Uploaded by ChRiStIaAn008 on Oct 6, 2010
Speakers: Bruce Potter, Logan Lodge
Open source. These two words mean lots of things to lots of people. Some say, because it's open source it's more secure because you have complete transparency. Some say, because it's open source it's less secure because amateurs are writing the code. Well, one thing is true, with open source you have free reign to see the code and all the commentary left in there before it's compiled away. Ever wondered what was in those comments? Is there some lingering bug with a comment left behind to remind someone to go back in to fix it later? How many times did the developer leave a comment behind with the word 'bollocks' in it? These are the questions we set out to answer and this talk is about those answers and how we got them.
During our talk we'll cover how we went about crawling the Internets for any and all public repositories, how we parsed the source code and commit statements in the repos we found, how we store the results, and of course the results. Some of what we find will be security specific.... much of what we find will just be comedy. We plan on releasing access to a web interface to perform your own queries against our results to see what interesting comments you can find in which repositories.
For presentations, whitepapers or audio version of the Defcon 18 presentations visit: http://defcon.org/html/links/dc-archives/dc-18-archive.html
-
0 likes, 0 dislikes
14:58
DEFCON 18: This Needs to be Fixed and Other Jokes in Commit Statements 2/3by ChRiStIaAn008372 views
14:58
DEFCON 18: Token Kidnappings Revenge 1/4by ChRiStIaAn008636 views
14:58
DEFCON 18: We Dont Need No Stinkin Badges: Hacking Electronic Door Access Controllers 1/3by ChRiStIaAn008634 views
15:14
DEFCON 18: These Arent the Permissions Youre Looking For 2/4by ChRiStIaAn008152 views
14:58
DEFCON 18: Youre Stealing It Wrong 30 Years of Inter Pirate Battles 1/4by ChRiStIaAn0083,785 views
14:58
DEFCON 18: How Hackers Won the Zombie Apocalypse 1/3by ChRiStIaAn0083,445 views
15:14
DEFCON 18: Practical Cellphone Spying 2/4by ChRiStIaAn0083,607 views
4:14
DEFCON 18: These Arent the Permissions Youre Looking For 4/4by ChRiStIaAn008100 views
7:22
DEFCON 18: From No Way to 0day: Weaponizing the Unweaponizable 4/4by ChRiStIaAn008313 views
15:10
DEFCON 18: Practical Cellphone Spying 3/4by ChRiStIaAn0083,501 views
4:29
DEFCON 18: The Night The Lights Went Out In Vegas: Demystifying Smartmeter Networks 4/4by ChRiStIaAn00895 views
14:58
DEFCON 18: Bypassing SmartCard Authentication and Blocking Debiting 1/2by ChRiStIaAn008524 views
14:57
DEFCON 18: Mobile Privacy: Tor on the iPhone and Other Unusual Devices 1/2by ChRiStIaAn008893 views
14:01
DEFCON 18: WPA Too 1/4by ChRiStIaAn0083,032 views
14:58
DEFCON 18: SCADA and ICS for Security Experts: How to Avoid Cyberdouchery 2/4by ChRiStIaAn008214 views
14:58
DEFCON 18: Wardriving the Smart Grid: Practical Approaches to Attacking Utility Packet Radios 1/4by ChRiStIaAn008367 views
14:58
DEFCON 18: SCADA and ICS for Security Experts: How to Avoid Cyberdouchery 1/4by ChRiStIaAn008385 views
3:53
DEFCON 18: SCADA and ICS for Security Experts: How to Avoid Cyberdouchery 4/4by ChRiStIaAn008160 views
1:18
Notacon 5, 2008 Bruce Potter attacked with Shmooballsby securidave978 views
14:57
DEFCON 18: SCADA and ICS for Security Experts: How to Avoid Cyberdouchery 3/4by ChRiStIaAn008193 views
- Loading more suggestions...
Link to this comment:
All Comments (0)