How to piss off the A-V community

H D Moore had a great post on DailyDave regarding the whole WMF vulnerability fiasco, and some reaction to his Metasploit vulnerability code being released. Some of the amusing quotes:

The AV industry sure doesn’t like it when their products are completely inneffective against the biggest exploit of the year. They like it even less when you publish a one-byte change that breaks their signatures.

On a somewhat funny note, a poll was added to the ISC web site (by Swa Frantzen) that I figured the folks on here would appreciate .. I contacted the ISC team about this — introducing the exploit authors as people that need to be “brought to justice” is about one step from libel.