Daily Tech Briefing
AI 科技速览

每天 5 分钟内学习 AI。获取最新的人工智能新闻,理解其重要性,并学习如何将其应用于您的工作。

AI 快讯
Hacker News · 2026/8/5 00:05:49
Bugtraq Is Back

Bugtraq Is Back

AI 中文解读
沉寂多年的传奇安全平台Bugtraq正式回归了!创办人Scott Chasin重新拿回securityfocus.com和Bugtraq的名字,宣告这个诞生于1993年的漏洞披露圣地重启运营。 通俗地说,Bugtraq就像黑客圈的“地下论坛”,但干的却是正经事。过去安全研究人员发现系统漏洞后,能在这个邮件列表上直接公开,不用看厂商脸色,也不用担心被封口。很多影响深远的重大漏洞,都是先在这里爆出来的。后来它被几轮收购折腾得名存实亡,档案封存、讨论停止,整整一代安全从业者压根没见过它的全盛时期。 这次回归最大的看点是坚持“完全披露”的老传统。说白了就是:漏洞公开透明,直接摊在阳光下,不被商业利益或政治因素遮掩。对普通人来说,这其实是个好消息——安全研究人员能自由交流漏洞信息,软件厂商就会更积极地修复问题,而不是藏着掖着。以后你用的手机App、电脑软件、智能设备,都可能因为这种“阳光监督”而变得更安全。一个规范、透明的漏洞披露平台,最终受益的还是千千万万的普通用户。
SecurityFocus Mailing Lists 登录 注册 Manage this list 登录 注册 × Keyboard Shortcuts Thread View j: Next unread message k: Previous unread message j a: Jump to all threads j l: Jump to MailingList overview Bugtraq is back older Jonathan Brossard 4 八月 2026 4 八月 '26 12:42 In 1993, Scott Chasin created Bugtraq as a place for full disclosure - a mailing list where security researchers could publish vulnerabilities openly, without gatekeepers, without politics. For over a decade, it was the heartbeat of vulnerability research. If something mattered in security, it was on Bugtraq first. Then it went quiet. The domain changed hands through a chain of acquisitions, and somewhere along the way, Bugtraq stopped being Bugtraq. The archives went dark. The list went silent. A generation of researchers grew up without it. Today, we bring it back. I have acquired securityfocus.com and the Bugtraq name. Not to build a museum - to restart the conversation. The mission is unchanged: full disclosure, researcher-first, no corporate filter. The old archives, sourced from community copies of what was always public mailing list traffic, will be preserved and made accessible separately. This list is bugtraq@securityfocus.com. Same address. Same purpose. New era. If you find vulnerabilities, disclose them here. If you have opinions on how disclosure should work in 2026, share them here. If you remember what Bugtraq was - help us make it that again. After more than thirty years of cybersecurity, we are losing our history. Exploits, techniques, and in-depth analyses that shaped this field are disappearing - scattered across dead links, defunct forums, and servers nobody maintains. Hacker history is fading, and it matters. In an age where AI can produce knowledge and disinformation at an unprecedented rate, preserving what was actually true, what actually worked, and who actually did the work becomes more important than ever. Posting on this list means preservation for the ages.
分享
阅读原文