The program secretly sends data to main6.rb.pl. The source for LogDB.jar in <program>/lib directory is not available. WATCH OUT!
The project should be fully open as to what is going on. Script should be available to download all packages from their origins and then create .jar files.
It also secretly executes jnlp from opt.sourceforge.net.</program>
If you would like to refer to this comment somewhere else in this project, copy and paste the following link:
Yuriy has solved this. Thanks Yuriy. It will be great have ant based compilation fixed so that the complete .jar can be built on any platform. Also, not all .jar files have source code included or they are too old be pulled from their original sources. There has to be quite a bit of clean up. Java Party worked out of the box from original source, but rest of the packages are still a big issue.
Thanks.
If you would like to refer to this comment somewhere else in this project, copy and paste the following link:
I am still curious though why the data was sent to main6.rb.pl and what was it?! How did that get into the impact package the first place? We have keep all the security tight around these for this to be successful. Thanks.
If you would like to refer to this comment somewhere else in this project, copy and paste the following link:
Also this is not fixed in the downloadable release, it is only fixed in the source. So everyone using this have to download and recompile to make it all work. Also, 'ant' set up is broken without Java Party download.
If you would like to refer to this comment somewhere else in this project, copy and paste the following link:
The program secretly sends data to main6.rb.pl. The source for LogDB.jar in <program>/lib directory is not available. WATCH OUT!
The project should be fully open as to what is going on. Script should be available to download all packages from their origins and then create .jar files.
It also secretly executes jnlp from opt.sourceforge.net.</program>
can someone explain this?
Yuriy has solved this. Thanks Yuriy. It will be great have ant based compilation fixed so that the complete .jar can be built on any platform. Also, not all .jar files have source code included or they are too old be pulled from their original sources. There has to be quite a bit of clean up. Java Party worked out of the box from original source, but rest of the packages are still a big issue.
Thanks.
Jonas,
I have updated the review. Thank you guys. I would like to improve and validate this thing even more going forward.
Forest
I am still curious though why the data was sent to main6.rb.pl and what was it?! How did that get into the impact package the first place? We have keep all the security tight around these for this to be successful. Thanks.
Also this is not fixed in the downloadable release, it is only fixed in the source. So everyone using this have to download and recompile to make it all work. Also, 'ant' set up is broken without Java Party download.