Re: Integrating two solutions (related to the Calif. bill thread)

From: Arthur Keller <voting_at_kellers_dot_org>
Date: Thu Jan 22 2009 - 03:55:08 CST

At 8:03 PM -0800 1/21/09, Ronald Crane wrote:
>4. Please see the "Limitations of Many Eyes" thread here, begun by
>Brian Behlendorf on 5/19/08, about a study by David Wagner & Ping
>Lee, showing code review's unexpectedly-limited efficacy in finding
>intentionally-placed security flaws. Presumably review is even less
>efficacious in the functionally-obscure, often highly-concurrent,
>and lower-level-language environments that usually characterize

I'm wondering whether the approach in would have
made a difference in the Wagner, et al., study.

Best regards,

Arthur M. Keller, Ph.D., 3881 Corina Way, Palo Alto, CA  94303-4507
tel +1(650)424-0202, fax +1(650)424-0424
