After the recent xz-utils backdoor, I'm going to start looking at the security cover-ups in Debian. There are still tens of thousands of messages about this on debian-private that have not yet been leaked by anybody.

After xz-utils, people have complained that the Debian suicide cluster has been done to death. Readers want to know about Debian competence, or lack thereof, in security. What does debian-private reveal about all this? If you are not one of the people who has been sucked into freeworking for DebianUbuntuGoogle then you might not feel the suicides are relevant to your personal circumstances. Nonetheless, everybody using Debian today is concerned about security, whether you are a full Debian Developer or just an end user.

Some of the security blogs have been timed to coincide with the European Parliament elections.

