2009-12-29

open source's role in security

10.1: addx/security/open source's role:
. the thing to remember about the security of openware,
is that it doesn't mean the binary can't be obfuscated:
. the source code can tell you how the target code is dynamic,
and how the dynamism is encrypted;
so, then knowing the source doesn't provide much help
in attacking the target code .
. on the other,
suppose dynamism and encryption isn't bullet-proof?
we need to have a different view of how software works:
. what is it that is making networks unsafe?
computers could be a lot smarter;
eg, I don't have trouble authenticating
even a short vid of a family member .
10.2:
. why is it needing to be in ram?
the self-policing unit should be a rom chip,
or a flash drive that can only be accessed by
some bullet-proof authentication .

No comments:

Post a Comment