We over here at Joomla are preparing a new team...  The first letter of the name is obvious (Joomla!)...  The second stands for "Security"...  The rest will be left for the official announcement which should be sometime this week if all goes to plan.  We (Joomla!) do take security VERY seriously, and have always taken it seriously.  However, events of late have really proved what we have known for a long time;  That we need a dedicated team just for handling core security.  The wheels are in motion, and more information will be available as the steps unfold.  So for now, suffice it to say that JSST is coming...