HEADLINE: Better security processes
DESCRIPTION:
I've been quite disappointed that there wasn't really any public reaction from Ubuntu to a variety of security issues affecting the Linux Desktop in general and Ubuntu in particular.
E.g.:
https://scarybeastsecurity.blogspot.dk/2016/11/0day-exploit-...
https://scarybeastsecurity.blogspot.dk/2016/11/0day-poc-risk...
https://donncha.is/2016/12/compromising-ubuntu-desktop/
https://www.phoronix.com/scan.php?page=news_item&px=Ubuntu-E...
Seriously, right now an Ubuntu Desktop isn't a secure choice for users, especially if they have to expect targeted attacks.
Some things I'd propose:
* Dangerous automation features need to be either disabled by default or heavily audited. That includes things like tracker and apport.
* In general I wonder how much auditing happens before something enters Ubuntu. Some basic auditing that could also be automated like testing packages with asan should be a default inclusion criterion for adding packages.
* Currently there are no bug bounties at all in the Linux distribution world. I get that this is a financial challenge, but at least in severe cases where the fault clearly lies within the distribution and not within an external project I'd consider bug bounties appropriate. (Just read Donncha's blog post linked above. He could've gotten $10.000 from a shady exploit dealer and he got nothing, because he did the right thing.)
ROLE: I'm running the Fuzzing Project and I write for IT tech media about security issues.