a thoughtful web.
Good ideas and conversation. No ads, no tracking.   Login or Take a Tour!
comment by rrrrr
rrrrr  ·  3699 days ago  ·  link  ·    ·  parent  ·  post: Critical crypto bug leaves Linux, hundreds of apps open to eavesdropping

Bruce Schneier was asking the other day whether the Apple bug might be a deliberate backdoor. This GnuTLS bug seems startlingly similar. It's enough to make you wonder.

https://www.schneier.com/blog/archives/2014/02/was_the_ios_ssl.html





Meriadoc  ·  3698 days ago  ·  link  ·  

If anything this rules out the backdoor as intentional. No way people involved in *nix would intentionally build this sort of thing in; however it is absolutely boggling that with how closely everything is inspected here, it's gone unseen since 2003/5

amranu  ·  3698 days ago  ·  link  ·  

And we did hear last year about the NSA attempting to undermine encryption libraries, softwares etc. It's very possible at least.

am_Unition  ·  3698 days ago  ·  link  ·  
This comment has been deleted.