On Sat, Dec 14, 2013 at 11:40 PM, Maxim Kammerer <[email protected]> wrote:
>> "That was really bad,"
>> admits Kobeissi, but he assures Wired.co.uk that subsequent audits of
>> the program have affirmed its integrity.
>
> ... as did prior audits.


all non-trivial code has bugs and oversights.  audit is not a finite
thing, one and done.

code integrity a continuous and open process;
  where do i donate for Cryptocat scrutiny?


crowd sourced audits, like TrueCrypt, are wonderful collaborations.
bounties also good for signalling false assumptions.
-- 
Liberationtech is public & archives are searchable on Google. Violations of 
list guidelines will get you moderated: 
https://mailman.stanford.edu/mailman/listinfo/liberationtech. Unsubscribe, 
change to digest, or change password by emailing moderator at 
[email protected].

Reply via email to