> no way to demonstrate (or even provide evidence of) the absence of any vulnerabilities
I'd say that's hard for open source software to do as well.
I'd say that's hard for open source software to do as well.
EDIT: WTF people? Why is every response to this comment being downvoted into oblivion? The sibling comment to this one (https://news.ycombinator.com/item?id=13395657) was killed in a matter of minutes despite being (IMHO) a perfectly reasonable and constructive response.
(That comment is incorrect but I agree with you that it's constructive).
Introducing backdoors into open source source is also more difficult.