7 ms·
> There is absolutely no relation between the openness of a source code and its security. That's simply not true. Open source doesn't necessarily mean it's al
by generalk 16y ago
> There is absolutely no relation between the openness of a source code and its security.
That's simply not true.
Open source doesn't necessarily mean it's always secure, but at least you, or someone you trust, can analyze it and find out. Maybe even fix it. Anyone that understands the domain can verifiably prove that it's secure or insecure by inspecting its inner-workings, and in the case of things like crypto, this leads to stronger and more secure implementations.
So it might not always ensure security, but it does ensure the possibility of security. As far as I'm concerned, closed-source crypto might as well be full of backdoors and easily breakable.