MESSAGE
DATE | 2004-09-03 |
FROM | Billy
|
SUBJECT | Re: [hangout] Re: Advocacy vs. Zealotry vs. Who Cares?!?
|
On Thu, Sep 02, 2004 at 05:43:57PM -0500, Steve Milo wrote: > > > is because its not on the desktop as predominantely as windows. I > > > told him two things. 1) I challenged him to find a virus that would > > > crash the machine we were using. I told him I would give him a dollar > > > if he found one that caused the machine to freeze or crash or do > > > something it wasnt supposed to be doing. 2) I told him that tons of > > > corporations and the federal government use Linux for their servers. > > > > > You would think that by this time someone would have found a way to > > > compromise those machines. > > > > Gimme a break... Here's the vulnerabilities in Red Hat THIS MONTH: > > > > http://assburger.org/prepu/uilaou > > That looks like a pretty short list over the course of four years.
I apologize.. That was a TERRIBLE link... It only included vulns in the OSVDB containing the word "Red Hat", which isn't really a good way to identify vulns in Linux kernels or apps. Most of the really BIG vulnerabilities didn't appear on the list, and I didn't really review it before sending it off...
Look, last week I got an advisory that anyone running Qt-3.3 could wind up run arbitrary code by viewing a malicious JPG.
CVS is full of holes. SSH holes happen all the time.
This stuff happens all the time, and it's usually fixed quickly. But people just DON'T UPDATE what they believe to be their 'totally impenetrable' Linux machines, because they believe the machines are bulletproof. They aren't.
If someone really really needed to get into your machine (say, if the reward were equivalent to $100,000 instead of $1), it's ultimately not that hard to do!
> > There's plenty of ways into Linux machines.. Yes it's more > > secure than windows, but don't go around wagging your finger > > (and your dollars) in people's faces. > > I certainly will. I have yet to be convinced that I need ms for > anything anymore.
you almost certainly don't need MSFT for anything. ____________________________ NYLXS: New Yorker Free Software Users Scene Fair Use - because it's either fair use or useless.... NYLXS is a trademark of NYLXS, Inc
|
|