OK ... that was worthless

Story: Study: OSS Communities Are Often Slackers in SecurityTotal Replies: 2
Author Content
hughesjr

Jul 21, 2008
3:01 PM EDT
They tested 11 unnamed java packages that are open source, and the title of the article is:

Study: OSS Communities Are Often Slackers in Security

So ... based on 11 java packages ... we are supposed to jump to the conclusion that "Open Source" is not enterprise ready.

It is quite a coincidence that the people who did the study happen to provide "audited versions" of those same java programs ... I guess we are very lucky.
tuxchick

Jul 21, 2008
3:22 PM EDT
Quoting: The server certificate failed the authenticity test (opensource.fortify.com).


OK, so self-signed certs are common. But it's still a bit ridiculous, given their inflated, self-serving claims.
techiem2

Jul 21, 2008
3:43 PM EDT
lol Yeah...a security auditing company using a self signed certificate....

"And I know you really are who you say you are HOW?" "Cuz we say so!""

Posting in this forum is limited to members of the group: [ForumMods, SITEADMINS, MEMBERS.]

Becoming a member of LXer is easy and free. Join Us!