rustsecurecode's profile picture. Official Twitter for the Rust Secure Code Working Group: making it easy to write secure code in Rust

Rust Secure Code WG

@rustsecurecode

Official Twitter for the Rust Secure Code Working Group: making it easy to write secure code in Rust

Pinned

Introducing the Rust Safety Dance, a project by the Secure Code WG to audit and potentially eliminate usages of unsafe from core ecosystem (and other) crates: github.com/rust-secure-co…

rustsecurecode's tweet image. Introducing the Rust Safety Dance, a project by the Secure Code WG to audit and potentially eliminate usages of unsafe from core ecosystem (and other) crates:

github.com/rust-secure-co…

Rust Secure Code WG reposted

Introducing `auditable`: audit compiled @rustlang binaries against security advisories in the @RUSTSEC database: reddit.com/r/rust/comment…


Rust Secure Code WG reposted

The Rust team was notified of a vulnerability affecting crates.io API tokens generation and storage, and out of aboundance of precaution we revoked all existing tokens. Learn more on the advisory: blog.rust-lang.org/2020/07/14/cra…


Rust Secure Code WG reposted

cargo tools that may or may not be useful when auditing code: audit, clippy, geiger, outdated others?


Rust Secure Code WG reposted

`cargo audit fix` can now (sometimes) fix your vulnerable dependency requirements automatically!

cargo-audit v0.11: Introducing the `fix` feature, yanked crate detection, and more /cc @rustlang blog.rust-lang.org/inside-rust/20…



Keeping @rustlang projects secure with cargo-audit 0.9: dependency trees, core advisories, unmaintained crates - Inside Rust blog blog.rust-lang.org/inside-rust/20…


Interested in making it easy to reproduce builds of @rustlang apps/libraries or build-time sandboxing for Cargo? We're kicking off a couple of new crates and looking for interested contributors! - cargo-repro: github.com/rust-secure-co… - cargo-sandbox: github.com/rust-secure-co…

github.com

GitHub - rust-secure-code/cargo-sandbox: Perform Cargo builds inside of a sandboxed environment

Perform Cargo builds inside of a sandboxed environment - rust-secure-code/cargo-sandbox


Request for @rustlang CVE post-mortems when critical advisories occur in the standard library internals.rust-lang.org/t/request-for-…


After much ado, we have a real logo!


Rust Secure Code WG reposted

A proposal for a minimum viable integration between @rustsec and @rustlang's cargo utility: internals.rust-lang.org/t/pre-rfc-revi… #rust2019


Loading...

Something went wrong.


Something went wrong.