Mitigating Memory Safety Issues in Open Source Software
security.googleblog.com
Mitigating Memory Safety Issues in Open Source Software
1–10 of 244 posts
Re: Mitigating Memory Safety Issues in Open Source Software
#2> That’s why we’re expanding our collaboration with the Internet Security Research Group to support the reimplementation of critical open-source software in memory-safe languages.
Re: Mitigating Memory Safety Issues in Open Source Software
#3Correct me if I’m wrong, but that’s my understanding of the rather terse article.
I would rather have the original maintainers funded and still in control of the many pieces that form the basis of the major Linux distributions.
Re: Mitigating Memory Safety Issues in Open Source Software
#4What is left out of the title is that they do not provide funding to the current authors/maintainers of these open source projects. Instead, they fund an organization that will rewrite these tools. Correct me if I’m wrong, but that’s my understanding of the rather terse article. I would rather have the original maintainers funded and still in control of the many pieces that form the basis of the major Linux distribut…
It'll be interesting to watch how this plays out. But I pity the projects where Google's gaze falls upon.
Re: Mitigating Memory Safety Issues in Open Source Software
#5What is left out of the title is that they do not provide funding to the current authors/maintainers of these open source projects. Instead, they fund an organization that will rewrite these tools. Correct me if I’m wrong, but that’s my understanding of the rather terse article. I would rather have the original maintainers funded and still in control of the many pieces that form the basis of the major Linux distribut…
Re: Mitigating Memory Safety Issues in Open Source Software
#6Re: Mitigating Memory Safety Issues in Open Source Software
#7What is left out of the title is that they do not provide funding to the current authors/maintainers of these open source projects. Instead, they fund an organization that will rewrite these tools. Correct me if I’m wrong, but that’s my understanding of the rather terse article. I would rather have the original maintainers funded and still in control of the many pieces that form the basis of the major Linux distribut…
Sadly everyone expressing concerns like this will be dismissed and everyone is going to once again hail google for being community friendly and supportive of FOSS.
Re: Mitigating Memory Safety Issues in Open Source Software
#8Re: Mitigating Memory Safety Issues in Open Source Software
#9Why spend thousands, if not millions of dollars, on rewriting existing codebases when they could help fixing the existing toolset and make it safer?
I don't get it.
Re: Mitigating Memory Safety Issues in Open Source Software
#10What is left out of the title is that they do not provide funding to the current authors/maintainers of these open source projects. Instead, they fund an organization that will rewrite these tools. Correct me if I’m wrong, but that’s my understanding of the rather terse article. I would rather have the original maintainers funded and still in control of the many pieces that form the basis of the major Linux distribut…
Yeah, it sounds a lot like Google is going to "hijack" popular open source projects for the sake of "security". It'll be interesting to watch how this plays out. But I pity the projects where Google's gaze falls upon.