• poVoq@lemmy.ml
    link
    fedilink
    arrow-up
    1
    arrow-down
    2
    ·
    edit-2
    3 years ago

    I think we are in 99% agreement, but I also think the OpenSSL or Log4J people brought this upon themselves to some extend as they should have dropped supporting it long ago under such circumstances. Maybe the projects would have died, but surely one way or another there would be a better funded (but likely company consortium owned) open-source equivalent now.

    Exploitation was really to a large extend self-exploitation there.