[langsec-discuss] [oss-security] Thoughts on Shellshock and beyond

Michal Zalewski lcamtuf at coredump.cx
Tue Oct 7 15:39:26 UTC 2014

> So in short: you need to design and implement interfaces
> for every program which enforce explicit security boundaries.
> [...]
> I know this means re-implementing almost all code out there.

Well, that's the thing: ideas that sound good on paper are dime a
dozen. Most of them have been tried, too: people have designed systems
that fit Bell-LaPadula, created languages like Ada, reinvented the web
to strictly isolate code & data and each site from each other, etc.

Sometimes, efforts like this fail simply due to bad timing or bad
luck; but most of the time, they just produce solutions that are
unusable, unappealing, or otherwise difficult to work with.

Usable and practical security is hard, and we don't really have all
the answers there - we can barely scratch the surface today.


More information about the langsec-discuss mailing list