"Linux is a ball of millions or tens of millions of lines of code that has never been audited and never will be audited. It probably has more backdoors and security bugs than any OS, ever. Using even a hardened version, or Qubes, is almost pointless."
How true or false is this statement?
Also, for attacks against firmware (via compromising the host OS), is Qubes even remotely as secure as OpenBSD? Can something like hardened Debian even compare to either of them? With Qubes, you can have non-persistence and different VMs for different things, but it still runs on Linux, whereas with OpenBSD, you have less exploits/attack possibilities, but it is persistent, no? Is my assumption correct, and if so or not, why?
Thank you.
submitted by [comments]
SOCIAL SHARE CARD GENERATOR