Chris Evans

Chris Evans

@scarybeasts

Researcher; author of vsftpd; defender of Chromium; payer of Chromium Security Rewards. Occasional troll; regular tool. OPINIONS ARE NOT MY EMPLOYER'S

San Francisco Bay Area · scarybeastsecurity.blogspot.com

트윗

  1. 님이 리트윗했습니다

    Firefox bug for making multi-process Firefox aka e10s usable by "average Nightly users" - first step to sandboxing!

  2. For the purposes of discussion, would it make sense to assign a specific time interval to "briefly"? :-)

  3. ... with one exception: Senior officials could “briefly authorize using a zero day for high priority intelligence protection.”

  4. A fair middle ground? "And it said that if the United States finds a “zero day,” it should patch it, not exploit it, with one exception...

  5. No need for the snark; if you have a different plan to make things better then go for it. Stop talking and start doing.

  6. The NSA claims a defensive bias?? Excellent, I expect a $25M+ donation to the Internet Bug Bounty to match offensive purchase budget.

  7. We'd have more secure software. Is that a waste? Is perfect being the enemy of the good here? Or $500M to solve halting problem?

  8. Lets do both. I will proceed with crowd sourcing. You proceed with your idea.

  9. I don't think a donation to OpenSSL will get automatic attention. I don't know of a better model than crowdsourcing.

  10. I have a dream. Imagine the amount of we could fix if every Fortune 500 donated $1M (pocket change) to the Internet Bug Bounty.

  11. 님이 리트윗했습니다
  12. A lot of opinions on heartbleed that are just entropy because they fail to end in "And I personally will do [X] to help"

  13. 님이 리트윗했습니다

    ., in case you thought I'd forgotten, only 9 more to go.

  14. Actually, I kind of see your point. Almost no-one is as good as Neel so extrapolating from there may be bad.

  15. Daily total of rewards announced across various panel responsibilities: $45k. Maybe this thing is catching on.

로딩하는데 시간이 지연되고 있습니다.

Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.