<?xml version="1.0" encoding="utf-8" ?><rss version="2.0" xml:base="https://www.webmaster-forums.net/crss/node/1035808" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title></title>
    <link>https://www.webmaster-forums.net/crss/node/1035808</link>
    <description></description>
    <language>en</language>
          <item>
    <title></title>
    <link>https://www.webmaster-forums.net/webmasters-corner/open-source-security#comment-1206801</link>
    <description> &lt;p&gt;There are a lot of sites around that do list security bugs/issues with opensource programs (after the contact the owner/developer), do a search for xxxx bugs (xxxx being the program name) or xxxx security&lt;/p&gt;
 </description>
     <pubDate>Sun, 03 Sep 2006 10:23:48 +0000</pubDate>
 <dc:creator>Busy</dc:creator>
 <guid isPermaLink="false">comment 1206801 at https://www.webmaster-forums.net</guid>
  </item>
  <item>
    <title></title>
    <link>https://www.webmaster-forums.net/webmasters-corner/open-source-security#comment-1206791</link>
    <description> &lt;p&gt;Very helpful responses, thankyou. The general consensus seems to be that the individual software package is more important than whether it&#039;s free. So the next question is how does one evaluate a program. Are there any sites that monitor or evaluate the relative security of different software?&lt;/p&gt;
&lt;p&gt;Blue&lt;/p&gt;
 </description>
     <pubDate>Sat, 02 Sep 2006 22:33:13 +0000</pubDate>
 <dc:creator>Blue</dc:creator>
 <guid isPermaLink="false">comment 1206791 at https://www.webmaster-forums.net</guid>
  </item>
  <item>
    <title></title>
    <link>https://www.webmaster-forums.net/webmasters-corner/open-source-security#comment-1206767</link>
    <description> &lt;p&gt;True -  I did correct it later in the post though.&lt;/p&gt;
 </description>
     <pubDate>Sat, 02 Sep 2006 11:23:38 +0000</pubDate>
 <dc:creator>Shirthead</dc:creator>
 <guid isPermaLink="false">comment 1206767 at https://www.webmaster-forums.net</guid>
  </item>
  <item>
    <title></title>
    <link>https://www.webmaster-forums.net/webmasters-corner/open-source-security#comment-1206766</link>
    <description> &lt;blockquote class=&quot;bb-quote-body&quot;&gt;&lt;p&gt;&lt;strong&gt;Shirthead wrote:&lt;/strong&gt; paid software than opensource.&lt;/p&gt;&lt;/blockquote&gt;
&lt;p&gt;This is an invalid distinction, please refer to my first post in this thread.  &lt;img src=&quot;https://www.webmaster-forums.net/misc/smileys/smile.png&quot; title=&quot;Smiling&quot; alt=&quot;Smiling&quot; class=&quot;smiley-content&quot; /&gt;&lt;/p&gt;
 </description>
     <pubDate>Sat, 02 Sep 2006 11:17:42 +0000</pubDate>
 <dc:creator>Abhishek Reddy</dc:creator>
 <guid isPermaLink="false">comment 1206766 at https://www.webmaster-forums.net</guid>
  </item>
  <item>
    <title></title>
    <link>https://www.webmaster-forums.net/webmasters-corner/open-source-security#comment-1206762</link>
    <description> &lt;p&gt;In my personal experience I&#039;ve had more security issues with paid software than opensource.  How representative that is I don&#039;t know, but I certainly would not be put off something because it is open source and because that could mean more security issues - that logic is just flawed (and usually used by people getting commission off paid solutions!).&lt;/p&gt;
&lt;p&gt;However a piece of software is produced I would look at it on it&#039;s own merits before using it.  Whether it was open or closed source would not factor in to the question about security other than so far as as if a hole is discovered in an OS solution you can always close it yourself.&lt;/p&gt;
 </description>
     <pubDate>Sat, 02 Sep 2006 10:52:31 +0000</pubDate>
 <dc:creator>Shirthead</dc:creator>
 <guid isPermaLink="false">comment 1206762 at https://www.webmaster-forums.net</guid>
  </item>
  <item>
    <title></title>
    <link>https://www.webmaster-forums.net/webmasters-corner/open-source-security#comment-1206749</link>
    <description> &lt;blockquote class=&quot;bb-quote-body&quot;&gt;&lt;p&gt;&lt;strong&gt;photoshop250 wrote:&lt;/strong&gt; I think that non free software is less secure......look at windows. I think this is because the companies that create such programs are more worried about the bottom line and if they have to take a few short cuts then so be it. Free and open source software on the other hand is created by people for the fun and passion of doing it and they will try their best to make it secure within their abilities&lt;/p&gt;&lt;/blockquote&gt;
&lt;p&gt;I partially agree with that.  I would restate it as: &lt;em&gt;when free software is more secure, it is often because of ...&lt;/em&gt;, rather than &lt;em&gt;free software is always more secure because of ...&lt;/em&gt;.&lt;/p&gt;
&lt;p&gt;Solaris/SunOS is possibly a good example of non-free software being more secure (than some variants of GNU, out of the box).&lt;/p&gt;
&lt;p&gt;It&#039;s difficult to generalise.  &lt;img src=&quot;https://www.webmaster-forums.net/misc/smileys/smile.png&quot; title=&quot;Smiling&quot; alt=&quot;Smiling&quot; class=&quot;smiley-content&quot; /&gt;&lt;/p&gt;
 </description>
     <pubDate>Sat, 02 Sep 2006 06:38:57 +0000</pubDate>
 <dc:creator>Abhishek Reddy</dc:creator>
 <guid isPermaLink="false">comment 1206749 at https://www.webmaster-forums.net</guid>
  </item>
  <item>
    <title></title>
    <link>https://www.webmaster-forums.net/webmasters-corner/open-source-security#comment-1206732</link>
    <description> &lt;p&gt;I think that non free software is less secure......look at windows. I think this is because the companies that create such programs are more worried about the bottom line and if they have to take a few short cuts then so be it. Free and open source software on the other hand is created by people for the fun and passion of doing it and they will try their best to make it secure within their abilities&lt;/p&gt;
 </description>
     <pubDate>Sat, 02 Sep 2006 04:46:10 +0000</pubDate>
 <dc:creator>photoshop250</dc:creator>
 <guid isPermaLink="false">comment 1206732 at https://www.webmaster-forums.net</guid>
  </item>
  <item>
    <title></title>
    <link>https://www.webmaster-forums.net/webmasters-corner/open-source-security#comment-1206726</link>
    <description> &lt;p&gt;Good thing about OS software is that updates and security patches are more frequently released, thus newer holes and bugs get fixed quickly until its rock solid. The success of OS software are the team and support behind it... So Its also surmise to say that OS software can sometimes be more Secure...&lt;/p&gt;
 </description>
     <pubDate>Sat, 02 Sep 2006 03:50:34 +0000</pubDate>
 <dc:creator>demonhale</dc:creator>
 <guid isPermaLink="false">comment 1206726 at https://www.webmaster-forums.net</guid>
  </item>
  <item>
    <title></title>
    <link>https://www.webmaster-forums.net/webmasters-corner/open-source-security#comment-1206721</link>
    <description> &lt;p&gt;SugarCRM &amp;amp; oscommerce.com,   PHP is only as good as the community surrounding it!&lt;/p&gt;
&lt;p&gt;A good community will have hundreds if not thousands of coders working &amp;amp; contributing to&lt;br /&gt;
the open source software for patches &amp;amp; customizations, as where off the shelf dictates when&lt;br /&gt;
&amp;amp; where security patchs come out &amp;amp; customizations are out of the question!&lt;/p&gt;
 </description>
     <pubDate>Sat, 02 Sep 2006 02:17:49 +0000</pubDate>
 <dc:creator>Todmeister</dc:creator>
 <guid isPermaLink="false">comment 1206721 at https://www.webmaster-forums.net</guid>
  </item>
  <item>
    <title></title>
    <link>https://www.webmaster-forums.net/webmasters-corner/open-source-security#comment-1206684</link>
    <description> &lt;blockquote class=&quot;bb-quote-body&quot;&gt;&lt;p&gt;&lt;strong&gt;Blue wrote:&lt;/strong&gt; which is more secure - open source or commercial.?&lt;/p&gt;&lt;/blockquote&gt;
&lt;p&gt;There is no such distinction.  Lots of free, libre and open source software is commercial, and vice versa.  You could pay for free software, or you could receive non-free software at no monetary cost.  Free software is about freedom, not price.&lt;/p&gt;
&lt;p&gt;If you&#039;re asking about the security of free vs non-free software, then consider the success of Apache, Firefox, OpenSSH, GnuPG, and BSD compared with IE, IIS, Windows, etc.  There is no reason to think that non-free software is inherently more secure.&lt;/p&gt;
&lt;p&gt;Indeed, some people think that an open development model is more conducive of secure software, because any number of people can review code and fix bugs.  Secure design, development and usage practices are customary in the free software world anyway, so the architecture of systems tends to be robust and easy to harden.&lt;/p&gt;
&lt;p&gt;Of course, this isn&#039;t always the case.  Some non-free software is implemented well, just as some free software is implemented poorly.  The point is that generalisations like the one your programmer made are useless.  Regardless what software you choose, you should audit them before having confidence in their security.&lt;/p&gt;
&lt;p&gt;&lt;img src=&quot;https://www.webmaster-forums.net/misc/smileys/smile.png&quot; title=&quot;Smiling&quot; alt=&quot;Smiling&quot; class=&quot;smiley-content&quot; /&gt;&lt;/p&gt;
 </description>
     <pubDate>Fri, 01 Sep 2006 14:18:19 +0000</pubDate>
 <dc:creator>Abhishek Reddy</dc:creator>
 <guid isPermaLink="false">comment 1206684 at https://www.webmaster-forums.net</guid>
  </item>
  </channel>
</rss>
