Heartbleed Exposes a Problem With Open Source, But It's **t What You Think
A week after the Heartbleed OpenSSL vulnerability wreaked havoc across the web, the conversation is shifting from reaction to reflection. The discussion is ** longer about What to do **w, but What can be done to prevent a**ther Heartbleed from happening in the future. In other words, we're entering the blame game chapter in this saga.
If OpenSSL, the software package at the root of the vulnerability, were a piece of commercial software, we could blame the company behind the app. In fact, when Apple released an emergency ***** for its own SSL/TLS bug back in February, the company was scrutinized by security experts, programmers and pundits a like Read more...