Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
accelbred
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
31.
▲
by
accelbred
10mo ago
The kernel policy for CVEs is any patch that is backported, no? So this is just the first Rust patch, post being non-experimental, that was backported?
32.
▲
by
accelbred
10mo ago
As far as I can tell, the only missing feature for me to try to switch to bcachefs is fs-verity.
33.
▲
by
accelbred
10mo ago
Seems like you could set up a cert for a honeypot domain to collect ips of bots running off of the certificate transparency logs. If domain isnt linked from anywhere, then its pretty sure to be a bot isn't it?
34.
▲
by
accelbred
10mo ago
That would be possible but also make its usage unergonomic and not the experience customers are expecting when requesting a Rust API.
35.
▲
by
accelbred
10mo ago
Arenas aren't the issue. Its objects with mixed lifetimes and mutability. I cant easily model the lifetimes of objects when there are cases like an instance where buffer memory reachable from the object has a different lifetime than ma
36.
▲
by
accelbred
10mo ago
That works for functions. For datatypes that are used throughout the API, it does not work so well.
37.
▲
by
accelbred
10mo ago
rustup is also downloading binary toolchains
38.
▲
by
accelbred
10mo ago
Lack of stable build-std and panic_immediate_abort features result in a order of magnitude size difference for some rust code I have. Using no_std brings it to ~60kb from ~350kb, but still more than the ~40kb for the C version
39.
▲
by
accelbred
10mo ago
It really isn't if bootstrapping from source.
40.
▲
by
accelbred
10mo ago
The code is written in an embedded style, i.e. no dynamic memory allocation or thread creation/deletion after program initialization. It's also prioritizing reducing memory usage over performance since we are targeting memory cons
41.
▲
by
accelbred
10mo ago
I've been working on Rust bindings for a C SDK recently, and the Rust wrapper code was far more complex than the C code it wrapped. I ended up ceding and getting reasonable wrappers by limiting how it can be used, instead of moddeling
42.
▲
by
accelbred
10mo ago
Is there a way to force reader mode or force text not to be justified like that? I'm having a difficult time reading the content (on mobile at least).
43.
▲
by
accelbred
10mo ago
I, this last week, had to spend hours dealing with a fake CVE that was opened 2 years ago on an open source dependency of our project for a bug that amounts to "if you have RCE, you can construct a malicious java datatype and call this
44.
▲
by
accelbred
10mo ago
The rule isnt there to say "don't do this". It's there to say "you must prove that this holds true, in any circumstance".
45.
▲
by
accelbred
10mo ago
Yeah, for work stuff where we follow MISRA conventions, its easiest to use no_std and ban using third-party crates as runtime dependencies.
46.
▲
by
accelbred
10mo ago
No they could not. Rusts standard library heavily uses dynamic memory allocation and panics, for example. MISRA C:2025 Addendum 6 covers MISRA rules that still apply to Rust, as an example of how one would restrict Rust in safety-critical c
47.
▲
by
accelbred
10mo ago
I highly recommend avoiding their cables. Their 100W rated cables fail when connected to to 60W chargers (of thier own brand). I had tons of issues with devices intermittently charging or continuously connecting and disconnecting. Narrowed
48.
▲
by
accelbred
10mo ago
It still does not hook up to seccomp, so needs to be blocked by things doing syscall filtering. Its blocked by docker/podman. It may also be disabled with hardened kconfig or selinux. If it ever integrates with LSMs, then it may be tim
49.
▲
by
accelbred
11mo ago
I wouldn't mind two types. I mind shared pointer not using atomics if I statically link pthreads and dlload a shared lib with them, or if Im doing clone3 stuff. Ive had multiple situations in which the detection method would turn off a
50.
▲
by
accelbred
11mo ago
Unfortunately, for C++, thats not true. At least with glibc and libstdc++, if you do not link with pthreads, then shared pointers are not thread-safe. At runtime it will do a symbol lookup for a pthreads symbol, and based off the result, th
51.
▲
by
accelbred
11mo ago
I've used it. It works fine. You connect with RDP, get a gdm login screen, and can log in.
52.
▲
by
accelbred
11mo ago
Good. Disallowing software to position its own windows has been a major usability improvement over the X11 days of software making stupid positioning decisions and having to patch it out everywhere...
53.
▲
by
accelbred
1y ago
Pixels with GrapheneOS also use MTE for security hardening
54.
▲
by
accelbred
1y ago
You'd want to statically prove that any panic is unreachable
55.
▲
by
accelbred
1y ago
If using C23, _BitInt allows for integer types without promotion.
56.
▲
by
accelbred
1y ago
Agreed. Using Gnome at work for a few weeks convinced me to ditch my custom twm setup and move all my personal machines to Gnome as well. It is different, but once giving it time and a honest try I found its a far better experience than any
57.
▲
by
accelbred
1y ago
What about function pointers?
58.
▲
by
accelbred
1y ago
This is still useful for cleaning up file descriptors, unlocking mutexes, etc.
59.
▲
by
accelbred
1y ago
AFAIK, Facebook uses BTRFS on their servers.
60.
▲
by
accelbred
1y ago
I used Zig for my projects for a while, but moved back to C for similar reasons. C23, with gcc extensions, and using MISRA-like coding style where it makes sense, provides a similar experience to Zig but with seamless C interop. You dont ha
More ›