, SecurityFocus 2003-11-06
Software developers on Wednesday detected and thwarted a hacker's scheme to submerge a slick backdoor in the next version of the Linux kernel, but security experts say the abortive caper proves that extremely subtle source code tampering is more than just the stuff of paranoid speculation.
Expand all |
Post comment
Thwarted Linux backdoor hints at smarter hacks
2003-11-09
Anonymous (4 replies)
Anonymous (4 replies)
Thwarted Linux backdoor hints at smarter hacks
2003-11-11
Cid Skid the Former Script K1d (3 replies)
Cid Skid the Former Script K1d (3 replies)

No they are paid to make proper risk assessments. What he wrote was a pretty good attempt at it. He's in essence right, a local exploit isn't a "big" deal. Remote overflows are far worse and whether something is put in the code deliberately or not isn't really my concern. It's not that a Microsoft or Sun employee can't backdoor their respective OS in a similar way. Some companies have programmers who create local/remote exploits by sheer stupidity anyway.
[ reply ]
Link to this comment: http://www.securityfocus.com/comments/articles/7388/23640#23640