Hacker News new | ask | show | jobs
by schoen 4364 days ago
I think this is something of a continuum from actively hostile to external audit (proprietary EULAs and legal threats; binary code obfuscation) to actively welcoming of it (an open source project like Tor that will give advice to researchers who are studying or reviewing it, or other projects that try to encourage audits in other ways).

I agree that it's much more feasible to read binaries than we tend to think, and that they're intelligible artifacts that many people do make a habit of studying.

1 comments

Yes there is a continuum and there are great Tor like projects in that sense. Where you end up on that continuum mostly depends on the reviewing process.