Return Styles: Pseud0ch, Terminal, Valhalla, NES, Geocities, Blue Moon. Entire thread

Serious Network Function Vulnerability Found In Glibc

Name: Anonymous 2015-01-27 20:09

So long as we're writing in C, this kind of thing (buffer overflows in particular) will probably continue.
Yea we should write our system libraries in Go and Haskell. Maybe Coffeescript and run them all on node.js?
Get a clue.

Name: Anonymous 2015-01-27 20:17

http://www.openwall.com/lists/oss-security/2015/01/27/9

insecure code that enables remote code execution.

it's FULL of GOTO.. tell me again, that GOTO is ok for error handling? please?

Name: Anonymous 2015-01-27 20:47

hax my anus

Name: Anonymous 2015-01-27 21:03

Name: Anonymous 2015-01-27 21:03

cool thread

upboat =D

Name: Anonymous 2015-01-27 21:05

>>1
No we should write them in Python.
That way first year CS students can understand and write their own too!

Name: Anonymous 2015-01-27 21:07

>>4
But it's GUNOOOOO.
The others aren't therefore they aren't free.
Do you really want to trade your freedoms just for efficiency and stability?

Name: Anonymous 2015-01-27 21:12

Name: Anonymous 2015-01-27 21:27

>>8
Sign in to confirm your age
dumbass

Name: Anonymous 2015-01-27 21:48

>>9
So, sign in. What's the problem? Are you that guy who refuses to use youtube!

Name: Anonymous 2015-01-27 21:54

>>8
Holy shit that guy has a lot of weed.

Name: Anonymous 2015-01-27 22:14

>>9,10,11
I know an epic trick to fool youtube.
You search for the watch?v= part and change it to v/
Check it out.
https://www.youtube.com/v/imzHwWWI9TQ

Name: /jewtube/ 2015-01-27 23:14

/jewtube/

Name: Anonymous 2015-01-28 0:07

>>12
I downloaded a file I couldn't play. Are you sure it isn't still streaming?

Name: Anonymous 2015-01-28 2:02

>>12
That is a nice trick.

Name: Cudder !MhMRSATORI 2015-01-28 7:22

The news feeds us Heartbleed, the academics advocate their "safe" languages, and the mindless masses rejoice in delight at the "security" of their new "user-friendly" locked-down consumption and surveillance devices.

Yet if it weren't for "unsafe" languages and exploits, jailbreaking, rooting, console homebrew, and other freedom-increasing activities would be essentially eliminated.

A world in which the security of systems is strongly proved is a dystopia of government and corporate control, one in which no one can ever have any freedom. An inescapable walled garden of mindless sheeple, kept consuming and happy in their ignorance.

Insecurity is freedom.

"Those who give up freedom for security deserve neither."

Name: Anonymous 2015-01-28 7:26

>>16
It's sad isn't it. We have to resort to hacking to take ownership of our own computers.

Name: Anonymous 2015-01-28 8:40

>>16
Or you could simply stop buying those machines that are inherently in jail and spend your time one machines that don't put users in jail.

Name: Anonymous 2015-01-28 10:15

C look so disgusting. Can't believe I was trolled into thinking it was great and avoiding everything else.

Name: Anonymous 2015-01-28 12:25

>>16
you're including intel chips in that right?

Name: Anonymous 2015-01-28 12:49

>>16
or you could not buy a device that harms your freedom??

Name: Anonymous 2015-01-28 12:52

>>21
*cums on your face*

"Check 'em!", the autistic man autistically yells in the middle of his autistic autism episode

Name: Anonymous 2015-01-28 12:54

>>21
strap yourself with a bark collar.

Name: Cudder !MhMRSATORI 2015-01-28 13:00

>>18
"Or you could simply stop using any form of computer." Radical Stallmanism is not much better than that.

If only RMS was clever enough to realise that advancing decompiler technology would be able to "force open" the source of any program, against all legal restrictions, and pushed for development of RE with the FSF, maybe we'd be living in a much freer world now...

Name: Anonymous 2015-01-28 14:33

Cudder is all talk and no action.

Name: Anonymous 2015-01-28 15:07

>>24
Suppose you can disassemble The App. Its a 20MB binary.
It produces >150MB of asm, which your advanced decompiler will transform into C code, giving about 10-20MB "source" filled with cryptic functions(which don't have to correspond to original in content: code is optimized/unrolled/etc by compiler into that) and zero comments.

Name: Anonymous 2015-01-28 16:48

>>26
App
Stopped reading right there.

Name: Anonymous 2015-01-28 16:59

>>26
It produces >150MB of smali, which your advanced decompiler will transform into Java code

Name: Anonymous 2015-01-28 20:11

>>26
use debugger, luke

Name: Cudder !MhMRSATORI 2015-01-28 21:03

>>26
Educate programmers to understand more than just the code they write. It's all about the skill. Decompilers can assign appropriate names to variables based on how they're used - even IDA can do some of this already.

>>28
+1, this is actually one of the few advantages of platforms like Java and .NET - decompilation is easy, even in the presence of obfuscation. It's also another advantage of external libraries, since everything at the border has nice names even if the stuff inside doesn't. As evidence of this, the Android ecosystem has lots of app-modders.

Name: Anonymous 2015-01-28 23:31

>>18
Companies that sell locked down machines have artificially low prices, which they hope to make up for by locking you into a long term subscription service tied to the machine. By forcing the machine open, you can use the product without their paid service. So you get a cheap computer and you help bankrupt the evil company. It's a win win.

Name: Anonymous 2015-01-29 1:03

>>31
and you help bankrupt the evil company.
Except this has never happened in the history of mankind.

Name: Anonymous 2015-01-29 2:34

>>32
mankind
stop bullshitting you dumb 20 year old.

Name: Anonymous 2015-01-29 7:30

stop bullshitting you dumb 20 year old.
start bullshitting you smart 12 year old

Name: Anonymous 2015-01-29 16:43

Cudder is all talk and no action.

Name: Anonymous 2015-01-29 19:00

>>1
strawmanning this hard

Name: Anonymous 2015-01-29 19:40

>>36
what do you mean? I copied those comments of the slashdot

Name: Anonymous 2015-01-30 4:11

Trivia time: name a GNU project that is not a piece of shit.

Don't worry, I'll wait.

Name: Anonymous 2015-01-30 5:04

>>38
time works pretty well.

Name: Anonymous 2015-01-30 5:55

>>38
cat -v

Newer Posts
Don't change these.
Name: Email:
Entire Thread Thread List