Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If you've found a method to write software that is 100% bug-free, we're all ears.


There are bugs and then there are BUGS!


[flagged]


IIRC, it was a nonce-not-used-only-once vulnerability, wasn't it? Wouldn't that be tricky to detect, even in Rust?

Regardless, it's quite unfortunate to see Colin's nits picked in this manner, dredging up some mistake from almost 15 years ago (which he handled as responsibly as could be expected), given all of the work he's done on FreeBSD and for giving the world scrypt.


giving the world scrypt

Ironically that bug happened because of scrypt. Creating scrypt led me to refactor Tarsnap's crypto code, which is when the bug slipped in.


Rust would not have prevented that bug.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: