|
|
|
|
|
by csande17
1608 days ago
|
|
Given the number of times we have failed to learn the lesson "downloading code from untrusted sources and running it is a bad idea" -- the log4j and NPM colors fiascos spring to mind -- I think it's fair to conclude that this industry is completely incapable of learning anything, ever. |
|
It's almost like the issue is not that code is available, but how people use the code that's available, and no one seemingly likes funding open source code.