[170944] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

RE: [[Infowarrior] - NSA Said to Have Used Heartbleed Bug for Years]

daemon@ATHENA.MIT.EDU (Matthew Black)
Mon Apr 14 10:39:24 2014

From: Matthew Black <Matthew.Black@csulb.edu>
To: Randy Bush <randy@psg.com>, Bengt Larsson <lists.nanog@bengtl.net>
Date: Mon, 14 Apr 2014 14:38:29 +0000
In-Reply-To: <m2k3ati9nt.wl%randy@psg.com>
Cc: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces+nanog.discuss=bloom-picayune.mit.edu@nanog.org

Shouldn't a decent OS scrub RAM and disk sectors before allocating them to =
processes, unless that process enters processor privileged mode and sets a =
call flag? I recall digging through disk sectors on RSTS/E to look for pass=
words and other interesting stuff over 30 years ago.

matthew black
california state university, long beach

-----Original Message-----
From: Randy Bush [mailto:randy@psg.com]=20
Sent: Sunday, April 13, 2014 7:31 AM
To: Bengt Larsson
Cc: nanog@nanog.org
Subject: Re: [[Infowarrior] - NSA Said to Have Used Heartbleed Bug for Year=
s]

> It's quite plausible that they watch the changes in open-source=20
> projects to find bugs. They could do nice diffs and everything.

the point of open source is that the community is supposed to be doing this=
.  we failed.

randy





home help back first fref pref prev next nref lref last post