Decrypting the Secret to Strong Security
farrellj writes "Cnet has an excellent article by Whitfield Diffie, who has probably has forgotten more about crypto than 99.9% of us will ever know, explains why secrecy does not equal security. The article also addresses the whole "open source vs proprietary software" security issue. A definite *must read* for anyone concerned about security...and that should be everyone!"
The moral of the story is that code reviews are bullshit fed to QA.
The only way to be qualified to review code is to have implimented it independantly. Otherwise all ppl do is go, uh-huh, uh-huh, yeah that looks right...