zlacker

[parent] [thread] 2 comments
1. patrak+(OP)[view] [source] 2023-12-30 23:14:14
I am scared of the situation where the paperwork is done and the money is spent to do it, but it all stays on paper without any actual security improvements. Using your example: the internal auditor would write something like: "It was verified that the open source libraries that we use are of the latest compatible versions and do not have any crashes recorded in our system" without actually checking anything.

In other words, an array of mini-dieselgates.

replies(1): >>Sayrus+Hl
2. Sayrus+Hl[view] [source] 2023-12-31 03:49:43
>>patrak+(OP)
Which sounds like an improvement over a total lack of regulations where these dieselgates would be legal.
replies(1): >>ffgjgf+iA
◧◩
3. ffgjgf+iA[view] [source] [discussion] 2023-12-31 07:44:30
>>Sayrus+Hl
Hardly. It might give people a totally unjustifiable sense of security
[go to top]