The problem is less about openness itself and more about quality of auditing. Open isn't a magic bullet. As I understand, these latest CPU vulnerabilities were in the spec themselves. You could've found them by reading the manual. See what good that did us. But I posit that open projects do better with audits than closed because they are more likely to have open audits as well, and an open audit is harder to ignore o…
I think there's a huge difference between "take an existing system design, and declare it open" and "design a system in the open". This article isn't suggesting Intel make x86 open to all, for example. You get a completely different design when something is designed behind closed doors as a black-box product, versus designed in the open. Linux and Windows have drastically different designs, based on how they grew up.…
I don't - I believe there are an insufficient number subject matter experts conversant enough in processor design to provide the depth of auditing needed.
I'm not saying openness is good or bad (its usually good) just that its not a panacea here.