Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If you're trying to improve the security of your product by running random binaries from the Internet you're going to have a bad time


That's how most people run compilers


This is argumentum ad absurdum - there is a reason why trusting your kernel and compiler is a reasonable compromise, even though there might be security issues in them, but random pieces of software downloaded from the Internet is not.


Wait ... you download random compilers from the internet? Or are you asserting equivalence between getting go from Google or Xcode from Apple and an random home brew install?


also if you're not trying to improve the security of your product by running random binaries from the internet. I'm concerned at the inability to separate the concepts of "what it does" and "what it says it does".

The idea that whether or not it needs scrutiny is impacted by your goals with the software is... creative




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: