View Single Post
pichlo's Avatar
Posts: 6,453 | Thanked: 20,983 times | Joined on Sep 2012 @ UK
#340
Originally Posted by MartinK View Post
You don't know much about security, do you ? ;-)

(hint: Most security critical algorithms and libraries are public & open source and a target of a very strict pear review. Closed source components, which can't be reviewed in a similar way, are often considered untrusted by default.)
You don't know much about business, do you? ;-)

Most businesses do not trust anything "open-sorce" by default. Most businesses prefer other businesses supplying their solutions, including security. Most businesses' security implementation is closed source.

(And when I say "most", I mean, "from all the companies I have worked for in the past 25 years, 100%". Feel free to do the substitution in all cases the word "most" was used in the above paragraph.)

So, when you say "considered untrusted", please do not forget to specify *by whom*.

Also, sorry about the small OT diversion but since you've touched upon the topic of peer review...