Boston Linux & UNIX was originally founded in 1994 as part of The Boston Computer Society. We meet on the third Wednesday of each month, online, via Jitsi Meet.

BLU Discuss list archive


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[Discuss] AeroFS



Mike Small wrote:
> So you're left with only black box testing. No static analysis tools, no
> runtime memory debuggers, no discussing the problem and the general code
> quality in public forums, no forking the project and trimming the awful
> 300,000 lines down to something more manageable with the "exploit
> mitigation countermeasures" removed (

None of these told us about the Heartbleed flaw in OpenSSL. As a matter 
of fact, it was Codenomicon attacking their own servers that lead to the 
world-wide revelation. Black box testing worked where open source 
philosophy utterly, completely, catastrophically failed.

-- 
Rich P.



BLU is a member of BostonUserGroups
BLU is a member of BostonUserGroups
We also thank MIT for the use of their facilities.

Valid HTML 4.01! Valid CSS!



Boston Linux & Unix / webmaster@blu.org