4 ms·
What makes the main developer, irungentoo, qualified to write the Tox core?
by Byzantine 12y ago
What makes the main developer, irungentoo, qualified to write the Tox core?
- laikaa 12y agoHe has the time to do it.
- sitkack 12y agoWe don't want the guy with the most "free time" doing the work.
- iopq 12y agoYou're right. Make a better program. I'll be anticipating it, I really want a Skype replacement I can get behind.
- sitkack 12y agoSo do I, but Tox isn't it. They should have made the protocol, vetted the protocol and made a PoC implementation in a safe language. Cryptographers and secure protocol designers can't help out if they are noodling along banging out the implementation while designing it.
- sitkack 12y agoStarting a new, blue water distributed encryption system in a non-safe language is odd at this point. The protocol is being _noodled_ through and the code is in C. This is the coding style https://github.com/irungentoo/toxcore/commit/84c28337d248bad2319b5c001108b198dbd6bc5c https://github.com/irungentoo/toxcore/commit/84c28337d248bad... this is openssl all over again https://github.com/irungentoo/toxcore/commit/1d6c3934736c3694a7c9f694d818252e4159cde3 https://github.com/irungentoo/toxcore/commit/1d6c3934736c369...
- deleted 12y ago[deleted]
- Ridley 12y agoC is far from a non-safe language; it's the language of choice for NASA systems that lives depend on after all. I'm not sure what you're trying to point out with those links. How is this related to openssl?
- sitkack 12y agoBecause NASA has used C means this guy writes code for the shuttle? Read the code. Dig through the commit logs. This is the wrong choice on about every level. The best encryption won't save you when you have code like this. What did we not learn about OpenSSL?
- Ridley 12y agoYou're talking complete nonsense. Constructive criticism please.
- nobotty 12y agothe only thing I'm seeing from your posts is "I'm a fucking idiot who doesn't understand that C is safer than any interpreted pretend-you're-safe language"
- iopq 12y agoWhen have you heard of a JavaScript dangling pointer problem? Buffer overrun? Segfault?
- Ridley 12y agoComparing C to Javascript makes no sense, and Javascript is NOT a safe language. Those issues you mentioned are due to programmer incompetence. Bad programmers will make bad code no matter what language they program in. Security should not rely on a language hand-holding bad programmers.