It looks like you're using an Ad Blocker.
Please white-list or disable AboveTopSecret.com in your ad-blocking tool.
Thank you.
Some features of ATS will be disabled while you continue to use an ad-blocker.
originally posted by: opethPA
Not trying to derail the original thread but I 100% agree with the following..
originally posted by: SleeperHasAwakened
Google "security by obscurity" to understand why what you propose, corporatising OSS, is an abjectly terrible idea.
QFE over and over.
If anyone doesn't understand all the details of everything else that was really well written in your post then focus on those three words in quotes. "Security By Obscurity" should never be viewed as a valid approach to Infosec , private data, intellectual property and so on.
Kevin Mitnick, along with multiple other qualified sources, has spokenwritten a few times around the dangers of believing this type of concept , "My business is so small, no one uses my app, our product isnt important, our data isn't valuable outside our business, we have customized it so much no one will give the effort and because of that no one will ever try to exploit us."
This is exactly the type of target that bad actors (state or independent) have successfully , currently do and will continue to focus on as viable attack vectors.
originally posted by: SleeperHasAwakened
Want an efficient, reliable, secure voting system? It CAN be achieved technologically, but it will cost $$$, it will need very careful nurturing to remain APOLITICAL, open and fair, and IMO the gub'mt must MUST take point on this carefully vet and supervise WHO is involved and HOW they implement it.
originally posted by: SleeperHasAwakened
a reply to: AScrubWhoDied
You just showed you have NO IDEA what you're talking about pursuant to software.
The most secure remote shell access system on the planet Earth OpenSSH is .........
Open Source
The most widely used encryption library on the planet OpenSSL is
Open Source
originally posted by: AScrubWhoDied
originally posted by: SleeperHasAwakened
a reply to: AScrubWhoDied
You just showed you have NO IDEA what you're talking about pursuant to software.
The most secure remote shell access system on the planet Earth OpenSSH is .........
Open Source
The most widely used encryption library on the planet OpenSSL is
Open Source
OpenSSL is entering the realm of cryptology and I absolutely agree with these technologies being open. Everyone needs encryption, and standards are great.
You know that openSSL is relatively secure because its almost impossible to exploit with our CURRENT LEVEL OF TECH.
Implementing a standard that does one thing != building an entire application. To compare these two is stretching' completely. We WILL need to revisit the implementation of openssl once hardware progresses sufficiently.
As far as the rest, it seems you've taken the position that if software is propriety then developers must have slacked and cut corners and ignored the concept of building secure software from the ground up.
There's a very good reason why your bank's reconciliations arent open source. There is a very good reason why the FICO algorithm isn't open source. That's not so say these things arent using open source libraries, packages etc.. but != the entire application.
originally posted by: SleeperHasAwakened
originally posted by: AScrubWhoDied
originally posted by: SleeperHasAwakened
a reply to: AScrubWhoDied
You just showed you have NO IDEA what you're talking about pursuant to software.
The most secure remote shell access system on the planet Earth OpenSSH is .........
Open Source
The most widely used encryption library on the planet OpenSSL is
Open Source
OpenSSL is entering the realm of cryptology and I absolutely agree with these technologies being open. Everyone needs encryption, and standards are great.
You know that openSSL is relatively secure because its almost impossible to exploit with our CURRENT LEVEL OF TECH.
Implementing a standard that does one thing != building an entire application. To compare these two is stretching' completely. We WILL need to revisit the implementation of openssl once hardware progresses sufficiently.
As far as the rest, it seems you've taken the position that if software is propriety then developers must have slacked and cut corners and ignored the concept of building secure software from the ground up.
There's a very good reason why your bank's reconciliations arent open source. There is a very good reason why the FICO algorithm isn't open source. That's not so say these things arent using open source libraries, packages etc.. but != the entire application.
I have no problem with DATA being private, but the mechanisms and formulae to arrive at the conclusions to which the data brings us, should not, CAN NOT be private.
Everybody's individual vote record CAN and MUST be private. The code to tabulate and prove the outcome of the aggregate voting records CAN and MUST be public. This is the very essence of open source software, and modern tech is replete with examples of this (blockchain, cryptographically secure comms, email clients, instant messaging)
Comparing means for calculating one person's credit rating to that of a system that would be trusted and have the power to elect the POTUS is a false dichotomy, and I know you know this. One involves a system of rating an individual's financial trustworthiness; it was created as an economic shorthand by tPTB. The other is a hypothetical system for bringing our sacred franchise from over 200 years of a nation, yours, mine, everybody's in the US, into the 21st century. This deserves the most careful and open/honest handling imaginable. I would not entrust it to corporate stakeholders.
originally posted by: maya27
By their own admission, the leftist loons did not see Donald Trump as any kind of threat. They thought they had it in the bag. LOL.
originally posted by: DontTreadOnMe
a reply to: daskakik
Computer corruption/fraud has no place in any election, on any candidate.
And is a HUGE danger to free elections in a democratic society.
I mean really.....SMH
It MUST be the job of a free press to alert the citizens of dangers to the Republic.
At least it should be.