|
|
|
|
|
by rualca
1887 days ago
|
|
> However, they proved a big point: how "easy" it is to manipulate the most used piece of software on the planet. What? Are you actually trying to argue that "researchers" proved that code reviews don't have a 100% success rate in picking up bugs and errors? Specially when code is pushed in bad faith? I mean, think about that for a minute. There are official competitive events to sneak malicious code that are already decades old and going strong[1]. Sneaking vulnerabilities through code reviews is a competitive sport. Are we supposed to feign surprise now? [1] https://en.wikipedia.org/wiki/Underhanded_C_Contest |
|