|
|
|
|
|
by amelius
553 days ago
|
|
If the tech is open-sourced, then an attacker can keep trying in private until they find an exploit, and then use it. Also, you only know if your security measures work if you test them. I'd feel much safer if there was regular pen-testing by security researchers. We're talking about potential threats from nation state actors here. |
|
So you'd rather assume that if something is obscure, it is secure?