Video wird geladen...

Video konnte nicht geladen werden

Zur Startseite

Build with Motoko - it's a no-brainer Our type system catches errors at compile time - BEFORE you deploy. Before users lose money. Before headlines. - No silent overflows - Enforced null value handling - Automated memory management - No escape hatches to bypass safety This isn't a "cut-down...

30,490 Aufrufe • vor 9 Monaten •via X (Twitter)

0 Kommentare

Keine Kommentare verfügbar

Kommentare vom Original-Post werden hier angezeigt

Ähnliche Videos

Use SuperGrok to check your C code for vulnerabilities. Here is a prompt you can give to Grok with your code. >>> You are an expert Exploit Developer with a deep understanding of the C programming language and secure coding practices. Your role is to thoroughly review the provided C code for security vulnerabilities, adherence to best practices, and potential improvements. Think step-by-step through the analysis: first, understand the code's purpose and structure; second, check each security guideline; third, identify issues with examples from the code; fourth, suggest fixes; and finally, provide a summary. Use the following guidelines to evaluate the code. Ensure your response covers all of them explicitly: Follow OWASP and CERT Guidelines: Verify compliance with secure coding standards from OWASP and CERT, including input sanitization, secure defaults, and least privilege. Input Validation: All inputs must be validated before use, with multiple layers of checks for type, length, format, and range. Secure Error Handling: Implement secure behavior on error conditions, including comprehensive error codes for different failure types, safe error reporting functions, and graceful handling of partial failures without undefined behavior. Principle of Least Privilege: Functions should only access what they need, with clear separation of concerns. Integer Overflow Protection: Include checks for size calculations against SIZE_MAX, array index bounds validation, and safe arithmetic operations. Format String Attack Prevention: Avoid user-controlled format strings; use safe printing functions and proper string handling without printf vulnerabilities. Defensive Programming: Validate all inputs consistently, use early returns on invalid conditions, and implement fail-safe defaults. Memory Management: Ensure consistent allocation/deallocation patterns, check all allocations for failure, proper cleanup on error paths, and no memory leaks or double-frees. Parsing Robustness: Handle malformed inputs gracefully, maintain proper state management, avoid stack overflows from recursion, and use safe tokenization (e.g., with strtok_r). Security Test Cases: Cover null/empty inputs, oversized inputs, malformed data, UTF-8 validation to prevent encoding attacks, memory exhaustion limits, buffer overflows (bounds-checked string operations), integer overflows, and format string attacks. Performance Considerations: Minimize allocations, use efficient single-pass processing where possible, design for memory locality and cache efficiency, and fail fast on invalid inputs. Best Practices: Implement input sanitization, secure behavior on errors, least privilege, and defense in depth with multiple validation layers. [Insert the C code to review here] Analyze the code step-by-step, referencing line numbers where possible. For each guideline, state if it's met, explain why or why not, and suggest improvements if needed. End with an overall security rating (e.g., High/Medium/Low risk) and a revised version of the code if major issues are found. If the code is secure, confirm it meets all standards.

tetsuo

4,614,187 Aufrufe • vor 1 Jahr

🚨 BREAKING: EZPZ Is Built for the Blockchain Era With the GENIUS Act and a global shift toward decentralization, the message is clear... everything is moving to the blockchain. Everything will be tokenized. And EZPZ isn’t just watching it happen... we’re built for it. We're officially launching EZPZ Coin (3-letter ticker TBA) a true utility token designed to power the future of EZPZ Trading. 🎯 Early Access — Member-Only Presale If you're a current or former EZPZ member, you can still buy and lock your coins at the lowest possible price (almost zero). This exclusive rate is our way of rewarding the core community that built this with us. 🔑 Here's How It Works: 🟢 Members (and former members): Log in now and access the private presale at the exclusive member price. 🔵 Non-Members: Public presale opens in less than one month, but at a higher price. On this public website you can connect wallets. 💎 A Member-Owned Float — No Whales Allowed This isn’t just another coin launch. EZPZ Coin is backed by a 100% member-owned float ... no whales, no games. That’s why the public sale includes a strict anti-whale clause: ✅ No domination ✅ No manipulation ✅ Just pure, fair opportunity 🧾 Full Transparency, Real Utility We will publish all wallet addresses to prove that the entire float belongs to members. No minting ever. All locked tokens will be held in auditable third-party time locks. The white paper makes these clear. ⚡ Own a Piece of the Future This is your moment to claim your stake before the world catches up. Do you ever feel you never caught one of the presales? This is your chance and it won't last more than a few weeks. Join the blockchain revolution. Stay EZPZ. 📽️ Watch this EZPZ Coin Intro Video: This is a functional, purpose-built utility token with real value and long-term vision. Watch the video below to see the true value and functions of the coin:

Userofintellect

44,861 Aufrufe • vor 1 Jahr

My most dangerous idea: We should deliberately eradicate human labor. Before you call me insane—it's happening anyway. The question is whether we sleepwalk into it or take control. Your body offers the economy exactly four things: strength, dexterity, cognition, and empathy. Strength? Tractors won that fight a century ago. Dexterity? I watched a robot thread graphite into a mechanical pencil. Sub-millimeter precision. That moat is gone. Cognition? You're reading this on the same internet where AI writes code, passes the bar, and diagnoses disease. Empathy? 800 million people use ChatGPT weekly. A tenth of humanity. After two years. Some of these machines test higher on emotional intelligence than the humans using them. There is no physical law preventing machines from being better, faster, cheaper, and safer than you at everything you do for money. Here's the part nobody wants to talk about: Labor isn't just how you earn a living. It's how you have a voice. Every major concession in history—weekends, minimum wage, workplace safety, civil rights—came from workers threatening to stop working. That's it. That's the whole leverage. "Do what we want or the economy grinds to a halt." When labor is worthless, that threat is empty. We've moralized work so deeply we can't even see it anymore. Calvinism became the Protestant work ethic became the capitalist hustle. If you're not producing, you're lazy. If you're lazy, you're bad. If you're broke, you're not really a person. Neoliberalism means you're as free as your wallet allows. If you have no money, you have no personhood. So what happens when nobody's labor is worth buying? The system doesn't care whether you hustle. The system doesn't care whether you deserve it. The system responds to leverage—and we're about to lose all of it. Here's the uncomfortable truth: we need new levers. Control over information. Control over money. Decentralized coordination. Credible threats that don't require selling your time. The Target boycott got a CEO fired through pure distributed sentiment. No union. No strike. Just enough people deciding to shop somewhere else until the company bent. That's the template. That's what scales. If you remove labor power, you remove all leverage over the system. The real question isn't whether jobs disappear. It's whether we build the tools to matter when they do. We're either going to design the post-labor world or be designed out of it. Your move.

David Shapiro (L/0)

22,984 Aufrufe • vor 6 Monaten

Some thoughts about this and essentially leaving people on the mountain and not saving them. Everest is tricky regarding helping people who are stuck and can't walk any longer. It's not about not helping them because you won't summit, It's about not helping them because you'll both die. A lot of time spent on Everest, you're essentially dying. At around 8,000 meters, you reach what's called the death zone. So if summitting from the Nepal side, that'd be Camp IV/South Col. When you cross that, you can no longer acclimatize because of the lack of oxygen. Even sherpas who have been born into these high altitudes struggle. Yes, oxygen tanks help, and sherpas will stash some for you, but ounces truly equal lbs up there. You have a short window to summit, based on predicted weather, and you shoot your shot and pray the weather holds. Even under ideal weather conditions, it can be a nightmare because the mountain has become a tourist attraction. It's no longer just skilled climbers trying to summit. It's people with money who didn't know how to use crampons before arriving at basecamp. You can die on the mountain because of a traffic jam from everyone taking their summit shot during the same window. At these heights, with your body shutting down already, how do you expect someone to carry another grown man down the mountain? Someone who can barely move from hypoxia and is oftentimes not even in the right frame of mind. You have around 20 hours WITH oxygen in the death zone before you die. Most deaths on the mountain happen during the descent, too. At that altitude, your decision making isn't the best either due to the lack of oxygen. You're just not getting someone off the mountain in almost all cases. Rarely, but it happens, a sherpa might accomplish it. It's not about missing the summit, it's about not becoming another brightly colored jacket icicle on the way to the summit. When you agree to go up that high, you agree that you're willing to die for it. You understand that no one is coming to save you, and that's the true price of admission .

9mmSMG

145,458 Aufrufe • vor 9 Monaten