By gravax on Oct 15, 2009
The first session I listened to today was about security coding best practices. It was interesting to learn that Oracle finds 87% of their security bugs internally, 10% through customers finding them, and 3% from external non-customer sources...
I can't help but wonder how many more, and how much faster, they would find, were they to open source the software.
Our history at Sun has shown us that open sourcing our OpenSolaris operating system definitely increased the code quality by helping us find, and correct bugs (including security ones) much faster.