Re: [EXT] RE: Glossary

2022-07-13 Thread Alec J Summers
:59 PM To: Jason Oberg Cc: Fung, Jason , Alec J Summers , Hoole, Alexander , jw...@redhat.com , Seifried, Kurt , CWE CAPEC Board Subject: Re: [EXT] RE: Glossary I'm OK with not further tweaking the definition of 'vulnerability'; yet while providing updated definitions for 'weakness

Re: [EXT] RE: Glossary

2022-07-12 Thread SJ Jazz
te) >> are not liked by everyone.  >> >> >> >> *From:* Alec J Summers >> *Sent:* Monday, July 11, 2022 11:32 AM >> *To:* Fung, Jason M ; Hoole, Alexander < >> alexander.ho...@microfocus.com>; jw...@redhat.com; Seifried, Kurt < >> k...@s

Re: [EXT] RE: Glossary

2022-07-12 Thread Jason Oberg
gt; > *From:* Alec J Summers > *Sent:* Monday, July 11, 2022 11:32 AM > *To:* Fung, Jason M ; Hoole, Alexander < > alexander.ho...@microfocus.com>; jw...@redhat.com; Seifried, Kurt < > k...@seifried.org> > *Cc:* CWE CAPEC Board > *Subject:* Re: [EXT] RE: Glossary

RE: [EXT] RE: Glossary

2022-07-12 Thread Fung, Jason M
; Seifried, Kurt Cc: CWE CAPEC Board Subject: Re: [EXT] RE: Glossary Good afternoon! With the release of the Top25 and CWE v4.8, I wanted to pick this thread up from where we got it a month or so ago. As a refresher, the User Experience Working Group (UEWG) agreed on these definitions as updates

Re: [EXT] RE: Glossary

2022-07-11 Thread Jeremy West
and Integration > > ** > > *MITRE - Solving Problems for a Safer World™* > > > > > > > > *From: *Fung, Jason M > *Date: *Tuesday, May 31, 2022 at 1:33 PM > *To: *Hoole, Alexander , jw...@redhat.com > , Seifried, Kurt >

Re: [EXT] RE: Glossary

2022-07-11 Thread Alec J Summers
Subject: RE: [EXT] RE: Glossary Love the definitions! The only part to nitpick is this phrase “vulnerability is a property of …” I am not sure if vulnerability is commonly perceived as a “property”. E.g., the following sentence does not read as smoothly if vulnerability is replaced with property

RE: [EXT] RE: Glossary

2022-05-31 Thread Fung, Jason M
Love the definitions! The only part to nitpick is this phrase “vulnerability is a property of …” I am not sure if vulnerability is commonly perceived as a “property”. E.g., the following sentence does not read as smoothly if vulnerability is replaced with property “In December of 2021, a

Re: [EXT] Re: Glossary

2022-05-31 Thread Jeremy West
On Tue, May 24, 2022 at 4:32 PM Jason Oberg wrote: > Jeremy, welcome! > > I like the idea of defining a weakness wrt to a protection for an asset. > The protection could have weaknesses because of mistakes, forgetfulness, or > any other reason (e.g. environment). An asset-based definition fits