Hacker News new | past | comments | ask | show | jobs | submit login

It’s definitely games that are the problem. There’s no way that websites are still embedding third party code that is just slopped together shit and wildly vulnerable [0]. Or that domain registrars, one of the core points of trust of the internet would lie about their security practices and be sued by the FTC almost a decade after it[1]. Or that an endpoint management system would take down multiple airports due to basic bounds checks missing [2]. How about a massive software company used by huge enterprises for storing their knowledge bases having an RCE [3]. A global CDN definitely wouldn’t break DNS and take down half the internet [4].

Now you might say, those companies are irresponsible and that well maintained open source software doesn’t have this issue. That would mean no 0 days for linux [5], and that the most battle tested libraries in the world are immune from basic issues [6][7].

Software engineering is broken, it’s not just games. (Although, if you think physical construction is any better I suggest you stick a T square in the corners of your house and figure out how many of your walls aren’t square ). You

[0] https://mrbruh.com/chattr/

[1] https://news.ycombinator.com/item?id=42849632

[2] https://en.m.wikipedia.org/wiki/2024_CrowdStrike-related_IT_...

[3] https://www.csoonline.com/article/2138177/atlassians-conflue...

[4] https://techcrunch.com/2021/07/22/a-dns-outage-just-took-dow...

[5] https://www.indusface.com/blog/rce-zero-day-vulnerabilities-...

[6] https://en.m.wikipedia.org/wiki/Log4Shell

[7] https://heartbleed.com/




Join us for AI Startup School this June 16-17 in San Francisco!

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: