That's spooky, but not nearly as spooky as the closed source world is. The Linux kernel and projects in good distributions like Debian have ample resources and methods to check for backdoors like this. Microsoft and other commercial code vendors would be overwhelmed if they had to check every single piece of code they sign off on. There are tens if not hundreds of thousands of device drivers in the Windows world, each binary only. How can anyone check binary only junk? Hopefully, people will see these subtle attacks as a good reason to move commercial software development back from offshore, but the costs will kill closed source development. The kernel developers did a good job catching this and it shows the power of the free software develpment model.
On 2003.11.30 22:44 Dustin Puryear wrote: > Thwarted Linux backdoor hints at smarter hacks > http://www.securityfocus.com/news/7388 > > > _______________________________________________ > General mailing list > General@brlug.net > http://brlug.net/mailman/listinfo/general_brlug.net >