The solution to malware is obscurity. Have an OS that no one wants to break into, and you won't be broken into.
The solution to malware is obscurity. Have an OS that no one wants to break into, and you won't be broken into.
In the end, the software that we depend on, must be reviewable by anyone who is concerned about it. A prerequisite for that, is that software should be as small, clean, and simple as possible, to encourage such scrutiny. IIRC, the real problem with heartbleed, is that the OpenSSL codebase was a mess, and no-one wanted to work on it.
... and you'll have an OS for which neither malware authors nor legitimate software developers want to write applications.
There's a trade-off involved. We could all use pen an paper and be invulnerable to malware, but then how would we post on HN?
Certainly Windows has its issues, but it's biggest 'flaw' when it comes to malware isn't that it's closed-source, but that it's ubiquitous and therefore a highly attractive target.