Conversation
>This package contains just four macros, which enable the creation of array references to portions of arrays or slices (or things that can be sliced).

Do Rustfags really

RE: https://social.rust-lang.org/@rust/117127366248165334
1
0
3
@scathach they are just JS monkeys of the systems software world. The more experience I get, the more I agree with the idea of just vendoring dependencies and building everything locally. You want a new library version? Show which piece of code you want or fuck off.
1
0
4
@newt @scathach Code reuse as pushed by npm/crates was the hot topic back in the Internet boom, but the results over the years have clearly shown that the problems far outweigh the benefits. From left-pad to protestware nuking your system only because you have your locale set to something the dev doesn't like (Yes, this has actually happened multiple times already in the JS world.)
2
0
3
@phnt @scathach blindly downloading and executing code from a place where anyone can anonymously upload anything with no consequences. What could possibly go wrong? Jesus fucking Christ!
0
0
3
@newt @scathach Similarly, a lot of these "supply chain attacks" would never exist if every single one of these deranged language package managers didn't have post-install script hooks. A literal RCE the developer has on your system just by installing a package.
1
0
0
@phnt @scathach I blame rms and Loinoos for this. "Given enough eyeballs, all bugs are shallow" my ass. Good luck reviewing every piece of shitware that might run on your system.
2
1
1
@phnt @scathach I hate him for what he did to the open source world so much...
1
1
1

@newt @phnt @scathach its funny. some time ago i read that packagers for linux distros don't really read the code (at least for opensuse, because it was an opensuse drv) of the things they package.
and.. there was a bug in polkit that gave you root access that no one noticed for 8 years. shallow my ass

1
0
0

@newt @phnt @scathach one day he'll no longer be around and we'll all be glad. we'll be able to enjoy a bsd/mit licensed utopia

1
0
0
@mischievoustomato @newt @scathach Same with the 30 recent Linux kernel LPEs that have been in the kernel for a decade. Or with the uni "project" that inserted multiple bogus commits and small vulnerabilities into the kernel and it took like a year for someone to notice.
2
0
1

@phnt @newt @scathach lmfao. yeah stuff is a mess. i really like how LLMs are showing how insecure foss code really is. I don't think linux could survive the popularity of windows, lotsa exploiting to be done imo

0
0
0
@snacks @mischievoustomato @newt @scathach The kernel is one of the parts that has to be somewhat complex for it to be actually usable in a generic setting. If you try to keep the kernel simple, you get slow systems like OpenBSD and NetBSD, or non-generic kernels like seL4.
1
0
0
@mischievoustomato @phnt @scathach it's not about the license, you ape. rms intentionally crippled open source projects he either led himself or those where maintainers relied on his opinion for the sole reason that Evil Proprietary Corporations wouldn't be able to use them. I can name at least three examples of that off the top of my head, with one of them being G-fucking-CC.
2
0
0
@phnt @mischievoustomato @newt @scathach year of the sel4 desktop is still my wet dream
0
0
0

@newt @phnt @scathach for me it's about the license. society needs to fix that.

0
0
0