Slashdot Mirror


IBM Permits China To Review Source Code (wsj.com)

An anonymous reader writes: IBM has permitted the Chinese Ministry of Industry and Information Technology to review its proprietary source code in a 'controlled' environment, said IBM Senior Vice President Steve Mills yesterday. The company didn't make clear which of its products would be available for review. According to a (paywalled) WSJ report: "IBM has been willing to strike closer partnerships with China’s government than many of its fellow U.S. tech companies, people familiar with the company’s strategy said. Still, it isn’t clear to what extent IBM’s move might be a symbolic gesture. The people briefed on the practice said Chinese officials can look at the code only during visits and can’t remove it for a thorough review. In a short amount of time, it would be extremely difficult to comb through all the code for a product for potential “backdoors” that would allow spying on users."

64 comments

  1. China's Source Code by Archangel+Michael · · Score: 4, Insightful

    I wonder if any American company will get to see any of China's source code.

    --
    Agent K: A *person* is smart. People are dumb, stupid, panicky animals, and you know it.
    1. Re:China's Source Code by Archangel+Michael · · Score: 3, Insightful

      Oh wait, that is Racist of me.

      We can't do that because it might offend China.

      --
      Agent K: A *person* is smart. People are dumb, stupid, panicky animals, and you know it.
    2. Re:China's Source Code by Tsolias · · Score: 3, Funny

      If there is a rule that a chinese company has to have its code reviewed by the U.S. Ministry of Something and that company wants to enter the market of the U.S. (not America, America is a continent) then that chinese company will have to obey the rules.
      That's what IBM is doing, they are entering a new sandbox, with different laws and different corruption that the U.S..

      Bottom line is, noone forces IBM to comply with chinese laws and enter that market and vice versa. They are willing to do it.

    3. Re:China's Source Code by Anonymous Coward · · Score: 0

      It sounds like you advocate revealing things, which is extremely similar to rape. Given that your microaggression will most certainly trigger China, expect to hear from her lawyers shortly.

      - Anita

    4. Re:China's Source Code by Anonymous Coward · · Score: 0

      Why would america need to see inferior china source code? america fuck yeah! USA USA USA

    5. Re:China's Source Code by Anonymous Coward · · Score: 0

      I wonder if any American company will get to see any of China's source code.

      China's source code? Jesus.

      Anyway, here ya go: Huawei offers full access to source code in response to spying allegations

    6. Re:China's Source Code by Anonymous Coward · · Score: 0

      I wonder if any American company will get to see any of China's source code.

      [ bitch slap ] How dare you offend your imperial economic masters by asking such a question. You will be sent to a re-education camp before execution.

    7. Re:China's Source Code by sociocapitalist · · Score: 1

      I wonder if any American company will get to see any of China's source code.

      Has happened:
      "“Huawei provided our source code of our products to Cisco for review"
      http://blogs.cisco.com/news/hu...

      Of course it's anyone's guess if the code shown was 'the right code' but the old bait and switch could work for IBM in this case as well.

      --
      blindly antisocialist = antisocial
    8. Re:China's Source Code by Anonymous Coward · · Score: 0

      Are the builds reproducible? If not then the review is pointless.

    9. Re:China's Source Code by Anonymous Coward · · Score: 0

      Re-education camp too good for him. Maybe North Korea do China favor and execute him with artillery gun.

    10. Re: China's Source Code by Anonymous Coward · · Score: 0

      your gchq friends can look at huawei code.

    11. Re:China's Source Code by Anonymous Coward · · Score: 0

      American is not a race, you can't be racist toward a jewish melting pot of various ethnicity. On the other hand, China is a monolithic block of Asian peoples and therefore are susceptible to racist attack.

      Call me a troll, I am only half serious. But this is the progressivism reasoning to determine what is offensive and what is not. Sad world we live in.

    12. Re:China's Source Code by Archangel+Michael · · Score: 2

      China isn't monolithic as the west assumes. There are racist Chinese who are racist against ethnic minority Chinese. In the same way that Italians aren't the same as Irish or German.

      --
      Agent K: A *person* is smart. People are dumb, stupid, panicky animals, and you know it.
    13. Re:China's Source Code by Anonymous Coward · · Score: 0

      Stop oppressing me with facts you misogynist racist shitlord.

    14. Re: China's Source Code by slick7 · · Score: 1

      We got to see Nazi Germany's data, so why not?

      --
      The mind conceives, the body achieves, the spirit manifests.
    15. Re:China's Source Code by ajdlinux · · Score: 1

      This does happen in the Western world - e.g. Huawei's evaluation centre in the UK. https://www.gov.uk/government/...

  2. me code you long time by turkeydance · · Score: 1, Insightful

    round-eye.

    1. Re:me code you long time by Anonymous Coward · · Score: 0

      "You no come here! Illegal!"

    2. Re:me code you long time by Irate+Engineer · · Score: 1

      IBM code too beaucoup.

      --

      Left MS Windows for Linux Mint and never looked back!

      Vote for Bernie in 2016!

  3. Their greed will be their downfall by Anonymous Coward · · Score: 0

    Voluntary corporate espionage, anyone?

  4. A new startup by Anonymous Coward · · Score: 3, Funny

    Strangely enough, shortly after the IBM code was reviewed, a new startup in China called "RYE-BM" plans to hire 1000 new employees.

    1. Re:A new startup by Tsolias · · Score: 3, Funny

      ...and shortly after the new RYE-BM startup is created, 1000 more U.S. outsourced their activities to that company.
      Damn those Chinese.

    2. Re:A new startup by Tsolias · · Score: 1

      ...1000 more U.S. *companies* outsourced...
      There, I fixed it.

    3. Re:A new startup by Anonymous Coward · · Score: 0

      came for the bantz, was not disappointed.

  5. Can't comb? by xxxJonBoyxxx · · Score: 1

    >> Chinese officials can look at the code only during visits and can’t remove it for a thorough review...it would be extremely difficult to comb through all the code for a product for potential “backdoors” that would allow spying on users.

    Then why would the Chinese find value in these reviews? (Unless they really are spiriting code out - love those Google Glasses, Xi - or are being allowed to bring their own code analysis tools in.)

    And why isn't anyone raising "ITAR" here? I know I've bumped into that objection when working with people outside the US on far less-critical, less-popular tech.

    1. Re:Can't comb? by tomhath · · Score: 1

      Then why would the Chinese find value in these reviews?

      Per an old Chinese saying: "a journey of a thousand miles begins with a single step".

      This is a start for them getting the source code for everything without having to hack into servers.

    2. Re:Can't comb? by Anonymous Coward · · Score: 0

      And why isn't anyone raising "ITAR" here? I know I've bumped into that objection when working with people outside the US on far less-critical, less-popular tech.

      IBM passed an envelope to the right person in Washington to look the other way as they signed a blank sheet of paper to be filled in later by IBM.

    3. Re:Can't comb? by Marginal+Coward · · Score: 0

      This is a start for them getting the source code for everything without having to hack into servers.

      Why you so mean? We promise Supreme Leader Obama we no do that anymore.

    4. Re:Can't comb? by Anonymous Coward · · Score: 0

      Google glass?? why bother with tech. Among 1 billion people you could expect to find at least ONE person with a photographic memory. Even if they can't program they could still sit down and write out an exact copy of the code. Find 2-3 people and you have your error checking of the copy taken care of.

    5. Re: Can't comb? by WindBourne · · Score: 1

      Itar was brought up so IBM is no doubt fessing up that they are not showing what is really there. After all, hewaii and even IBM , slipped in backdoors during construction, not during this. Oddly, IBM is insane to think that china will give them any more market than they have.

      --
      I prefer the "u" in honour as it seems to be missing these days.
  6. Next week by Anonymous Coward · · Score: 0

    Headline next week:
    China Business Machines releases Fational V1.0 for all your Development and QA needs.

  7. I know where to start by CockMonster · · Score: 1

    The source code of Lotus Notes should be a good read

    1. Re:I know where to start by Anonymous Coward · · Score: 0

      I wouldn't wish that on anyone.

    2. Re:I know where to start by Anonymous Coward · · Score: 0

      Trust me, No, it's not,

  8. China probably already has the IBM source by Anonymous Coward · · Score: 0

    But maybe the Chinese agencies looking to purchase enterprise software can't talk to the Chinese hackers who have the source code, they wouldn't even know where to find them. Don't you hate when that happens in a big organization?

  9. In other news... by Anonymous Coward · · Score: 1

    Chinese ministry of computing announces the formation of Chinese Business Machine incorporated...

    1. Re:In other news... by Tsolias · · Score: 2

      They don't even care about IBM.
      They could've bought IBM in one night.
      Foxconn alone is 3 times the IBM in simple numbers and makes everything.
      Huawei another company that makes the rest of what Foxconn does not make.
      IBM is already sold many parts to the chinese, Lenovo being one of them, and the rest are sold here and there.
      It's just the rule. They are so important, as a market, that they can even make IBM to obey every rule they want.

    2. Re: In other news... by Anonymous Coward · · Score: 0

      ibm stopped to be relevant when they excremented on their best engineers.

  10. IBM already has China's Source Code by tomhath · · Score: 2

    How much of IBM's code development has already been outsourced to China? I don't think they employ very many programmers in the US anymore.

    1. Re:IBM already has China's Source Code by Anonymous Coward · · Score: 0

      That would explain why IBM code is so mediocre, makes sense now.
      And here I was blaming Indian's with work visas.

  11. in a short period of time.... by Anonymous Coward · · Score: 0

    In a short amount of time, it would be extremely difficult to comb through all the code for a product for potential “backdoors” that would allow spying on users."

    ... but not extremely difficult to make some optical or electronic copy of that code, a thing which can be done right in front of someone without their detecting a thing, if you are clever.

    Not that China probably needs to do that anyway; they have well infiltrated most US bio and tech firms. And not that the US has ANY right to complain about Chinese industrial espionage, given what we did to the entire world's internet per Snowden's disclosures.

    Fun times!

  12. We don't have ministries. by Anonymous Coward · · Score: 0

    Anyways, I wonder what else about your post is suspect.

  13. Sites that should be banned due to paywall by hackwrench · · Score: 1

    I would have flagged the submission "notthebest", but I can't comb /. 24/7.
    WSJ and the NYT makes it hard to see full stories and should be banned.

    Also, we should see more from sites like the Guardian and the Atlantic, the latter of which still has Vannevar Bush's "As We May Think" available.

    It appears that most all of the articles about this is linking to the WSJ article, but at least they are not the WSJ site. Here's a Reuters post.

  14. IBM is China's bitch by Anonymous Coward · · Score: 0

    at home and abroad

  15. It's a TRAP! by Anonymous Coward · · Score: 0

    They'll be stuck with a knockoff Lotus Notes! ...those poor bastards...

    1. Re:It's a TRAP! by KGIII · · Score: 1

      Nah, they've already got Microsoft Office.

      --
      "So long and thanks for all the fish."
  16. Real Reason by Anonymous Coward · · Score: 0

    Probably hoping they would help debug it it for free...

  17. Me chinese, me make joke, by JoeyRox · · Score: 1

    me steal source code when you're a dope

  18. asymmetrical economical warfare by Anonymous Coward · · Score: 0

    China owns a large portion of IBM through stocks, more than 1/3rd last I checked. Also, you have to hand over the keys to the kingdom to China to bring business over there. The whole situation is asymmetrical considering the U.S. doesn't require the same of foreign companies doing business here.

  19. Compiled? by mhocker · · Score: 2

    How do they prove that this source code is actually what was compiled?

    1. Re:Compiled? by acoustix · · Score: 1

      This was my first thought as well. They could be showing them watered-down code for all they know.

      --
      "A plan fiendishly clever in its intricacies"- Homer Simpson
  20. New reality of global business by ErichTheRed · · Score: 3, Informative

    From a business perspective, this sounds like China wants some assurance that IBM's mainframe software, DB2 and other stuff doesn't have any detectable backdoor code in it. The same thing happened with Microsoft a while back, and other governments including ours audit source code for the same reason.

    I think the difference between the US and China in this case is how closely Chinese companies are tied to the government. I doubt there's too much in the way of trade-secret code that a foreign government couldn't reverse engineer given enough time and resources. But, it's much more likely that any information gained will make its way back to state-funded/supported companies in the Chinese environment. IBM isn't stupid, but they probably are greedy, and didn't want to lose access to the Chinese market.

    My opinion is that China seems to have the right ingredients in place to be the dominant global player in this century. They have a mix of authoritarian control and an insane focus on economic growth, and are willing to do whatever it takes, popular or not, to achieve their goals. Look at their massive infrastructure build-out during the financial crisis, or their direct intervention in the stock market to fix volatility. We (the US and Europe) aren't there yet, but we'll have to get there at some point.

    1. Re:New reality of global business by SvnLyrBrto · · Score: 2

      > IBM isn't stupid, but they probably are greedy, and
      > didn't want to lose access to the Chinese market.

      IBM is actually being pretty stupid here. It's just that everyone else is being stupid in a similar manner. Handing your source code, or any other designs or technology, over to the Chinese government* is, as you say, the same as handing it over to their domestic businesses... your competitors, current and future.

      * (Arguably to ANY government, but especially China's.)

      But it's a combination of short-term greed, plus a "prisoners' dilemma" situation. If *everyone* were to stand together, refuse to hand over their technology, and tell China to knock off the corruption and IP theft or get stuffed; then *everyone* would be much better off in the long run. But there's a great deal of short-term profit to be made if you let China push you around. And once one company takes their thirty pieces of silver, it's hard for everyone else not to go along too.

      The problem is that hardly anyone looks at what will happen past the next quarter anymore. And the few who do plan to use their golden parachutes and be long gone from the company before the loss of all of their IP comes back to bite it in the ass in the long term.

      --
      Imagine all the people...
  21. Having used several IBM software packages by Anonymous Coward · · Score: 1

    I imagine the source code is written in children's breakfast cereal Alpha-Bits.

    1. Re: Having used several IBM software packages by Anonymous Coward · · Score: 0

      bingo. this will help throw back china into the 1950s.

  22. some real facts by luther349 · · Score: 1

    china has copyrights most think they do not. you register them with the government and if anyone was to clone it they would get into deep shit. what happens is most company's don't bother to register with the china government and you get clones.

  23. One word... by sudden.zero · · Score: 1

    ...STUPID!

  24. What products? by dwywit · · Score: 1

    Operating systems? DB2? Compilers? Other applications?

    The source code for proprietary operating systems isn't much good without the hardware it's designed to run on, unless some clever programmers can port the functionality to other hardware.

    --
    They sentenced me to twenty years of boredom
    1. Re:What products? by Anonymous Coward · · Score: 0

      The source code for proprietary operating systems isn't much good without the hardware it's designed to run on, unless some clever programmers can port the functionality to other hardware.

      Open Power

  25. Remember remember, the 6th of november... by Anonymous Coward · · Score: 0

    Or with other words: IDIOTS.
    I, personally have seen a guy able to memorize the whole program just be reading it, and then a few days later to say: You have done amazing job..... :)
    I wonder, what could go wrong!!!!

  26. Normal Business Practice by Anonymous Coward · · Score: 0

    International Business Machines Corp said on Friday it allows certain countries to review, under strict control, portions of the U.S. technology company's product source code to detect any security flaws in its software.

    I work at IBM. Happened recently with the product I work on with a country other than China. More details I will not disclose even as AC. This is a normal business practice - not sure why it made news.

  27. who da fuq gonna understand IBM's code!?! by Anonymous Coward · · Score: 0

    Who on the planet could go in and audit millions of lines of assembler for BDAM, VSAM, and so on? Or CICS? Or IMS? People who know that stuff are few and far between. China gonna import out of work American mainframe assembler programmers who gonna read that mess and audit it? What they gonna find in it? This is so nutty it makes me want to ... !!!

  28. Give me access to OS/2 Source code by martiniturbide · · Score: 1

    ....just that...CPI, PM, SOM, WPS... give me that !!! :)