Common Vulnerability and Exposure (CVE) Project

As stated earlier in this chapter, there is no universally accepted definition for the term computer incident. An action that is considered to be an incident by one organization may not be an incident to another organization. This inconsistency with respect to definitions does not end with this term, but also applies to many of the terms associated with an incident. For example, vulnerability is another term with several variations in its definition. The variations do not apply to the term “vulnerability” only, but also to the manner in which many well-known exploits are referred to and described. The problem with these inconsistencies is not merely one of semantics. Rather, the inconsistencies ...

Get Effective Incident Response Team, The now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.