Closed source software doesn’t have backdoors.
It does have “undocumented administrative features” and “development tools mistakenly enabled in production”, but not backdoors.
@gwire Similarly
closed source software doesn't have permissions-escalation exploits.
It does have "rapid unscheduled administrator appointment".
@gwire don't forget "telemetry".
@gwire Closed source software has backdoors as a feature not a bug. Change my mind.
#ClosedSourceSoftware, #OpenSourceSoftware, #FOSS, #XZ, #Backdoor, #Features, #Bugs, #TuckersBalls
Until developers unionize and go all Luddite, in the historical sense.
@gwire
or maybe built-in backdoors. which no one knows, cuz it's behind closed doors. (might be revolving doors sometimes, what counts is they remain closed..)
@gwire
何が言いたいのかさっぱりわからないけど、脆弱性ハンドリングの実務的にはCWE-912 としてすべてカテゴライズされる話だと思います。