| ▲ | 1over137 2 hours ago | |
No one is smart enough to write bug free in any language. | ||
| ▲ | zakisaad an hour ago | parent | next [-] | |
This is the reason why performant and "safe" systems languages are on the rise and being accepted into foundational areas of our operating systems (such as the kernel). When the attack defense surface is tighter (language, tooling, compiler instead of the actual code itself), the smart folks can stay at that layer, while the masses can write more code at a level of abstraction that nullifies many of these vulnerabilities by default. | ||
| ▲ | catlifeonmars an hour ago | parent | prev | next [-] | |
Clearly it’s because people never got the memo: https://www.rfc-editor.org/rfc/rfc9225.html | ||
| ▲ | SchemaLoad 2 hours ago | parent | prev | next [-] | |
That's why we designed better languages that can block the compilation if memory hasn't been handled properly. | ||
| ▲ | wat10000 an hour ago | parent | prev [-] | |
The difference is that C casually makes common everyday bugs into security vulnerabilities. | ||