Awoogah – brown alert: OpenSSL preps 'high severity' security fixes

Captain DaFt

Re: Oops!

"Many eyes, all rubbish at spotting security vulnerabilities."

Actually, as shown here, it works quite well, when someone does look.

Probably one of the happier fallouts of the whole NSA/Snowden affair, instead of just passively assuming that someone's looking, more are actually getting into the code looking.

(Now, what do you say about closed source software, where you can't look, and there's TLA pressure to put backdoors in?)

