paint-brush
How not to choose your open source librariesby@debricked
130 reads

How not to choose your open source libraries

by Debricked4mOctober 25th, 2020
Read on Terminal Reader
Read this story w/o Javascript
tldt arrow

Too Long; Didn't Read

Vulnerable software is by definition not secure, but that does not mean we judge security by the number of vulnerabilities. We highlight this by looking at two commonly used libraries, OpenSSL and GStreamer. Few vulnerabilities do not equal a more secure library, but few historical vulnerabilities don't mean fewer future vulnerabilities. The distribution of vulnerabilities seems to have been significantly affected by Heartbleed, the distribution of these were disclosed during 2014-2016, with peaks in 2015 and 2016. We can not say for sure that GStreamer is less secure because of the spike in 2017.

Companies Mentioned

Mention Thumbnail
Mention Thumbnail
featured image - How not to choose your open source libraries
Debricked HackerNoon profile picture
Debricked

Debricked

@debricked

Solving the problem of vulnerabilities & compliance when using Open Source in product development

L O A D I N G
. . . comments & more!

About Author

Debricked HackerNoon profile picture
Debricked@debricked
Solving the problem of vulnerabilities & compliance when using Open Source in product development

TOPICS

THIS ARTICLE WAS FEATURED IN...

Permanent on Arweave
Read on Terminal Reader
Read this story in a terminal
 Terminal
Read this story w/o Javascript
Read this story w/o Javascript
 Lite
Coinerblog
Startupnchill