zlacker

[return to "A case against security nihilism"]
1. fsflov+Vp[view] [source] 2021-07-20 21:25:44
>>feross+(OP)
The only practical security is security through isolation, like what Qubes OS provides. Security through correctness is impossible.
◧◩
2. Ar-Cur+Vt[view] [source] 2021-07-20 21:48:43
>>fsflov+Vp
You seem to have missed the point of the article completely.

We can’t achieve perfect security (there’s no such thing). What we can achieve is raising the bar for attackers. Simple things like using memory-safe languages for handling untrusted inputs, least-privilege design, defense in depth, etc.

[go to top]