[OSM-talk] Mailing list security

Colin Smale colin.smale at xs4all.nl
Sat Nov 25 16:45:46 UTC 2017


On 2017-11-25 17:31, Tom Hughes wrote:

> On 25/11/17 15:37, Colin Smale wrote: 
> 
> On 25 November 2017 16:04:45 CET, "Éric Gillet" <gill3t.3ric+osm at gmail.com> wrote: Another point : This password is not secure, but what the worst that
> could
> happen with it ? As long as one don't reuse it on other applications
> (as
> warned during registration), the only action an attacker could do would
> be
> to unsubscribe you. Not really catastrophic ...until it is hacked and thousands of passwords are stolen. If even one of those leads to something serious, I am not sure that saying "I told you so 10 years ago when you signed up" will be enough to absolve the operators of liability.
> 
> I will open a ticket as suggested.

There's really not much point - we will upgrade as and when the packages
in Ubuntu are upgraded. We're not going to be installing from source. 

In that case I won't bother. I can't help thinking: what a sorry state
of affairs. 

When you say "we", who are you referring to exactly Tom?
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openstreetmap.org/pipermail/talk/attachments/20171125/6b5a59e0/attachment.html>


More information about the talk mailing list