This top 10 list is to about how to hide/handle security problems reported. It is taken from Thomas Ptacek's article at
Matasano.
- Deny everything
- Keep it secret

- Forget the report
- Make excuses
- Downplay
- Wait for next release
- Beta-test the fix
- Patch the exploit
- Shoot the messenger
- Threaten lawsuit
You may laugh, but these are what loved by most employers.