The security of any given computer system is no better than the skills researchers bring to finding the next potential program flaw. Network security workers concentrate on updating patches and making sure only validated users can access the corporate LAN. Meanwhile, security researchers hunt for existing but unidentified infrastructure flaws that could let in the bad guys. However, even when researchers find a new potential vulnerability, product vendors are not always quick to respond with fixes.