• DocumentCode
    1279553
  • Title

    Trust and vulnerability in open source software

  • Author

    Hissam, S.A. ; Plakosh, D. ; Weinstock, C.

  • Author_Institution
    Software Eng. Inst., Carnegie Mellon Univ., Pittsburgh, PA, USA
  • Volume
    149
  • Issue
    1
  • fYear
    2002
  • fDate
    2/1/2002 12:00:00 AM
  • Firstpage
    47
  • Lastpage
    51
  • Abstract
    Software plays an ever increasing role in the critical infrastructures that run our cities, manage our economies, and defend our nations. In 1999, the Presidents Information Technology Advisory Committee (PITAC) reported to the United States President the need for software components that are reliable, tested, modelled and secure supporting the development of predictably reliable and secure systems that underscore our critical infrastructures. Open source software (OSS) constitutes a viable source for software components. Some believe that OSS is more reliable and more secure than closed source software (CSS)-due to a phenomenon dubbed ´many eyeballs´-but is this truly the case? Or does OSS give the cyber criminal an edge that he would likewise not have? We explore OSS from the perspective of the cyber criminal and discuss what the community of software developers and users alike can do to increase their trust in both open source software and closed source software
  • Keywords
    public domain software; security of data; PITAC; Presidents Information Technology Advisory Committee; closed source software; community of software developers; critical infrastructures; cyber criminal; open source software; predictably reliable systems; predictably secure systems; software components; trust; users; vulnerability;
  • fLanguage
    English
  • Journal_Title
    Software, IEE Proceedings -
  • Publisher
    iet
  • ISSN
    1462-5970
  • Type

    jour

  • DOI
    10.1049/ip-sen:20020208
  • Filename
    999090