Загрузка видео...

Не удалось загрузить видео

На главную

Memory safe Linux demo

54,417 просмотров • 11 месяцев назад •via X (Twitter)

Комментарии: 30

Фото профиля Igor Klopov
Igor Klopov11 месяцев назад

Awesome! I wonder if it's easy for you to compile a vulnerable version of some software with regular C, run an exploit agaist it, get an RCE or so, and then do the same but compile that software with FilC first. This way you show the practical purpose of your memory safety

Фото профиля Filip Jerzy Pizło
Filip Jerzy Pizło11 месяцев назад

Like this?

Фото профиля Igor Klopov
Igor Klopov11 месяцев назад

Yeah right! Missed that

Фото профиля 𝒫𝑒𝓇 𝒜𝓇𝓃𝑒𝓃𝑔 【🐧λ🦀⎈】
𝒫𝑒𝓇 𝒜𝓇𝓃𝑒𝓃𝑔 【🐧λ🦀⎈】11 месяцев назад

Nice work 💪 interesting to see it action 🤩 what would you estimate on average in % slower than C and memory usage compared to C? This could initially be very interesting for security critical systems.

Фото профиля Filip Jerzy Pizło
Filip Jerzy Pizło11 месяцев назад

It’s measurably slower and uses measurably more memory. But like my demo shows, you won’t notice it as a user

Фото профиля molleweide
molleweide11 месяцев назад

@per_arneng Are there any user domains where it would be noticeable assuming FilC would become more widespread?

Фото профиля Filip Jerzy Pizło
Filip Jerzy Pizło11 месяцев назад

@per_arneng Yeah. Games for example

Фото профиля Slendi
Slendi11 месяцев назад

Is this also memory safe with things like data races?

Фото профиля Filip Jerzy Pizło
Filip Jerzy Pizło11 месяцев назад

@xslendix Yes

Фото профиля Nyx
Nyx11 месяцев назад

Very nice demo, and this looks great. I’m curious what the output of that stack traces is when you don’t include debug information, or does fil-c always embed debug information?

Фото профиля Filip Jerzy Pizło
Filip Jerzy Pizło11 месяцев назад

The file name and line number become “<somewhere>” Inline frames are collapsed. But at least currently, I still keep function names. I might add an option to strip those (folks wanting minimum footprint will appreciate that)

Фото профиля Nyx
Nyx11 месяцев назад

I do have a concern though that it would open the executable up to easier reverse engineering. But that is a different issue and the goal is memory safety.

Фото профиля muxcore
muxcore11 месяцев назад

Very cool!

Фото профиля iru@localhot
iru@localhot11 месяцев назад

> mfw I heard SystemV. > mfw I have no face

Фото профиля spacemonkey
spacemonkey11 месяцев назад

Awesome

Фото профиля Darren Shepherd
Darren Shepherd11 месяцев назад

@awesomekling I'm gonna be the guy that ignores all this incredible work that clearly took an immense amount of time to create and only comment on the squeaky chair.

Фото профиля t
t11 месяцев назад

why does rust even exist XD

Фото профиля Richard L ✈
Richard L ✈11 месяцев назад

@chromatic_x @xorloser

Фото профиля Daniel Cook
Daniel Cook11 месяцев назад

Probably would be even more useful to have a fil-c user space in a docker container

Фото профиля Filip Jerzy Pizło
Filip Jerzy Pizło11 месяцев назад

What would be the value of having the memory safe stuff inside a container? I imagine you might want the opposite: - Your host OS has a memory safe userland - If you want to run unsafe code (for perf reasons) you do it in a container

Фото профиля Daniel Cook
Daniel Cook11 месяцев назад

To make it easier to cross compile stuff when you need access to a bunch of system packages through pkg-config

Фото профиля 2disbetter
2disbetter11 месяцев назад

Excellent work and thanks for sharing! Any chance you wanna take on another DE / composter and push further into userland? If that is a silly question, let me rephrase: what is the next step?

Фото профиля Filip Jerzy Pizło
Filip Jerzy Pizło11 месяцев назад

Next step is web browser

Фото профиля 𝒢𝒾𝒷𝓇𝒶𝓃 😈 🏴‍☠️@geebee@bsd.network
𝒢𝒾𝒷𝓇𝒶𝓃 😈 🏴‍☠️@[email protected]11 месяцев назад

@awesomekling Great work 👏

Фото профиля Max Kupriianov
Max Kupriianov11 месяцев назад

Awesome background!! but, with all seriousness thanks for the rundown, really provides very useful context for understanding.

Фото профиля John Doe
John Doe11 месяцев назад

👀

Фото профиля 𝐃𝐫. 𝐀𝐛𝐢𝐢𝐫𝐚 𝐍𝐚𝐭𝐡𝐚𝐧
𝐃𝐫. 𝐀𝐛𝐢𝐢𝐫𝐚 𝐍𝐚𝐭𝐡𝐚𝐧11 месяцев назад

Video quality too low.

Фото профиля Sal ꙮ
Sal ꙮ11 месяцев назад

This is great! Is there a write up somewhere describing how invisicaps are actually implemented? IIUC, they are created/used at runtime, not compile time.

Фото профиля Shantanu Gadgil
Shantanu Gadgil11 месяцев назад

Would you consider uploading this to YouTube as well? (easier to share a "here, watch this" link with folks) 🙂

Фото профиля Richard L ✈
Richard L ✈11 месяцев назад

@ooPo

Похожие видео