Possible side-effect: character assassination
Posted Nov 14, 2003 15:50 UTC (Fri) by
Max.Hyre (subscriber, #1054)
Parent article:
An attempt to backdoor the kernel
No one's mentioned a lucky circumstance of this attempt: that the
perpetrator used David Miller's name. Mr. Miller's efforts and integrity
are too well known for this to be seen as anything other than a
falsification. (Besides, if he wanted to insert a back door, he's got
lots more effective ways to do it. :-)
But what if it had been labelled as coming from ``Joe Blow'', some
rising coder who'd just been given commit permission in the last month
or so? Would he be well-known enough to have his protestations of
innocence believed? Even if accepted, would not doubt lurk in the
minds of many other developers?
Debian developers cryptographically sign every upload.
It's a precaution should be more widespread.
(
Log in to post comments)