• 0 Posts
  • 42 Comments
Joined 1 year ago
cake
Cake day: August 22nd, 2023

help-circle





  • iAvicenna@lemmy.worldtoProgramming@programming.devSafe C++
    link
    fedilink
    arrow-up
    6
    ·
    edit-2
    2 months ago

    I am also curious how much of those “%70 of the vulnerabilities” would be detected by tools like valgrind, CPPcheck etc (either directly in the former case or indirectly in the latter). If a major part, then the main problem is people not incentivized to / not having enough time to use these tools.







  • NGL I am also a second hand witness to it. This particular example may be a few but there are a lot of others to the same effect: evaluating performance based on number of lines of code, trying to combine multiple dev responsibilities into a single position, unrealistic deadlines which can usually be met very superficially, managers looking for opportunities to replace coders with AI and further tasking other devs with AI code checking responsibilities, replacing experienced coders with newly graduates because they are willing to work more for less. All of these are some form of quantity over quality and usually end up with some sort of crisis.