Asking large companies (this law only applies to a company making $50+ million in sales each year, according to TFA) to audit their suppliers is reasonable, and in fact happens. Walmart for instance, has a regular audit of every single company that provides anything for its shelves. Every supplier has to open its books to scrutiny from Walmart, and asking for a certificate of software license as well would be a trivial additional requirement. I can imagine that some large companies might have a "we don't care as long as it gets shipped" approach, but I'd be surprised if they were more than the minority.

There are many here who say that war has never been a humane activity and so this release is no surprise.

But the doctrine of Just War has existed for centuries and has been practiced more or less successfully at times.

Particularly, to my knowledge, the European powers after Westphalia, where only professional armies took the field, bought their supplies rather than pillaged and treated their captives with dignity.

There were exceptions, probably, but on the whole the wars fought were not bitter struggles where any means necessary was advocated

Several readers wrote in to inform us that Swedish security researcher Dan Egerstad has revealed how he collected 100 passwords from embassies and governments worldwide, without hacking into anything: he sniffed Tor exit routers. Both Ars and heise have writeups on Egerstad's blog post, but neither adds much to the original. It's not news that unencrypted traffic exits the Tor network unencrypted, but Egerstad correctly perceived, and called attention to, the lack of appreciation for this fact in organizations worldwide.

Negsss writes: "Are you ready for some malware? The ubiquitous Storm Worm hit the US gridiron over the weekend when attackers, through mass emails, attempted to dupe NFL fans into visiting a malicious website promising information about the season's opening weekend."

