Hacker News new | ask | show | jobs
by landdate 4 days ago
Running external code will always be a risk. Even if it is not intended to be malicious it could still have issues that compromise security.

Read the source. If you don't have the time then you shouldn't run the software.

1 comments

By “external code” do you mean code that is not written by yourself or the organization you are working in?

The Linux Kernel has 40 million lines of code, I don’t have the time to read that so I guess I better not use it.

And you and me would be better off for it. You can rely on such insanely complex technologies that have required millions of man hours to develop in which even the most knwoledgable will lack a complete understanding, or you can live within your station.