jbz · @jbzfn
255 followers · 1768 posts · Server mastodon.social

「 Additionally, writing parts in a memory safe language does not necessarily improve security and may even degrade security by allowing for bypasses of exploit mitigations.

Some security features are geared towards a particular language, and in an environment where different languages are mixed, those features may be bypassed by abusing the other language 」





#firefox #chrome #vulnerabilityassesment #sandboxing #infosec #rustlang

Last updated 2 years ago

jbz · @jbzfn
255 followers · 1768 posts · Server mastodon.social

「 Firefox does have some parts written in Rust, a memory safe language, but the majority of the browser is still written in memory unsafe languages, and the parts that are memory safe do not include important attack surfaces, so this isn't anything substantial, and Chromium is working on switching to memory safe languages too 」





#firefox #chrome #vulnerabilityassesment #sandboxing #infosec #rustlang

Last updated 2 years ago

Nick Espinosa · @NickAEsp
153 followers · 1855 posts · Server mastodon.social
Nick Espinosa · @NickAEsp
153 followers · 1854 posts · Server mastodon.social