Comments on: Security expert blesses Google Native Client technology
Researcher who wins bug-finding contest says Google Native Client technology is architecturally sound.
Researcher who wins bug-finding contest says Google Native Client technology is architecturally sound.
Web sites launch all the time, but they also shut their doors. We highlight 15 that bit the dust this year.
Let the debate begin: Was the iPhone more important than iTunes? Was anything bigger than Google finding a great business model? CNET offers its list of the 10 most important stories of the '00s.
Online security is threatened by more than hacking and phishing attempts. Check here for the latest updates on software vulnerabilities, data leaks, and rapidly spreading viruses--and learn how to protect your systems.
Add this feed to your online news reader
These guys have "found the largest number of security vulnerabilities and the most severe of the 22 total bugs that were reported by contestants", and that product has not even shipped yet (no one is looking to exploit it), so chances are there are many times more vulnerabilities still in it, and yet they "bless Google Native Client technology"?
Shouldn't it be the other way around?
I wonder if it has anything to do with Google paying these guys...
Sure, review of security professionals is not a panacea (think MD5), but it sure as hell better then alternatives. And 22 bugs are not such a big number if you'll consider size of Native Client's code...
I'd like to get a second opinion.
- by GEO2003 July 9, 2009 2:48 PM PDT
- These Security Experts no doubt have great credentials to be able to analyse vulnerabilities in WEB applications. The questions is - Are they really smarter then undergroud hackers whom may be able to surpace the technical knowledge of of these Security Experts. At any point in time someone else could come alone who may be better at finding vectors to attack Web Applications.
- Like this Reply to this comment
-
(5 Comments)The email that show this article is the same email from Cnet that show the story of Google's Cloud computing OS. They both complement each other, in that while Google may be touting their Web OS as secure, this story shows the opposite.