[[Infowarrior] - NSA Said to Have Used Heartbleed Bug for Years]

Mark Seiden mis at seiden.com
Mon Apr 14 15:55:01 UTC 2014


On Apr 13, 2014, at 7:52 AM, Randy Bush <randy at psg.com> wrote:

>>> the point of open source is that the community is supposed to be doing
>>> this.  we failed.
>> Versus all of the closed source bugs that nobody can know of or do 
>> anything about?
> 
> for those you can blame the vendor.  this one is owned by the community.
> it falls on us to try to lower the probability of a next one by actively
> auditing source as our civic duty.
> 

is that kind of like jury duty?  if only it were more like literature, which
we could read for enjoyment.



> randy
> 

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 496 bytes
Desc: Message signed with OpenPGP using GPGMail
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20140414/1d5a168d/attachment.sig>


More information about the NANOG mailing list