ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Enterprise open source Toolkit

Fixing the bug fixers

Leader ZDNet.co.uk

Published: 28 Mar 2007 18:13 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment
Fixing the bug fixers

The open-source community is fond of touting the advantages that it believes its software-development approach has over proprietary methods.

Proprietary players are equally keen to point out that open communities of unpaid developers have a major flaw: bug-hunting is hard work and dull. Creating a celebrated feature in an open-source operating system or application is loaded with potential for community kudos but, according to the proprietary camp, the pain-staking drudgery of bug-hunting and fixing offers little in the way of reward for the unpaid open-source enthusiast.

Open-source bug-tracking tools are widely available, but the tools required to automate the process are expensive and in the hands of proprietary companies. The issue becomes more acute as open-source applications are knitted into the business mainstream, which will often demand more substance behind the "intrinsically cleaner" assurances from the open-source community.

Perceiving that an increasing amount of the nation's critical national infrastructure is based on open source, the US Department of Homeland Security announced in January 2006 that it would donate $1.24m in funding to researchers from Stanford University and two software security firms to hunt for security bugs in community-developed software. This week it was announced that the project has found and resolved over 6,000 bugs, with 700 developers signed up to the scheme and some 35 million lines of code scanned each day.

Now the effort is growing in scope, with 150 open-source projects on the list. But however many bugs are caught, there is one big flaw in the concept: a large chunk of the funding is going directly to two proprietary companies — Coverity and Symantec — which own the closed-source bug-hunting tools. While access to the skills of these companies should be welcomed, outsourcing open-source bug hunting to proprietary players slaps of short-term thinking. In the long-term, the $400,000 paid to Coverity and Symantec could be better spent funding the development of open-source bug analytic tools, and paying individual open-source bug fixers for their efforts.

A body which believes that robust open-source software will ultimately benefit everyone should also see the benefit in helping the open-source community to help itself. Give a developer a list of bugs to fix and he'll fix them for a month; give him the means to find those bugs himself and he'll fix them for life.

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
3 out of 3 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:








Related Jobs

CRM Technical Project Manager

The CRM Practice goal is to form long-term, benefit-driven relationships with our clients. Practical, experience-based evidence to justify PMI Senior ...

Infrastructure Architect

This is a great opportunity to work for one of the markets top financial players, if this is of interest please apply now. In this role you will be ...

Software QA / Quality Assurance Contract Opportunity

You will benefit from working with a leading consultancy in Software Safety and the security of a long-term contract. Software QA / Software Quality ...

Featured Talkback

Its the applications and device drivers that run on windows that cement its dominance. How many people would fork out hundreds of pounds for Vista if Linux ran all the software and kit they wanted to use.

By: pround

Read full story:
Windows' dominance stifles demand for Linux

Discussions

keithmv keithmv

Password Deadlock

Saturday 26 July 2008, 12:02 PM

2 comments