Please create an account to participate in the Slashdot moderation system

 



Forgot your password?
typodupeerror
×

Comment Re:Original premise is false (Score 1) 582

No the bug was found because some one was looking at the code. In fact it was a company developing a static code analyzer that used the available source of OpenSSL to test their analyzer that found it, interestingly enough also a Security Engineer from Google found it at roughly the same time. So yes it was found exactly because people where looking at the sources.

Had this been close source then none of the above would have found it.

Comment Re:Wat? (Score 1) 582

Not really ad-hoc, in protocols such as this which is well defined any way, you know that there is a lenght. Playing tricks with that length to see what the server does is black hat 101. In my youth I used this to create cracks for copy protected games, if we have had access to the source code of these games it would still have been faster for us to attack the protocols, and I'm sure that black hats attacking systems such as these feels the same these days. Hard to explain the enormous exploits in the wild for closed sources otherwise don't you think?

Comment Re:Duh (Score 1) 818

Yes the public referendums are not mandatory for the politicians to obey in Sweden, that is not the same as "results are often discarded". If we look at the large referendums done since 1922 I can think of only one who was disregarded and that was to keep the left side traffic. In some eyes the nuclear referendum was also discarded but in reality it was followed, that we now 30 years later changed our minds a bit is not the same as discaring the result of the referendum.

Comment Re:Let the market/customer decide is BOTH way (Score 1) 520

How would that help. If you don't use Youtube then you won't get traffic from Youtube so whatever they do won't affect you. That whatever ISP you use don't sell a connection under 25MBps (if that really is the case) has nothing to do with net neutrality, even with the change that you propose you would still be forced to pay the for your 25MBps connection and with the same price.

Slashdot Top Deals

If you have a procedure with 10 parameters, you probably missed some.

Working...