Followup on Inquiry about regreSSHion postmortem

Gert Doering gert at greenie.muc.de
Thu Aug 21 07:17:54 AEST 2025


Hi,

On Wed, Aug 20, 2025 at 06:40:46PM +0000, Rene Malmgren wrote:
> It's generous that you are providing "free" software for us, unfortunately SAFE provided free software for ByBit and that kind of free cost ByBit 1.5 BUSD, and yes SSH is used to protect way more in assets than ByBit has / had.

This, actually, is one large part of the problem at hand.

Too many people just take what too few people produce, for free, and build
Most Important And Very Secure Things on it, without ever helping with
code review, audits, etc.

(I'm not an OpenSSH developer, but work other parts of the "open source
security software other people rely on, and never talk to the developers
except to complain" ecosystem)

gert
-- 
"If was one thing all people took for granted, was conviction that if you 
 feed honest figures into a computer, honest figures come out. Never doubted 
 it myself till I met a computer with a sense of humor."
                             Robert A. Heinlein, The Moon is a Harsh Mistress

Gert Doering - Munich, Germany                             gert at greenie.muc.de
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 630 bytes
Desc: not available
URL: <http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20250820/ba8fd719/attachment.asc>


More information about the openssh-unix-dev mailing list