Re: [Full-Disclosure] Microsoft prepares security assault on Linux ]

From: Jeremiah Cornelius (jeremiah_at_nur.net)
Date: 11/12/03

  • Next message: security_at_sco.com: "[Full-Disclosure] OpenLinux: unzip directory traversal"
    To: Valdis.Kletnieks@vt.edu
    Date: Wed, 12 Nov 2003 14:24:37 -0800
    
    

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    On Wednesday 12 November 2003 11:16, Valdis.Kletnieks@vt.edu wrote:
    >
    > Turds in closed boxes don't stink up the room as badly as turds out of
    > boxes.
    > But they're still turds.
    >
    Is this a closed box?
    http://www.gotdotnet.com/team/brada/LHArch.PDC2003.png

    That's the system architecture design for "Longhorn".

    That BIG pile of blue/yellow/green on the top is all of the new stuff built up
    on top of .net (xml/rpc meets jvm).

    Ouch.

    There is a good look at where this is going:
    http://bitworking.org/news/Longhorn_versus_the_light_of_day

    "Complexity is the enemy of security,"
      --Elias Levy

    "Agreed complexity is the enemy of security, "
      --Roland Postle

    "...operational complexity is the enemy of
           security,"
      --RFC3364

    "Complexity is the enemy of security"
      --Bruce Schneier

    "Complexity is the enemy of security."
      --Nigel Willson

    "Complexity is the enemy of security,"
      -- Charles Palmer

    "Complexity is the enemy of security."
      --Scott Culp (Microsoft)

    "At the crux of Longhorn will be the datastore that Microsoft is building into
    its SQL Server "Yukon" database. He (Gates) also noted that Microsoft is
    counting on simpler and more intuitive user interfaces to hide the
    _increasing_complexity_ created by this type of model from business and
    consumer customers."

    "There's good evidence that the update and patch processes are making
    progress, but the huge complexity of the Web Service based messaging
    environment is going to be a new order of challenge for Redmond."
      --CBDI Forum

    We will all be busier than ever...
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.2.3 (GNU/Linux)

    iD8DBQE/srMlJi2cv3XsiSARAtirAJ4m54fCxr0NZLn0gQcK3ygWjIgcgACeJxpy
    1QiHG0V1nAS+K2YyzKdpIVM=
    =HjZw
    -----END PGP SIGNATURE-----

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: security_at_sco.com: "[Full-Disclosure] OpenLinux: unzip directory traversal"

    Relevant Pages