Theo De Raadt Says FreeBSD Is Just Catching Up On Security
An anonymous reader writes "The OpenBSD project has no reason to follow the steps taken by FreeBSD with regard to hardware-based cryptography because it has already been doing this for a decade, according to Theo de Raadt. 'FreeBSD has caught up to what OpenBSD has been doing for over 10 years,' the OpenBSD founder told iTWire. 'I see nothing new in their changes. Basically, it is 10 years of FreeBSD stupidity. They don't know a thing about security. They even ignore relevant research in all fields, not just from us, but from everyone.'"
And how great is OpenBSD's security in practice? What does it have or do that's better that would save a user from a web browser drive-by exploit? Or from a user opening/running an email attachment with an exploit? Compared to Linux with apparmor or SE Linux? Or FreeBSD's jail? Or even Windows 7?
Fact is OpenBSD is overrated as an OS and as a secure OS: http://allthatiswrong.wordpress.com/2010/01/20/the-insecurity-of-openbsd/
They being able to claim they are "Secure by Default" because they don't have much running/enabled by default is as silly as claiming MSDOS being secure by default because it doesn't have TCP/IP by default.