LinuxQuestions.org: Interview with Brian Hatch | Linux Today

LinuxQuestions.org: Interview with Brian Hatch

Written By
Web Webster
Web Webster
Oct 31, 2003

[ Thanks to jeremy for this link.
]

LQ) Tell us a little bit about yourself. How did you end up a
security guru? Any advice for people who are interested in starting
in “the business”?

“BH) I was always a paranoid security freak, though I didn’t
know it until much later. Even when I was 6 or so I had home-made
locks on my bedroom door, Tripwire-like devices I could use to see
if someone had opened my closet, and other stuff that was very
unnecessary for someone with nothing interesting whatsoever.
Building better and more foolproof and complicated systems was
great fun for me, even if none of it was useful in the least.

“Advice? If you want to get into security, you must build an
immediate distrust of everything you hear and see. (This also works
well when listening to politicians.) When developing anything, be
it your security policy or your random email signature generator,
you need to take the stance ‘What could go wrong? What weird
situation/input/etc could cause this to fail? Have I set up enough
barriers? Have I checked the exit status of each and every command,
including ‘print/printf’?’ Never assume that something you write
for a normal user will never be run by root, for example. Never
assume something that, today, is only executable by trusted
administrators will never be accessible to an attacker. Perhaps
those admins become untrustworthy, or their account gets
compromised, or you need to allow access by less-competent
admins…”


Complete Story

Web Webster

Web Webster

Web Webster has more than 20 years of writing and editorial experience in the tech sector. He’s written and edited news, demand generation, user-focused, and thought leadership content for business software solutions, consumer tech, and Linux Today, he edits and writes for a portfolio of tech industry news and analysis websites including webopedia.com, and DatabaseJournal.com.

Linux Today Logo

LinuxToday is a trusted, contributor-driven news resource supporting all types of Linux users. Our thriving international community engages with us through social media and frequent content contributions aimed at solving problems ranging from personal computing to enterprise-level IT operations. LinuxToday serves as a home for a community that struggles to find comparable information elsewhere on the web.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.