Monday, September 23, 2002

Ken Thompson gave a speech a long, long time ago describing an invisible trapdoor in /bin/login, accompanied by a matching invisible trapdoor in the C compiler. He mentioned that he got the idea from an Air Force document. The document has resurfaced, and the authors have written a followup. Excellent, if disturbing, reading for computer security people.

