all InfoSec news
How do we know that the published source code and the code running in the live application is same ?
Web: https://www.reddit.com/r/privacy/comments/rztjbi/how_do_we_know_that_the_published_source_code_and/
Jan. 9, 2022, 3:04 p.m. | /u/Ok_Comfortable2448
Privacy & Freedom in the Information Age reddit.com
The title might be confusing , but what I meant to ask is , If a provider (cloud / password manager / or any other) publishes the source code of their application , claiming to be fully FOSS , how do we know that its the same code that's running in their web apps / applications ? They could sneak in malicious code in the actual application if they wanted to right ?
Dunno if this is a dumb question …
!-->More from reddit.com / Privacy & Freedom in the Information Age
Latest InfoSec / Cyber Security Jobs
Head of Information Security
@ Canny | Remote
Information Technology Specialist (INFOSEC)
@ U.S. Securities & Exchange Commission | Washington, D.C.
Information Security Manager - $90K-$180K - MANAG002176
@ Sound Transit | Seattle, WA
Sr. Software Security Architect
@ SAS | Remote
Senior Incident Responder
@ CipherTechs, Inc. | Remote
Data Security DevOps Engineer Senior/Intermediate
@ University of Michigan - ITS | Ann Arbor, MI