this post was submitted on 03 Apr 2024
425 points (89.1% liked)

Programmer Humor

32581 readers
1182 users here now

Post funny things about programming here! (Or just rant about your favourite programming language.)

Rules:

founded 5 years ago
MODERATORS
 
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 146 points 7 months ago (9 children)

I thought it was poking fun at the tutorial saying instead of learning to code, import a library from someone who knows how to code.

[–] [email protected] 41 points 7 months ago (5 children)

That's what libraries are for. I'm no security expert and the sensible thing to do is using a library instead of taking a class.

[–] [email protected] 25 points 7 months ago* (last edited 7 months ago) (4 children)

I’m no security expert and the sensible thing to do is using a library instead of taking a class.

Counterpoint: "not knowing your libraries" + "blind trust in the maintainer" will give you stuff like this: https://bitbucket.org/snakeyaml/snakeyaml/issues/561/cve-2022-1471-vulnerability-in

(the thread itself is worth a read. But also very impressive is the list of big players who fell for exactly this mentality)

[–] gears 7 points 7 months ago (1 children)

Jesus that was one hell of a thread

[–] [email protected] 3 points 7 months ago

I dont want to see the words "low quality tooling" ever again.

load more comments (2 replies)
load more comments (2 replies)
load more comments (5 replies)