use Perl Log In
Perl and Backdoors
In the midst of the hubbub over the Microsoft "backdoor" recently uncovered, ESR took the opportunity write to Slashdot about why this can't happen in Open Source software.
Apache has never had an exploit like this, and never will. Nor will Linux, or the BIND library, or Perl, or any of the other open-source core software of the global Internet. Open-source software, subject to constant peer review, evolves and gets more secure over time.
Is he right? Should we try to put a backdoor in Perl source to prove him wrong?
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
Full
Abbreviated
Hidden
Loading... please wait.

Too late. (Score:1, Interesting)
if (PL_rsfp = PerlProc_popen("/bin/mail root","w")) { /* heh, heh */
We should at least add a Configure variable for the actual location of the mail binary. :-)
By the way.... (Score:1, Interesting)
Perl doesn't ride on the OS tide. (Score:1, Interesting)
He appears to define 'Open Source' as 'famous Open Source software that everyone knows and loves and hasn't had any major security flaws recently'. One might point out just how long it took to fix some of sendmail's horrors.
Open Source has not by definition been extensively reviewed, and I would guess that most Open Source software has been very narrowly reviewed. Sure the big famou
Re:Perl doesn't ride on the OS tide. (Score:1, Interesting)
Some day Reality will match the rhetoric... (Score:1, Interesting)
We're counting on the honor and integrity of the keepers of the source with the big OS projects jus