-
-
Replying to @doragasu
Calling djb incompetent are words too big for almost anyone. Careful there!
1 reply 0 retweets 1 like -
Replying to @reidrac
I do not know this exact case. But I fight everyday people that are in a high position because of their expertise in one field, and want to impose nonsense on other fields they think they know, but they don't. Very frustrating and energy consuming experience.
1 reply 0 retweets 0 likes -
Replying to @doragasu
IDK. djb can be eccentric, incompetent? uh https://en.wikipedia.org/wiki/Daniel_J._Bernstein …
1 reply 0 retweets 0 likes -
Yes, I specified incompetent *in another field*. Not checking for integer overflows and relying on your program being run with a virtual memory limit for security instead is incompetence in the field of secure service programming. Sure, I trust him to write crypto code though.
2 replies 0 retweets 0 likes -
This, by the way, makes *perfect sense* when you consider that writing secure crypto code is all about *minimizing* condition checks and branches and working with fixed sized data blobs, while writing secure app code is the exact opposite, checking and validating everything.
1 reply 0 retweets 0 likes
Which also means I also wouldn't want him anywhere an x509 parser or PKI implementatiom, but very happy to have him write the underlying crypto primitives :-)
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.