From Fedora Project Wiki

< FWN‎ | Beats

No edit summary
No edit summary
 
(8 intermediate revisions by 2 users not shown)
Line 6: Line 6:
Contributing Writer: [[JoshBressers]]
Contributing Writer: [[JoshBressers]]


=== Is Open Source Software Secure? ===
=== Phrack 66 ===
This week there was a story posted to Slashdot titled '''How To Argue That Open Source Software Is Secure?'''<ref>http://it.slashdot.org/article.pl?sid=09/02/11/007216</ref>. Quoting the post:
Phrack 66<ref>http://www.phrack.com/issues.html?issue=66</ref> came out this week. If you're not aware, Phrack is the longest running hacker zine, it's impressive that after more than 20 years, it's still going.
<pre>
... saying that they were warned that they are dangerously insecure because they run open source
operating systems or software, because 'anyone can read the code and hack you with ease.'
</pre>


This issue seems to keep coming up from time to time. This argument is of course silly and one of those "Prove it ... you can't? So it's true!"  There is no way to prove that a piece of closed source software is more or less secure than a given piece of Open Source Software. If you can't see the source, you can't be certain that the vendor did or didn't fix issues. You need to unconditionally trust your vendor. If the source code is wide open for anyone to see, it keeps the vendor honest. You can't sweep issues under a transparent rug. You can try, and maybe hide a few piles of dust, but the really scary piles of dirt will stick out like sore thumbs.
=== Firefox 3.0.11 ===
 
Yet another security update for Firefox was released, be sure to update, it's important.
The issue at hand isn't is application A more secure than application B, but do you trust vendor A more than vendor B?
<ref>http://www.mozilla.org/security/known-vulnerabilities/firefox30.html#firefox3.0.11</ref>


<references/>
<references/>

Latest revision as of 00:23, 14 June 2009

Security Week

In this section, we highlight the security stories from the week in Fedora.

Contributing Writer: JoshBressers

Phrack 66

Phrack 66[1] came out this week. If you're not aware, Phrack is the longest running hacker zine, it's impressive that after more than 20 years, it's still going.

Firefox 3.0.11

Yet another security update for Firefox was released, be sure to update, it's important. [2]