Video yükleniyor...

Video Yüklenemedi

Ana Sayfaya Dön

Memory safe Linux demo

54,417 görüntüleme • 11 ay önce •via X (Twitter)

30 Yorum

Igor Klopov profil fotoğrafı
Igor Klopov11 ay önce

Awesome! I wonder if it's easy for you to compile a vulnerable version of some software with regular C, run an exploit agaist it, get an RCE or so, and then do the same but compile that software with FilC first. This way you show the practical purpose of your memory safety

Filip Jerzy Pizło profil fotoğrafı
Filip Jerzy Pizło11 ay önce

Like this?

Igor Klopov profil fotoğrafı
Igor Klopov11 ay önce

Yeah right! Missed that

𝒫𝑒𝓇 𝒜𝓇𝓃𝑒𝓃𝑔 【🐧λ🦀⎈】 profil fotoğrafı
𝒫𝑒𝓇 𝒜𝓇𝓃𝑒𝓃𝑔 【🐧λ🦀⎈】11 ay önce

Nice work 💪 interesting to see it action 🤩 what would you estimate on average in % slower than C and memory usage compared to C? This could initially be very interesting for security critical systems.

Filip Jerzy Pizło profil fotoğrafı
Filip Jerzy Pizło11 ay önce

It’s measurably slower and uses measurably more memory. But like my demo shows, you won’t notice it as a user

molleweide profil fotoğrafı
molleweide11 ay önce

@per_arneng Are there any user domains where it would be noticeable assuming FilC would become more widespread?

Filip Jerzy Pizło profil fotoğrafı
Filip Jerzy Pizło11 ay önce

@per_arneng Yeah. Games for example

Slendi profil fotoğrafı
Slendi11 ay önce

Is this also memory safe with things like data races?

Filip Jerzy Pizło profil fotoğrafı
Filip Jerzy Pizło11 ay önce

@xslendix Yes

Nyx profil fotoğrafı
Nyx11 ay önce

Very nice demo, and this looks great. I’m curious what the output of that stack traces is when you don’t include debug information, or does fil-c always embed debug information?

Filip Jerzy Pizło profil fotoğrafı
Filip Jerzy Pizło11 ay önce

The file name and line number become “<somewhere>” Inline frames are collapsed. But at least currently, I still keep function names. I might add an option to strip those (folks wanting minimum footprint will appreciate that)

Nyx profil fotoğrafı
Nyx11 ay önce

I do have a concern though that it would open the executable up to easier reverse engineering. But that is a different issue and the goal is memory safety.

muxcore profil fotoğrafı
muxcore11 ay önce

Very cool!

iru@localhot profil fotoğrafı
iru@localhot11 ay önce

> mfw I heard SystemV. > mfw I have no face

spacemonkey profil fotoğrafı
spacemonkey11 ay önce

Awesome

Darren Shepherd profil fotoğrafı
Darren Shepherd11 ay önce

@awesomekling I'm gonna be the guy that ignores all this incredible work that clearly took an immense amount of time to create and only comment on the squeaky chair.

t profil fotoğrafı
t11 ay önce

why does rust even exist XD

Richard L ✈ profil fotoğrafı
Richard L ✈11 ay önce

@chromatic_x @xorloser

Daniel Cook profil fotoğrafı
Daniel Cook11 ay önce

Probably would be even more useful to have a fil-c user space in a docker container

Filip Jerzy Pizło profil fotoğrafı
Filip Jerzy Pizło11 ay önce

What would be the value of having the memory safe stuff inside a container? I imagine you might want the opposite: - Your host OS has a memory safe userland - If you want to run unsafe code (for perf reasons) you do it in a container

Daniel Cook profil fotoğrafı
Daniel Cook11 ay önce

To make it easier to cross compile stuff when you need access to a bunch of system packages through pkg-config

2disbetter profil fotoğrafı
2disbetter11 ay önce

Excellent work and thanks for sharing! Any chance you wanna take on another DE / composter and push further into userland? If that is a silly question, let me rephrase: what is the next step?

Filip Jerzy Pizło profil fotoğrafı
Filip Jerzy Pizło11 ay önce

Next step is web browser

𝒢𝒾𝒷𝓇𝒶𝓃 😈 🏴‍☠️@geebee@bsd.network profil fotoğrafı
𝒢𝒾𝒷𝓇𝒶𝓃 😈 🏴‍☠️@[email protected]11 ay önce

@awesomekling Great work 👏

Max Kupriianov profil fotoğrafı
Max Kupriianov11 ay önce

Awesome background!! but, with all seriousness thanks for the rundown, really provides very useful context for understanding.

John Doe profil fotoğrafı
John Doe11 ay önce

👀

𝐃𝐫. 𝐀𝐛𝐢𝐢𝐫𝐚 𝐍𝐚𝐭𝐡𝐚𝐧 profil fotoğrafı
𝐃𝐫. 𝐀𝐛𝐢𝐢𝐫𝐚 𝐍𝐚𝐭𝐡𝐚𝐧11 ay önce

Video quality too low.

Sal ꙮ profil fotoğrafı
Sal ꙮ11 ay önce

This is great! Is there a write up somewhere describing how invisicaps are actually implemented? IIUC, they are created/used at runtime, not compile time.

Shantanu Gadgil profil fotoğrafı
Shantanu Gadgil11 ay önce

Would you consider uploading this to YouTube as well? (easier to share a "here, watch this" link with folks) 🙂

Richard L ✈ profil fotoğrafı
Richard L ✈11 ay önce

@ooPo

Benzer Videolar