GeistHaus
log in · sign up
12 pages link to this URL
Bootstrappable Software

Software is bootstrappable when it does not depend on a binary seed that cannot be built from source. Software that is not bootstrappable—even if it is free software—is a serious security risk for a variety of reasons. The Bootstrappable Builds project aims to reduce the number and size of binary seeds to a bare minimum. I think this is Malleable adjacent because software because of the two first principles of malleable software: Software must be as easy to change as it is to use it All layer...

1 inbound link website en
Fully Countering Trusting Trust through Diverse Double-Compiling (DDC)

David A. Wheeler's Page on Countering 'Trusting Trust' through Diverse Double-Compiling (DDC) - Countering Trojan Horse attacks on Compilers

14 inbound links en Trusting trusttrojan horsecompilercompilerscompilationsubversionmaliciousmalicious compilersubverted compilerThompsonKen ThompsonACSACACSAC 2005diverse double-compilingdiverse double compilingDDCReflections on Trusting Trustreproducible buildsreproduceable buildsdeterministic buildsSpencerKargerSchellDraperMcDermottUnixC compilertccgccDavidWheelerDavid A. Wheelermicro-taintmicrotaintmicro-taintingmicrotaintingPerlregular expressions
Guix

Blog posts about GNU Guix.

9 inbound links en BootstrappingReproducible buildsSecurity