[40661] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Opinion: Complete failure of Oracle security response and utter neglect of their responsibility to their customers

daemon@ATHENA.MIT.EDU (Radoslav =?iso-8859-2?q?Dejanovi=E)
Fri Oct 7 19:37:41 2005

From: Radoslav =?iso-8859-2?q?Dejanovi=E6?= <radoslav.dejanovic@opsus.hr>
To: bugtraq@securityfocus.com
Date: Fri, 7 Oct 2005 09:56:53 +0200
In-Reply-To: <43456B4E.7040702@ultra-secure.de>
Cc: Rainer Duffner <rainer@ultra-secure.de>
MIME-Version: 1.0
Content-Type: text/plain;
  charset="iso-8859-2"
Content-Disposition: inline
Message-Id: <200510070956.53476.radoslav.dejanovic@opsus.hr>
Content-Transfer-Encoding: 8bit

On Thursday 06 October 2005 20:22, Rainer Duffner wrote:

> It's really a shame - but they'll only wake up when it's too late and
> MSFT, PostgreSQL and MySQL have eaten their lunch.
>
> Note: I don't care if it's Larry's personal money or Oracle's money -
> for me, this is a purely fiscal separation. In the end, the money has
> one source: Oracle.

<flame shield on>

I don't think MySQL could eat much of the Oracle cake, anyway. :)

<flame shield off>

Seriously, keep in mind that Oracle has a lot of resources, thus much 
potential to change the course regardless of the wind direction (pun 
intended), and they're surely not going to capsize any time soon (yeah, 
another intended). Oracle is ahead of competition (look, another pun!) in 
some areas; PostgreSQL has to do a lot more to prevail.
 
However, failing in a security area is like having a hole below the 
watermark and not caring about it because "it's small, and our boat is 
huge". Eventually, you get full of... hmm.. water.  

And, wasn't Oracle that company that touted their seriousness about 
security some time ago? ;)

-- 
Radoslav Dejanoviæ
Operacijski sustavi d.o.o.
http://www.opsus.hr

home help back first fref pref prev next nref lref last post