Audit tens or hundreds of millions of lines of code for OS,
Compilers, Libraries, applications (especially interpreted
language applications such as Java and JS) to search for
trojans and vulnerabilities?
I seriously doubt it.
I only wish it were true.
It has never been true.
Who would want to spend thousands of hours doing this kind
of code review FOR FREE????
Given the rapid rate of development and changes submitted,
the auditing process would never ever catch up.

