Skip to main content

We have met the enemy (and he is us)

An article written by George Ou and titled "Linux zombies show platforms don't matter" underscores the peril you take when you decide to point out problems with F/OSS software in general, and Linux distributions in particular. George documented the trials and tribulations of one Richard Stiennon and the trouble he got into when he pointed out how Linux systems running Apache and PHP were compromised and turned into zombies. The ability to hunt down and compromise these types of systems were documented by Richard this way:
The hacker used a common mis-configuration in PHP scripts to take over Linux machines and use them for his army of zombies. What is scary about this is that these machines are typically web servers on broadband connections, unlike the usual collection of PCs on college campuses that are part of a bot-herd. So they are much more deadly, especially when combined into a single force. The PHP script is easily searchable on Google so the hacker automated his harvesting activity by having each infected machine search for more machines to infect using Google results to seed the search.
When he attempted to point out this flaw he was flamed by some of the Linux zealots for being a Windows 'fanboy' and being incompetent. Excuse me? Since when does pointing out a serious flaw in the configuration of an important software stack such as LAMP constitute being a stooge for Microsoft? If it had been Windows and IIS that had suffered this security issue you can be assured that those self same zealots would have been all over the story like ugly on an ape, hooting like apes that here was yet another example showing the dangers of using Microsoft software.

It's behavior like this exhibited by the Linux zealots that over time damage the reputation and erode the credibility of the overall Linux community. And if Linux supporters such as Richard Stiennon can't write about issues and offer constructive criticism of important problems, then fewer will bother to raise their voices on other equally important issues when they appear. Linux is not perfect. Windows, whether the Linux zealots want to admit it or not, is a good alternate choice to Linux (remember how Linux is about choice?). Shooting the messenger is not the answer. Listening to the messenger is the right choice. Acting on the message to fix Linux and make it better is the best choice of all.


Popular posts from this blog

cat-in-a-box channels greta garbo

So I'm sitting at my computer, when I start to notice a racket in back. I ignore it for a while until I hear a load "thump!", as if something had been dropped on the floor, followed by a lot of loud rattling. I turn around and see Lucy in the box just having a grand old time, rolling around and rattling that box a good one. I grab the GX1 and snap a few shots before she notices me and the camera, then leaps out and back into her chair (which used to be my chair before she decided it was her chair).

Just like caring for Katie my black Lab taught me about dogs, caring for Lucy is teaching me about cats. She finds me fascinating, as I do her. And she expresses great affection and love toward me without coaxing. I try to return the affection and love, but she is a cat, and she takes a bat at me on occasion, although I think that's just her being playful. She always has her claws in when she does that.

She sits next to me during the evening in her chair while I sit in mi…

vm networking problem fixed

Over the weekend I upgraded to Windows 8.1, then discovered that networking for the virtual machines wouldn't work. Then I tried something incredibly simple and fixed the problem.

Checking the system I noticed that three VMware Windows services weren't running; VMnetDHCP, VMUSBArbService, and VMwareNatService. VMware Player allows you to install, remove, or fix an existing installation. I chose to try fixing the installation, and that fixed the problem. The services were re-installed/restarted, and the virtual machines had networking again.

Once network connectivity was established there was exactly one updated file for Ubuntu 13.10, a data file. This underscores how solid and finished the release was this time. Every other version of every other Linux installation I've ever dealt with has always been succeeded by boatloads of updates after the initial installation. But not this time.

Everything is working properly on my notebook. All's right with the world.

sony's pivotal mirrorless move

I'm a died-in-the-wool technologist, even when it comes to photography. I have always been fascinated with the technology that goes into manufacturing any camera, from the lenses (optics) through the mechanical construction, the electronics involved, and especially the chemistry of the film and the sophistication of the digital sensor. It's amazing that the camera can do all it's asked of it, regardless of manufacturer.

Of all the types of cameras that I've really taken an interest in, contemporary mirrorless (again, regardless of manufacturer) are the most interesting because of the challenging problems the scientists and engineers have had to solve in order to build a compact but highly functional camera. In particular I've followed the sensor advances over the years and watched image quality climb (especially with μ4:3rds) to exceed film and rival one another such that there's very little difference any more as you move from the smaller sensors such as 4:3r…