1 post categorized "Security"

Wednesday, 24 May 2006

Risk of a monoculture

In agriculture, a monoculture is the practice of relying on a very small number of genetic variants, or cultivars of a food crop for commercial agriculture. In essence, what it means is that by using a very small gene pool with little variance, an agricultural blight could swing by and wipe out the entire crop as the similar genetic makeup of these crops will render all of them susceptible to the blight. This, as you can clearly see, would be catastrophic to our food supply.

A similar situation does exist in ICT, as famed security expert Dan Geer has warned.Dangeer By relying on a monoculture, we're making ourselves susceptible to widespread virus attacks. Dan's warnings however have taken a new twist with the Backdoor.Ginwui virus. The twist is that the virus is carried not by an executable program, but rather by the Microsoft Word document format, and the virus exploits a vulnerability within Microsoft Word itself. What is interesting is that the same virus has no effect and is benign on other programs which read Microsoft Word, like StarOffice and OpenOffice.Org.

This is strong testimony to the fact that genetic diversity, be it in agriculture or computer science, shields us from events which could catastrophically wipe out life. With a standard like ODF being supported by both closed source programs (StarOffice and IBM's Workplace Managed Client) and open source programs (OpenOffice.org and KOffice), the genetic diversity would mean that a virus carried within the document format will not affect all users of the format but only specific users of a program.

With more office suites using ODF, there will be greater  genetic diversity. With this,  our risk to genetic viruses, greatly decreases in a multicultural world.

Welcome to
Open Malaysia blog!

  • Bloggers @ Open Malaysia
    We are a group of individual bloggers working to build openness in Malaysia's ICT culture. Most of us have day jobs and a couple of us are students. Those with a job work for companies ranging from large international enterprises to self-run Malaysian start-ups.
    Email us at this address:
    open -AT- openmalaysiablog -DOT- com

Disclaimer...

  • We declare our independence of opinions from our employers, institutions, associations and clients, past and present. Thoughts and expressions in the Open Malaysia blog are rightly each blogger's own and each of us stand by what we individually write. Views by readers who post comments and others whose writings we link to in this blog are theirs.

December 2008

Sun Mon Tue Wed Thu Fri Sat
  1 2 3 4 5 6
7 8 9 10 11 12 13
14 15 16 17 18 19 20
21 22 23 24 25 26 27
28 29 30 31      

Subscribe to this site
- FeedBurner Feed

Subscribe to this site
- email alert options

Your email address:


Powered by FeedBlitz

Enter your email address:

Delivered by FeedBurner

Blog powered by TypePad