, too) are among top Firefox extensions to avoid, according to ComputerWorld.

    Yes, I have seen this article. I even commented on it already:

