BLU Discuss list archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[Discuss] Port Scanning
- Subject: [Discuss] Port Scanning
- From: richard.pieri at gmail.com (Rich Pieri)
- Date: Tue, 6 Aug 2024 07:52:46 -0400
- In-reply-to: <CAJFsZ=roiGszBrbv6CzFY57V=fBe9CnZKqBi-eSUQ8eTHPr8_A@mail.gmail.com>
- References: <5c43eee0-caaf-45d6-8fdb-273cb3d8ea6d@borg.org> <20240801172933.yqcdeki3ntkrrl2t@randomstring.org> <51804f85-9275-4d89-9dc2-86234cdb299b@borg.org> <20240801210627.bzw47tfmyxofcep3@randomstring.org> <82b0d41d-075d-496e-9e1f-ef1529623c38@borg.org> <20240801182824.4bf21319.Richard.Pieri@gmail.com> <f6d905fd-7886-4cf2-9b02-f6d89f60adf0@borg.org> <20240801214606.5bebc46a.Richard.Pieri@gmail.com> <20c3240d-184f-4c84-b4ed-7680ac5301bd@borg.org> <CAJFsZ=o7btMacs-OqTB0908ehYkZCFGtupLkNi59C9K8XV6zKQ@mail.gmail.com> <20240804112131.195b6e56.Richard.Pieri@gmail.com> <CAJFsZ=roiGszBrbv6CzFY57V=fBe9CnZKqBi-eSUQ8eTHPr8_A@mail.gmail.com>
On Tue, 6 Aug 2024 00:31:39 -0400 Bill Bogstad <bogstad at pobox.com> wrote: > Did I say that I wanted perfection? In text that you removed, I No. Kent was suggesting that. I'm sorry that I conflated your and their arguments. Because you and I are in vehement agreement. > programs by something like 5-10%. Does anybody do this?, not as far > as I know. Our priorities seem to be organized into something like The Rust language is an example of people doing exactly this. It's good, not perfect, but much better than C. And when optimized well, it can perform on par with or better than C. > this: time to market, features, performance, pretty UIs, price (i.e. > development cost), .......... , security. We would have a whole lot > fewer moles to whack if we changed our tools. I would argue that we > would probably improve debugging (development) costs as well because > bugs would be found and fixed a lot more easily. To be fair, it I agree. To borrow from the Kent side of this discussion, complexity is not the worst enemy of security. Time is. Learning new programming languages and techniques takes time, more time in short terms than doing things the way we always have. Time and money would definitely be saved in the long term by being better at writing code, but we're in a world where tomorrow doesn't matter to investors and C-suite executives. They want their profits immediately and with the fewest expenses possible. Things could definitely be better but I fear things will have to get much worse before the costs of security failures begin to outweigh the short-term profits that investors demand. -- \m/ (--) \m/
- Follow-Ups:
- [Discuss] Port Scanning
- From: markw at mohawksoft.com (markw at mohawksoft.com)
- [Discuss] Port Scanning
- References:
- [Discuss] Port Scanning
- From: kentborg at borg.org (Kent Borg)
- [Discuss] Port Scanning
- From: dsr at randomstring.org (Dan Ritter)
- [Discuss] Port Scanning
- From: kentborg at borg.org (Kent Borg)
- [Discuss] Port Scanning
- From: dsr at randomstring.org (Dan Ritter)
- [Discuss] Port Scanning
- From: kentborg at borg.org (Kent Borg)
- [Discuss] Port Scanning
- From: richard.pieri at gmail.com (Rich Pieri)
- [Discuss] Port Scanning
- From: kentborg at borg.org (Kent Borg)
- [Discuss] Port Scanning
- From: richard.pieri at gmail.com (Rich Pieri)
- [Discuss] Port Scanning
- From: kentborg at borg.org (Kent Borg)
- [Discuss] Port Scanning
- From: bogstad at pobox.com (Bill Bogstad)
- [Discuss] Port Scanning
- From: richard.pieri at gmail.com (Rich Pieri)
- [Discuss] Port Scanning
- From: bogstad at pobox.com (Bill Bogstad)
- [Discuss] Port Scanning
- Prev by Date: [Discuss] Port Scanning
- Next by Date: [Discuss] Port Scanning
- Previous by thread: [Discuss] Port Scanning
- Next by thread: [Discuss] Port Scanning
- Index(es):