Why Nostr? What is Njump?
2024-04-02 12:02:07

Tim Kellogg on Nostr: i don’t understand how people see the xz incident and conclude that open source is ...

i don’t understand how people see the xz incident and conclude that open source is insecure. That level of social engineering could easily have worked on a company as well, but it was detected *because* it was open source. All other mechanisms failed, and it was just some random guy poking around that discovered it. That kind of scrutiny doesn’t happen on closed source systems
Author Public Key
npub1nnm8m3ws09epunguu09g7lch8gtup4vn2jnhgtv6zq7xufgc3uesvxdwe8