OpenSSL
product on 1 show · 6 statements across 5 episodes · said 7 times in 5 episodes since 2018
Mentions by year, every show
tap a year for its mentions
the a16z Podcast 7
2019 6 mentions in 4 episodes 2 per episode
2018 1 mention in 1 episode
every mention on every show, scene by scene, with the transcript →
6 statements about OpenSSL, every show
Yahya: OpenSSL Heartbleed stemmed from open source's failure to capture value
“And this has been historically a big problem in open source, like, for example, in the world of which is generally open source, like for example, the Heartbleed bug in SSL is interesting because even though SSL is a critical piece of infrastructure, and is use…”
Eghbal: OpenSSL had only one paid maintainer when Heartbleed hit
“There was, like, a very critical bug that was found in OpenSSL, and the question Was, well, why did nobody find this before? And the answer was, because there are, like, two, there's one paid person, and there's, like, 10 volunteers that are working on this.”
Eghbal: Open-source popularity and project health are separate metrics
“So you can have projects like OpenSSL might be a project that was really, really popular. Lots of people use it, but not actually healthy. Until we separate those things out, then you have the problem of people saying, well, if it's, you know, if no one's main…”
Vitalik: OpenSSL underfunding directly caused the Heartbleed bug
“Bottom-level protocols are something that's been, like, so horribly underfunded. You know, like, in the mainstream world, if you look at even something like the hard bleed bug, which happened in large part because OpenSSL security research was just, like, so h…”
Hindawi: Tanium queries enterprise OpenSSL versions across all endpoints in 15 seconds
“Our customers literally could ask an English language question. Tell me all the machines and versions of open SSL for every machine that's got open SSL across the environment and get an answer back in 15 seconds.”
Ali Yahya: OpenSSL underfunding highlights open-source value capture failure
“Even though SSL is a critical piece of infrastructure and is used by sort of every single person in the world who connects to the internet only a couple of people were really in charge of maintaining the implementation of OpenSSL. And so, not enough of the val…”