TILDE TOWN EMERGENCY SHELTER

for a great low rate you can get online ♪ ♫ ♪ ♫
User avatar
sylvie
Posts: 13
Joined: 1 week ago
Location: NULL (write protected to maintain segfaults)
Pronouns: she/they

I predict we'll start getting liability requirements on all publicly-released software in the near future…bills of the sort that would require a Microsoft- or Google-level security team to reasonably comply with.
uh, big doubt, what are they gonna do, hunt down someone who god forbid wrote code and put it up online?
Image
User avatar
CodeSquirrel
Posts: 23
Joined: 1 month ago
Pronouns: he/him

uh, big doubt, what are they gonna do, hunt down someone who god forbid wrote code and put it up online?
I suspect it'll manifest in no longer being able to legally disclaim liability/warranty the way many open-source licenses do or something to that effect. Get Your Software Right or be sued into oblivion, basically.

I hope I'm wrong tbh; I was mostly just ranting out of doom-and-gloominess x.x;

Maybe I should just stop posting about it here for now; I'm not sure I can engage in this topic in a way that isn't foretelling doom and gloom. :/
User avatar
owl
雨の嵐の中で生まれた
Posts: 283
Joined: 1 year ago
Pronouns: he/him

hi friends <3
User avatar
iikorni
Posts: 18
Joined: 3 months ago
Pronouns: he/him

uh, big doubt, what are they gonna do, hunt down someone who god forbid wrote code and put it up online?
I suspect it'll manifest in no longer being able to legally disclaim liability/warranty the way many open-source licenses do or something to that effect. Get Your Software Right or be sued into oblivion, basically.

I hope I'm wrong tbh; I was mostly just ranting out of doom-and-gloominess x.x;

Maybe I should just stop posting about it here for now; I'm not sure I can engage in this topic in a way that isn't foretelling doom and gloom. :/
honestly, I wonder if this won't end up seeing a resurgence of corpo governance structures like red hat et al supporting these kinds of security efforts. GPL makes it pretty hard to keep those things in a vacuum but...idk. i'm also not very happy about it but honestly i guess the world has finally shifted into a true nightmare world of AI-foisted vulnerability finding making every bug as shallow as the number of tons of co2 we waste finding cheap, non-obvious exploits...
Image
Image
semitones
Posts: 4
Joined: 1 week ago
Pronouns: he him

is this just the new linux reality we live in?
I'm hoping that there will be a spate of new vulns discovered using this novel LLM technology, and then after they find all of them, we'll go back to normal.
User avatar
sylvie
Posts: 13
Joined: 1 week ago
Location: NULL (write protected to maintain segfaults)
Pronouns: she/they

uh, big doubt, what are they gonna do, hunt down someone who god forbid wrote code and put it up online?
I suspect it'll manifest in no longer being able to legally disclaim liability/warranty the way many open-source licenses do or something to that effect.
more realistic would be requiring dependencies to not disclaim warranty in commercial products
Image
User avatar
mifuyne
Posts: 4
Joined: 2 months ago
Location: Canada
Pronouns: she/her

Hello, checking in.

It would be wiser to watch and see before we start descending into hysterics. This wave of vulns is likely a one time thing as people sort through the wreckage left by the LLM-generated reports.
User avatar
iikorni
Posts: 18
Joined: 3 months ago
Pronouns: he/him

Hello, checking in.

It would be wiser to watch and see before we start descending into hysterics. This wave of vulns is likely a one time thing as people sort through the wreckage left by the LLM-generated reports.
well, the issue as I see it is that - sure, we'll likely see less going forward as people get bored of the new hotness. but linux isn't a stagnant thing - code will continue being written for it, and unfortunately we're all fallible, and despite my prayers this llm shit doesn't seem to be fading - ergo, wondering if the new normal is just...this. hopefully though, you're right, and the amount of buggy code being written is drastically lower than the low-hanging fruit currently being found
Image
Image
Post Reply