3 ms·
You audit the code, then you run cargo update and you are pwned. Asking the user to not make mistakes is the c++ approach to security - it doesn’t work.
by Aeolos 2mo ago
You audit the code, then you run cargo update and you are pwned. Asking the user to not make mistakes is the c++ approach to security - it doesn’t work.
- burnt-resistor 1mo agoYou're creating a strawman. Don't run cargo update without verification, duh. > Asking the user to not make mistakes is the c++ approach to security Then demand crates.io do better by actually curating every version of every published crate.