• On The Insider: Judge Bans Real Housewives Sex Tape
July 17, 2008 5:13 AM PDT

Linus Torvalds: Don't glorify the security "monkeys"

by Matt Asay

Leave it to Linus Torvalds, founder of the Linux kernel, to speak his mind. While many point to Linux as superior to Windows as offering superior security, Torvalds doesn't want anyone to make a fetish of security, including the OpenBSD people to whom he addresses this classic missive:

...[O]ne reason I refuse to bother with the whole security circus is that I think it glorifies - and thus encourages - the wrong behavior.

It makes "heroes" out of security people, as if the people who don't just fix normal bugs aren't as important.

In fact, all the boring normal bugs are way more important....Security people are often the black-and-white kind of people that I can't stand. I think the OpenBSD crowd is a bunch of [self-stimulating] monkeys....

I agree. Well, it's not that I have anything against the OpenBSD developers, or against anyone that makes security their job, but rather that I personally think computing has much bigger problems than code-level security. We've seen that human error (like lost laptops) leads to widespread security vulnerabilities that no amount of development can fix.

If I had to choose between a better UI for Linux and better security for Linux, I'd take the former every time. Users can improve poorly secured software by improving only behavior, but not if they won't use the software in the first place.

Matt Asay brings a decade of in-the-trenches open-source business and legal experience to The Open Road, with an emphasis on emerging open-source business strategies and opportunities. Matt is vice president of business development at Alfresco, a company that develops open-source software for content management. He is a member of the CNET Blog Network and is not an employee of CNET. Disclosure.
Recent posts from The Open Road
What soccer team would your company be?
Open-source licensing: Your mileage may vary
Open source to shape cloud computing, but not dominate it
Off-topic: Why can't I have this job?
Legalized drugs, now open source. Those crazy Dutch!
Will 'good enough' virtualization topple VMware?
Linux community codes around Microsoft's FAT patents
As Mozilla 'upgrades the Web,' Microsoft must upgrade its pace
Add a Comment (Log in or register) (7 Comments)
  • prev
  • 1
  • next
by July 17, 2008 10:06 AM PDT
If regular bug fixing and security bug fixing are equally important then why are the security guys branded as "monkeys"?? Come on.. Is name calling really going to achieve anything?? As for wanting a better Linux UI, so say all of us but what good is it if the underlying OS isn't properly defended? Security isn't just about stopping "your" computer from getting infected. It's also about stopping "your" computer from being hijacked to spam others, it's about protecting identities, intellectual property and customer data. More than half the spam we have to deal with is generated by PCs infected with bot-net code. There's huge costs associated with all this. I think good security contributes more to the overall good of computing than a nice desktop ever will.
Reply to this comment
by tomvons July 18, 2008 7:15 AM PDT
I think you are misunderstanding what Linus is talking about here.

- He is calling OpenBSD kernel hackers monkeys, not "anyone who fixes security bugs" as you seem to think. His point is that the "monkeys" think security takes #1 priority and all other issues are secondary, this is why he is calling them "monkeys", not because they fix security bugs but because they only fix security bugs... more or less.

- He never once mentions a "better linux UI". You don't seem to understand what he is talking about when he says "bugs". He isn't talking about hacking on the desktop, he's talking about kernel-level issues.
by MSSlayer July 17, 2008 10:32 AM PDT
Your comments are based on the misguided assumption that security exploits require user intervention. Some do, most don't.
Reply to this comment
by M C July 17, 2008 10:49 AM PDT
Matt, considering CNet's position on quickly posting any security-company PR release that comes through their door, you might not find a lot of agreement from your co-workers.

Or more succinctly, CNet <3's "security monkeys."
Reply to this comment
by bousozoku July 17, 2008 7:33 PM PDT
Linus shouldn't open his mouth or type because he always puts his foot in it.

I suppose he has no way of having his information used against him, so he's not concerned about security.

The OpenBSD people do an amazing job, without exemption, and he should have praise for them instead of scorn.
Reply to this comment
by tomvons July 18, 2008 7:29 AM PDT
I've never read anything from Linus that seemed foot-in-mouth, he is a very "straight shooter". You may disagree, but that's just you disagreeing.

He also never said he wasn't concerned about security, he only said that most "security people" think security should take precedence over everything else without question.
by dweet October 16, 2008 3:39 AM PDT
lets all pay the deserved respect to UNIX....the forefather....clear sexual insecurities displayed....
Reply to this comment
(7 Comments)
  • prev
  • 1
  • next
advertisement

Making sense of Windows 7 upgrades

faq The basics and the fine print on Microsoft's options for those eyeing the next operating system from Redmond.
• Full Windows 7 coverage

Road Trip 2009: Big Sky Country

CNET News reporter Daniel Terdiman takes his car full of gadgets to the Rockies and the Great Plains in search of tech, science, nature, and more.
• America's Fortress: Cheyenne Mountain

About The Open Road

Matt Asay brings a decade of in-the-trenches open-source business and legal experience to the Open Road, with an emphasis on emerging open-source business strategies and opportunities. Matt is general manager of the Americas division and vice president of business development at Alfresco, a company that develops open-source software for content management. He is a member of the CNET Blog Network and is not an employee of CNET. Disclosure.

Add this feed to your online news reader

The Open Road topics

advertisement
advertisement

Inside CNET News

Scroll Left Scroll Right