

101·
2 years agoOpen source code isn’t immune to exploits. It’s impossible to exhaustively test every interaction in massive code bases for unintended behavior.
The upside of open source is that a well intentioned person might find a vulnerability and get it fixed. Up until then it might be someone’s 0 day.
Open source code isn’t immune to backdoors. It’s impossible to exhaustively test every interaction in massive code bases for unintended behavior.
The upside of open source is that a well intentioned person might find a backdoor and get it fixed. Up until then it might be someone’s backdoor.
Better?