Boston Linux & UNIX was originally founded in 1994 as part of The Boston Computer Society. We meet on the third Wednesday of each month at the Massachusetts Institute of Technology, in Building E51.

BLU Discuss list archive


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Discuss] Good and Bad Crypto



On Tue, Apr 22, 2014 at 08:14:15PM -0400, Richard Pieri wrote:
> The knife cuts both ways, Tom. If white hats can use tools like
> these to find flaws in code then black hats can use the same tools
> to find the same flaws. Closed source crypto becomes more beneficial
> to the world than open source crypto because it denies black hats
> the ability to use to these tools against it and leaves them with
> your once in a thousand years chance of accidentally finding a flaw.

Unless they hack the vendor and steal the source.  White hats aren't
going to do that.  Or... unless the NSA or some other organization has
paid off the vendor to intentionally include weaknesses for them to
exploit.  Or... unless the attacker works for the vendor and is taking
advantage of flaws he already knows exist.  Or... unless someone who
works for the vendor who feels slighted decides to post the source on
some black hat site.  Or... unless some criminal organization pays
someone at the vendor to steal the source code for them.  Or...

-- 
Derek D. Martin    http://www.pizzashack.org/   GPG Key ID: 0xDFBEAD02
-=-=-=-=-
This message is posted from an invalid address.  Replying to it will result in
undeliverable mail due to spam prevention.  Sorry for the inconvenience.




BLU is a member of BostonUserGroups
BLU is a member of BostonUserGroups
We also thank MIT for the use of their facilities.

Valid HTML 4.01! Valid CSS!



Boston Linux & Unix / webmaster@blu.org