4 ms·
Maybe, but short term, they (and Google) are working on hardening C and C++, both by improving tooling and the standard library. See for example https://queue
by Someone 5mo ago
Maybe, but short term, they (and Google) are working on hardening C and C++, both by improving tooling and the standard library.
See for example
https://queue.acm.org/detail.cfm?id=3773097 https://queue.acm.org/detail.cfm?id=3773097
https://clang.llvm.org/docs/ThreadSafetyAnalysis.html https://clang.llvm.org/docs/ThreadSafetyAnalysis.html
https://clang.llvm.org/docs/BoundsSafety.html https://clang.llvm.org/docs/BoundsSafety.html
https://www.open-std.org/jtc1/sc22/wg21/docs/papers/2024/p3471r1.html https://www.open-std.org/jtc1/sc22/wg21/docs/papers/2024/p34...
- pjmlp 5mo agoI advise you to spend some time watching this, "Fortify your app: Essential strategies to strengthen security" https://www.youtube.com/watch?v=UZeSyodAszc https://www.youtube.com/watch?v=UZeSyodAszc Where they explicit state those are bandages for working code, not the way forward. Note it is a full day event, so will might want to watch it in pieces.
- Someone 5mo agoSo, they advocate using those tools, and claim they are essential, but not for the long term. I don’t see how that makes my claim “Maybe, but short term” invalid.