this post was submitted on 30 Mar 2024
8 points (100.0% liked)

linuxmemes

20741 readers
805 users here now

I use Arch btw


Sister communities:

Community rules

  1. Follow the site-wide rules and code of conduct
  2. Be civil
  3. Post Linux-related content
  4. No recent reposts

Please report posts and comments that break these rules!

founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] prettybunnys@sh.itjust.works 0 points 5 months ago (1 children)

Crowd sourcing vulnerability analysis and detection doesn’t make open source software inherently more secure.

Closed source software has its place and it isn’t inherently evil or bad.

This event shows the good and bad of the open source software world but says NOTHING about closed source software.

[–] oce@jlai.lu 0 points 5 months ago (1 children)

Crowd sourcing vulnerability analysis and detection doesn’t make open source software inherently more secure.

It does, because many more eyes can find issues, as illustrated by this story.

Closed source isn't inherently bad, but it's worse than open source in many cases including security.

I think you're the only one here thinking publishing PoC is bad.

[–] squaresinger@feddit.de 0 points 5 months ago

But this issue wasn't found because of code analysis per se, but because of microbenchmarking.