Just thought I would mention that The Register had a rather nice write up of the fork -
http://www.theregister.co.uk/2014/04...fork_libressl/
I thought their (actually somewhat critically honest) write up of the effort to pump cash into OpenSSL had an interesting quote at the end:
Quote:
The precise amount of funding was not disclosed. This looks to be a better initiative than a scheme started by security startup Bugcrowd to get more than $100,000 in donations to financially reward infosec professionals for closing other OpenSSL bugs. At the time of writing Bugcrowd's scheme had raised a little under $8,000. Meanwhile, OpenBSD has been busy forking OpenSSL into LibreSSL and tidying it up. ®
|
http://www.theregister.co.uk/2014/04...nfrastructure/
It's nice to see a major news site echo Carpetsmoker's sentiment rather than just go with corporate line that throwing money at OpenSSL will make everything better, which a lot of prominent sites (Ars *cough cough*) are embracing to a large extent.