Skype’s Encryption

In this article on Boing Boing Skype’s security reviewed Cory Doctorow states:

It’s a truism in security that a security system that is kept secret is a not secure

I have never hear such a stupid thing in all my life. But he quotes another :

As Bruce Schneier says, “Anyone can design a security system so clever that he can’t think of a way of breaking it,”

Hence the independent review that Skype has performed. The only thing I’d have done differently would have been to have two independent reviews, by people that know crypto.

And this next statement is the icing on the cake:

A much better answer would be for Skype to disclose its code

What a stupid thing to do! This would be the last thing I would do with a secure code. Then you would have a bunch of hackers publishing exploits in days.

I am a supporter of Open Source, since before Cory was a twinkle in his father eye. (known as DECUS) But this one, is just plain dumb Cory.