Skip to content
Rust Search
← Browse conferences

An intro to the world of auditing Rust code

Oxidize Conference
Oxidize 35:18 402 views

Your Rust code may be memory safe and the tests may pass, but that doesn’t mean there can’t be security vulnerabilities. Put your adversarial hat on and join me on a bug-hunting journey as we sharpen our testing tools. Rust and its ecosystem of crates is very safety- and soundness-orientated. This poses a challenge to auditors and bug hunters. There don’t tend to be the usual string of null pointer dereferencing, buffer over runs, or parsing bugs to fill reports. More involved application-level

Player unavailable or embedding blocked? Use the YouTube link above.