Re: [friam] SOSP History Day

"Mark S. Miller" <[email protected]> Sun, 11 Oct 2015 11:22:15 -0700
Newsgroups gmane.comp.capabilities.general
Message-ID <CABHxS9jh-S7HJnHK3kjO4EkNB-7wR19XUTOYP9t5RM=GO7QxVQ@mail.gmail.com>
On Sun, Oct 11, 2015 at 11:14 AM, Dan Connolly <[email protected]> wrote:

> Perhaps you could help me understand a little better?
>
> I'm having trouble seeing how "any vulnerability in any software
> someone like myself may invoke, for example the sqrt function, is a
> threat to delete all my files or contribute to a DDOS or spear
> phishing attack" is any more or less true than "insecurity anywhere is
> a threat to security everywhere."
>
> I'm not cc'ing cap-talk, but feel free to do so on your reply.


If the sqrt function you're running is vulnerable, you are at risk. But if
only the sqrt function I am running is vulnerable, that does not put you at
risk.

Note that the vulnerability-thru-excess-authority I am focused on here is
quite distinct from DDOS, which is a resource exhaustion attack on
availability; or spear phishing, which is a social engineering attack
involving further human actions.





> On Fri, Oct 9, 2015 at 7:52 AM, Mark S. Miller <[email protected]> wrote:
> > Too strong and simply untrue, to the point of inviting accusations of
> "straw
> > man".
> >
> >
> > On Thu, Oct 8, 2015 at 9:00 PM, Dan Connolly <[email protected]> wrote:
> >>
> >> On Thu, Oct 8, 2015 at 9:22 AM, Mark S. Miller <[email protected]>
> wrote:
> >> ...
> >> > Today, when we secure systems, we assign authority to identities.
> >> > When I run a program, it runs as me.
> >> > The square root function in my math library can delete my files.
> >> > Although it does not abuse this excess authority,
> >> > if it has a flaw enabling an attacker to subvert it,
> >> > then anything it may do, the attacker can do.
> >> > It is this excess authority that invites most of the attacks we see in
> >> > the
> >> > world today.
> >>
> >> Borrowing from MLK, how's this for a bumper-sticker version of the
> >> consequences of the conventional approach?
> >>
> >>   Insecurity anywhere is a threat to security everywhere.
>
>
> --
> Dan Connolly
> http://www.madmode.com/
>



-- 
    Cheers,
    --MarkM

_______________________________________________
cap-talk mailing list
[email protected]
http://www.eros-os.org/mailman/listinfo/cap-talk