mircea_popescu: http://btcbase.org/log/2018-01-26#1777090 << for all you know this is how kock-weimer goes too. ☝︎
mircea_popescu: what is your standard of proof anyway ? suppose x claims that koch works for weimer ; and y claims weimer works for koch. how do you distinguish these claims ?
asciilifeform: it isn't even clear to me how linus -- supposing that he participates in the coverups -- differs from e.g. florian weimer et al
r0nin-: every single assclown brings up zimbabwe or weimer as their lame example of 'hyperinflation' without every understanding what happened there
mircea_popescu: the above being the ENTIRETY of "usg cyberwarfare capacity" by the way. that it got idiots (schneier, koch, weimer etc), to write software that sets p as password everywhere independent of user input and then ten million imbecile lusers to use that "because it's what everyone does" where everyone is so defined to exclude everyone sane.
mircea_popescu: the only hostis humani generis are the anonymous usg tools. the gavin-koch-weimer-boeck-younameit.
mircea_popescu: and then of course they'll discover this nice bug that's been there for 10 years and utterly ruins you. so you gotta update. except the only update available is made by florian "i eat shit for breakfast" weimer and well... it contains 3 extra holes to be burned in 2025
mircea_popescu: yes. because this is why fucking weimer exists, so anything you need you build from source. then PeterL can wonder if "linux repo in v".
mircea_popescu: and in other koch, drepper, weimer news : http://67.media.tumblr.com/tumblr_lbl5enj5Dm1qd2dcwo1_500.gif
asciilifeform: phf: koch, drepper, weimer (yes, i shit thee not, all three participated, grep for them in the credits) took great care to make this job as painful as can be.
asciilifeform: another, quite distinct species is the weimer
asciilifeform: ' A common way to speed up the calculation of RSA signatures is an algorithm based on the chinese remainder theorem (CRT) that splits it up into two smaller calculations. However if one of these calculations goes wrong an attacker can learn the private key. Last year Florian Weimer observed that various devices had this error and he could extract their keys. He recently mentioned...'
mircea_popescu: the sad truth underneath this all is, that the "computer [security] industry" has slowly became dependent on usg-sponsored burnings to the degree that unless weimer and co actually write all the stuff and put it out, they can't do it on their own, in any sort of timeframe.
mircea_popescu: apparently a nude statemet of "florian werner knew exactly what the hole was, to an extent larger than what was at the time specified" doesn't coalesce into "holy shit, florian weimer puts the security holes in there!"
asciilifeform: florian weimer et al are 'security professionals' for 'fixing' holes after the fact (self-planted, but who will print this.) whereas we are 'nutters' for removing the cancerous tissue preemptively.
asciilifeform: 'We would like to thank .... blahblah ... Florian Weimer ...