On Wed, Jul 08, 2015 at 10:15:02AM -0400, Richard Pieri wrote: > On 7/7/2015 6:26 PM, Derek Martin wrote: > >The difference is, the software most of us rely on is open source, and > >is known to have been inspected by some very smart 3rd parties who > > "Some very smart 3rd parties?" Can you actually name any of them?
Yes, in fact. I can name some of the people who do that where I work, though I will not do so, as it is not my place to disclose that information. I can also identify, for instance, Robert Swiecki at Google, because he was involved in some of the recent OpenSSL vunlerabilities. I believe I could, without too terrible an effort, identify numerous other people who do that, because their names are all over various vulnerability reports, and it's just not that hard to get that information. Some of these people, I actually know or have corresponded with. -- Derek D. Martin http://www.pizzashack.org/ GPG Key ID: 0xDFBEAD02 -=-=-=-=- This message is posted from an invalid address. Replying to it will result in undeliverable mail due to spam prevention. Sorry for the inconvenience. _______________________________________________ Discuss mailing list [email protected] http://lists.blu.org/mailman/listinfo/discuss
