Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I can think of two approaches for such companies:

a. Use commercial OS vendors who will push out fixes.

b. Set up a Continuous Integration process where everything is open source and is built from the ground up, with some reliance on open source platforms such as distros.

One needs different types of competence and IT Operational readiness in each approach.



> b. Set up a Continuous Integration process where everything is open source and is built from the ground up, with some reliance on open source platforms such as distros.

How would that have prevented this backdoor?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: