ANarcoSnowPlow [he/him]

  • 2 Posts
  • 200 Comments
Joined 11 months ago
cake
Cake day: February 12th, 2025

help-circle

  • Theoretically speaking… It could be possible for the compiler to recognize certain patterns and inject arbitrary instructions into the compiled code of interest. If it were really smart it would probably be limited to some specific platforms of interest, be some otherwise harmless looking instructions, that might do something to allow consistent exploitation under some specific circumstances. I’m just spit balling here, I’ve not put much thought into this past “I’m sure there could be some nasty shit you could do if you wanted to.”

    Another option might be hiding some information about the author and the system doing the compilation in binaries.

    You’re trusting the compiler to convert human readable code into machine readable code. I suspect you could sneak some “unreachable” code in there or something, and if it doesn’t look scary it’d be easy to write it off as a quirk of optimization or something.

    Edit: I have no evidence this is being done or has ever actually been done. I’m just saying that it’s theoretically possible.


  • I’m not sure why it’s pushed so hard other than I suspect the compiler is compromised or something by some alphabet agency.

    If that’s not it, I’m about to get real curmudgeonly. People tout it being “safe by design” and “better than c” because of memory safety being built in, etc.

    I’m no rust expert, though I’m arguably a (embedded at least) c expert, which biases me to some extent at least.

    My take is that for situations where memory safety was already critical, my understanding is that rust mechanisms would have to be bypassed anyway and the safety of C is ensured by processes proven over decades…

    So basically it feels like the CISA people trying to push “modern languages with modern safety” either because they don’t understand how we actually do things or because they want us to use it for another reason… Both of which are equally believable to me.











  • You’re not making a bad point in any normal place, but we do have fire departments in the United States that you pay directly and if you don’t pay, but your neighbor does, they will come make sure that your house doesn’t catch your neighbors on fire as it goes.

    So… Some people in this country live somewhere that has (even if it’s not actually for-profit) fire departments that discriminate based on payment status.



  • The biggest capital holiday of the year is coming: black Friday.

    This capital holiday, this entire holiday season, has already been well and thoroughly fucked by this admin.

    Normies denied treats are already screaming. People losing food benefits are screaming. Soon, the grocery stores will scream, the retailers will scream, and perhaps even wall street will scream. It’s like if Rome had all the bread and circuses in the world, but executed the clowns (I know they were races, but bear with me) in the streets and pissed on all the bread, instead of distracting the public.

    Honestly I keep thinking that if you’re interested in dual power structures, you need to be building all of this yesterday because there is no better time to exploit demonstrable weakness and build class solidarity.