NCSG-DISCUSS Archives

NCSG-Discuss

NCSG-DISCUSS@LISTSERV.SYR.EDU

Options: Use Forum View

Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Enrique Chaparro <[log in to unmask]>
Reply To:
Enrique Chaparro <[log in to unmask]>
Date:
Mon, 15 May 2017 16:32:59 +0100
Content-Type:
text/plain
Parts/Attachments:
text/plain (28 lines)
[[SLIGHTLY OFF-TOPIC FOR THE LIST]]

Some quick notes:
1
If you are interested in the worm mechanism spreading
the infection, there's a good article here:
https://blog.malwarebytes.com/threat-analysis/2017/05/the-worm-that-spreads-wanacrypt0r/

2
You may adopt FOSS for many good reasons, but security
is not one of them. Unpatched vulnerabilities in critical
FOSS pieces have lived for years. E.g., 'Dirty Cow'
(CVE–2016–5195) was sitting unnoticed(?) for nine
years; the bug causing CVE-2015-7547 glibc vulnerability
was around for 8 years, etc.

3
As ecosystems show, diversity is A Very Good Thing™.
However, diversity in the critical Internet infrastructure
is actually very poor. A critical exploit affecting Cisco core
routers may bring the Internet to its knees... and there is
nothing we can do in a highly concentrated, quasi-monopilistic
market.

Regards,

Enrique

ATOM RSS1 RSS2