Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
ameliaquining
on July 24, 2025
|
parent
|
context
|
favorite
| on:
There is no memory safety without thread safety
If you're stipulating deliberately inserted vulnerabilities then there are much easier ways, e.g., with a plausibly-deniable logic bug in code that calls os/exec or reflect (both of which can execute arbitrary code by design).
gf000
on July 24, 2025
[–]
If you see `exec`, that's an obvious point where you want to pay extra attention.
Compare to an innocent looking map operation, and it's not even in the same league.
ameliaquining
on July 24, 2025
|
parent
[–]
What's the least suspicious-looking code that you think could facilitate remote code execution via data-race memory corruption?
Consider applying for YC's Fall 2026 batch!
Applications
are open till July 27.
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: