|
|
|
|
|
by kbenson
2221 days ago
|
|
he had such confidence in his software and abilities that he thought it was actually secure, and there were no bugs, and posted a bounty for any exploit that could be found. Patching it means acknowledging it's an exploit, and that his code was not without bugs. Given that his principles of writing secure software (included in the Qmail guarantee[1]) includes this: "7. Write bug-free code." that might be a bit hard for him to swallow. 1: https://cr.yp.to/qmail/guarantee.html |
|
Edit: See https://news.ycombinator.com/item?id=23250748