Hacker News new | ask | show | jobs
by angry_octet 3437 days ago
Not at all. OpenSSL was suffering from a lack of effort/funding and a desire not to 'break' anything. Systemd has plenty of effort and breaks everything, but a lack of philosophy, a lack of introspection. It's ignoring plenty of hard lessons about security practice and being very Microsoft-y. Massive technical debt which we will collectively pay for for a decade or more.
1 comments

The buggy TLS heartbeat extension was new code I think though.