• On GameFAQs: Is it OK to lay my Wii down on its side?
July 17, 2008 5:13 AM PDT

Linus Torvalds: Don't glorify the security "monkeys"

by Matt Asay

Leave it to Linus Torvalds, founder of the Linux kernel, to speak his mind. While many point to Linux as superior to Windows as offering superior security, Torvalds doesn't want anyone to make a fetish of security, including the OpenBSD people to whom he addresses this classic missive:

...[O]ne reason I refuse to bother with the whole security circus is that I think it glorifies - and thus encourages - the wrong behavior.

It makes "heroes" out of security people, as if the people who don't just fix normal bugs aren't as important.

In fact, all the boring normal bugs are way more important....Security people are often the black-and-white kind of people that I can't stand. I think the OpenBSD crowd is a bunch of [self-stimulating] monkeys....

I agree. Well, it's not that I have anything against the OpenBSD developers, or against anyone that makes security their job, but rather that I personally think computing has much bigger problems than code-level security. We've seen that human error (like lost laptops) leads to widespread security vulnerabilities that no amount of development can fix.

If I had to choose between a better UI for Linux and better security for Linux, I'd take the former every time. Users can improve poorly secured software by improving only behavior, but not if they won't use the software in the first place.

Matt Asay brings a decade of in-the-trenches open-source business and legal experience to The Open Road, with an emphasis on emerging open-source business strategies and opportunities. Matt is vice president of business development at Alfresco, a company that develops open-source software for content management. He is a member of the CNET Blog Network and is not an employee of CNET. Disclosure. You can follow Matt on Twitter @mjasay.
Recent posts from The Open Road
Mobile: Still waiting to see what sticks
Google privacy controls: Most people won't care
Amazon's move mocks EU's fear of Oracle
Skype to open-source far too little
The difference a few years makes to open source
Novell cuts 3 percent of its workforce, plus benefits
Data's one-two punch in open-source business models
Open source as an antitrust strategy
Add a Comment (Log in or register) (7 Comments)
  • prev
  • 1
  • next
by July 17, 2008 10:06 AM PDT
If regular bug fixing and security bug fixing are equally important then why are the security guys branded as "monkeys"?? Come on.. Is name calling really going to achieve anything?? As for wanting a better Linux UI, so say all of us but what good is it if the underlying OS isn't properly defended? Security isn't just about stopping "your" computer from getting infected. It's also about stopping "your" computer from being hijacked to spam others, it's about protecting identities, intellectual property and customer data. More than half the spam we have to deal with is generated by PCs infected with bot-net code. There's huge costs associated with all this. I think good security contributes more to the overall good of computing than a nice desktop ever will.
Reply to this comment
by tomvons July 18, 2008 7:15 AM PDT
I think you are misunderstanding what Linus is talking about here.

- He is calling OpenBSD kernel hackers monkeys, not "anyone who fixes security bugs" as you seem to think. His point is that the "monkeys" think security takes #1 priority and all other issues are secondary, this is why he is calling them "monkeys", not because they fix security bugs but because they only fix security bugs... more or less.

- He never once mentions a "better linux UI". You don't seem to understand what he is talking about when he says "bugs". He isn't talking about hacking on the desktop, he's talking about kernel-level issues.
by MSSlayer July 17, 2008 10:32 AM PDT
Your comments are based on the misguided assumption that security exploits require user intervention. Some do, most don't.
Reply to this comment
by M C July 17, 2008 10:49 AM PDT
Matt, considering CNet's position on quickly posting any security-company PR release that comes through their door, you might not find a lot of agreement from your co-workers.

Or more succinctly, CNet <3's "security monkeys."
Reply to this comment
by bousozoku July 17, 2008 7:33 PM PDT
Linus shouldn't open his mouth or type because he always puts his foot in it.

I suppose he has no way of having his information used against him, so he's not concerned about security.

The OpenBSD people do an amazing job, without exemption, and he should have praise for them instead of scorn.
Reply to this comment
by tomvons July 18, 2008 7:29 AM PDT
I've never read anything from Linus that seemed foot-in-mouth, he is a very "straight shooter". You may disagree, but that's just you disagreeing.

He also never said he wasn't concerned about security, he only said that most "security people" think security should take precedence over everything else without question.
by dweet October 16, 2008 3:39 AM PDT
lets all pay the deserved respect to UNIX....the forefather....clear sexual insecurities displayed....
Reply to this comment
(7 Comments)
  • prev
  • 1
  • next
advertisement

FAQ: Buying the right Windows 7 upgrade

Readers still have lots of questions on just which version of the software they need to buy in order to upgrade their PC. CNET News tries to offer some answers.

N.Y. lawsuit details Intel's 'largesse' toward Dell

Attorney General Andrew Cuomo's federal antitrust case filed Wednesday alleges a longstanding symbiotic relationship between Intel and Dell.

advertisement

About The Open Road

Matt Asay brings a decade of in-the-trenches open-source business and legal experience to the Open Road, with an emphasis on emerging open-source business strategies and opportunities. Matt is general manager of the Americas division and vice president of business development at Alfresco, a company that develops open-source software for content management. He is a member of the CNET Blog Network and is not an employee of CNET. Disclosure.

Add this feed to your online news reader

The Open Road topics

advertisement
advertisement

Inside CNET News

Scroll Left Scroll Right