Ok libressl fanatics, here we go, I’m going to talk a little bit about GAME THEORY (no but really, I’m going to talk about libressl).https://twitter.com/a_z_e_t/status/859661676488138753 …
Jumping on libressl like this for making 1 mistake is really not cool. Esp. when openssl's rate of similarly stupid mistakes was >10x higher
-
-
I consider this mistake to be emblematic of a wider cultural issue with libressl, which I explained at length in the tweets.
-
But TL;DR: if people are going to be jackasses about OpenSSL mistakes, they need to expect jackassery in return for their own.
-
Note that I’m not leaping on BoringSSL, itself a fork of OpenSSL, because that fork was handled very differently.
End of conversation
New conversation -
-
-
It's not the first security issue in libressl. Some design decisions are a constant source of pain for integrators, too.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.