[OWASP-Security101] Vulnerability vs Threat

Jim Manico jim.manico at owasp.org
Tue Apr 10 19:12:16 UTC 2012


Vulnerability is a weakness in a system.

Threat is the likelihood or potential that the vulnerability will be exploited.

--
Jim Manico
VP, Security Architecture
WhiteHat Security
(808) 652-3805

On Apr 10, 2012, at 12:46 PM, Zaki Akhmad <za at owasp.org> wrote:

> Hi lists,
>
> Are there any idea, how to easily explain the difference between
> vulnerability and threat? Using example or analogy?
>
> Sometime I still found quite difficult to distinguish between these two terms.
>
> Regards,
>
> --
> Zaki Akhmad
> _______________________________________________
> Security101 mailing list
> Security101 at lists.owasp.org
> https://lists.owasp.org/mailman/listinfo/security101
> List Run By OWASP
> List Admin: Michael.Coates at owasp.org


More information about the Security101 mailing list