6 Matching Annotations
- Apr 2021
en.wikipedia.org en.wikipedia.org
A good heuristic is to not trust the libraries you did not write either.
- Mar 2021
www.chevtek.io www.chevtek.io
he goes on to talk about third party problems and how you're never guaranteed something is written correctly or that even if it is you don't know if it's the most optimal solution
news.ycombinator.com news.ycombinator.com
I suspect you aren't seeing much discussion because those who have a reasonable process in place, and do not consider this situation to be as bad as everyone would have you believe, tend not to comment on it as much.
www.usenix.org www.usenix.org
Unfortunately, this open nature also causes security risks, asevidenced by recent incidents of single packages that brokeor attacked software running on millions of computers.