LisPi · @lispi314
780 followers · 17411 posts · Server mastodon.top

@tek Oh hey, it's yet more of those "writing this in a language would've prevented the whole problem" , alongside a validation one (insufficient detail to say if better type/dynamic tooling would've helped).

"Improved memory-handling" should be code for "we rewrote it in , as it should've been from the beginning".

#memorysafe #vulnerabilities #commonlisp

Last updated 1 year ago

Tweede golf · @tweedegolf
187 followers · 84 posts · Server fosstodon.org

*ANNOUNCEMENT* Internet Security Research Group (ISRG) has officially made us the new home of "ntpd-rs", the implementation of the Network Time Protocol.

We are proud to be the new long-term maintainers, and as such are looking for early adopters.

Thanks to Josh Aas and Prossimo for the their trust and support!

tweedegolf.nl/en/blog/90/memor

#opensource #memorysafe

Last updated 1 year ago

LisPi · @lispi314
456 followers · 9003 posts · Server mastodon.top

I'd like if it were more common to make software purely in languages like and instead of resorting to libraries for hot paths.

Yes, there may be some performance or optimization cost (and even then, you can go quite far, at least with Common Lisp if you're willing to), but I really feel that it'd be worthwhile to avoid just getting some completely avoidable vulnerabilities retroactively destroying any semblance of safety.

#memorysafe #managed #java #commonlisp #c #infosec #programming #safety

Last updated 1 year ago

· @nophen
86 followers · 1503 posts · Server kafeneio.social

"Stroustrup views security as a broader concept, the various facets of which can be achieved through a combination of coding style, libraries, and static analyzers. To control the inclusion of rules that guarantee the safety of working with types and resources, he proposes to use code annotations and compiler options."

The creator of the C++ language criticized an NSA report on secure programming languages ​​| linux addicts
linuxadictos.com/en/the-creato

#infosec #memorysafe

Last updated 2 years ago

· @roob
13 followers · 28 posts · Server ruby.social