The Mathematics of Obscurity: On the Trustworthiness of Open Source

نویسندگان

  • Hermann Härtig
  • Claude-Joachim Hamann
  • Michael Roitzsch
چکیده

It is more difficult to find errors when source code is secret. More people search for errors when source code is public. These counteracting effects are pivotal to the question whether openness fosters security. Errors in software are found by people with either constructive contribution or exploitation in mind. Focusing exclusively on this discovery aspect, we present a probabilistic model, which allows us to compare the open source and closed source situations. We start out with our assumptions explained using a simple introductory model. We then extend this to what we believe to be an adequate model of a bug-hunting process conducted by multiple competing parties. The model employs an asymmetric race paradigm. One of the surprising results is that even an arbitrarily large group with good intentions cannot safely dominate the evil attackers. Instead, they are limited by a significant upper bound in their winning chances.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Comparison of Open Source Learning Management Softwares and Presenting a Native Evaluation Tool

Introduction: Nowadays all educational institutes are trying to use technology in their structure. This effort has been faced with different barriers, including cost, time, and support. Therefore, using open source softwares can partially help us in using technology. In this article, we review main features of several open source learning management softwares, while presenting a tool which incl...

متن کامل

On Fuzzy $e$-open Sets, Fuzzy $e$-continuity and Fuzzy $e$-compactness in Intuitionistic Fuzzy Topological Spaces

The purpose of this paper is to introduce and study the concepts of fuzzy $e$-open set, fuzzy $e$-continuity and fuzzy $e$-compactness in intuitionistic fuzzy topological spaces. After giving the fundamental concepts of intuitionistic fuzzy sets and intuitionistic fuzzy topological spaces, we present intuitionistic fuzzy $e$-open sets and intuitionistic fuzzy $e$-continuity and other results re...

متن کامل

On weakly e*-open and weakly e*-closed Functions

The aim of this paper is to introduce and study two new classes of functions called weakly $e^{*}$-open functions and weakly $e^{*}$-closed functions via the concept of $e^{*}$-open set defined by Ekici cite{erd1}. The notions of weakly $e^{*}$-open and weakly $e^{*}$-closed functions are weaker than the notions of weakly $beta$-open and weakly $beta$-closed functions defined by Caldas and Nava...

متن کامل

Inquisitive Analysis of the Point Source Effect on Propagation of SH Wave Through an Orthotropic Crustal Layer

The occurrence of SH wave propagation under the effect of a point source in an orthotropic substratum lying over a heterogeneous orthotropic half space is deliberated in the prospect of a devastating earthquake. The quadratic alteration is acknowledged for density and shear modulus which is hypothesized to be a function of depth. The method of Green's function and transformation technique contr...

متن کامل

Quality of Open Source Software: The QualiPSo Trustworthiness Model

Trustworthiness is one of the main issues upon which the decision whether to adopt an Open-Source Software (OSS) product is based. The work described here is part of an activity that has the goals of 1) defining an adequate notion of trustworthiness of software products and artifacts and 2) identifying a number of factors that influence it. Specifically, this paper reports about the identificat...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2010