I guess you can say there has never been a vulnerability discovered and published, but it must be more difficult to find bugs when you can't read the code!
I do agree with your point about comparisons being a bit of a waste of time. I wonder if the BASH vulnerability was discovered because someone thought to have a rummage through some old code after heartbleed was discovered... hopefully all of this will result in more code audits by professionals and hobbyists alike, there are bound to be more bugs to find. Gotta catch 'em all

Leave a comment: