Java Creator: Huge Security Hole in .Net

SYDNEY, Australia – James Gosling, developer of the Java programming language, said this week that Microsoft’s .NET development platform suffers from “a security hole big enough to drive many, many large trucks through.”

Speaking to developers at a programming event, Gosling commented that, “The Microsoft folks made a big deal of being able to support C and C++ on the [common language runtime], and that, to my mind, is one of the stupidest, most offensive things they could have done.”

The problem, said Gosling, is that several features of C and C++ are not consistent with or bounded by tight memory model integrity.

“C++ allowed you to do arbitrary casting, arbitrary adding of images [and] pointers, and converting them back and forth between pointers in a very, very unstructured way,” said Gosling, who currently serves as chief technology officer of Sun’s developer products group.

Gosling went on to compare .NET’s security model to that of Java, saying, “A lot of things in [Java’s] exception handling, they depend really critically on the fact that there is some integrity to the properties of objects. So if somebody gives you an object and says, This is an image,’ then it is an image. It’s not like a pointer to a stream, where it just casts an image.”

Also on hand at the event was Microsoft developer Charles Sterling, who defended his company’s product by pointing out that .NET requires additional permission to execute C and C++, so developers have the freedom to decide for themselves whether to use older, unsafe code in their applications.

Sterling added that of more than one thousand developers using .NET frameworks, he knows of only one who is implementing C and C++ in his applications.

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Signature Partners With BunnyCMS for Secure Payment Processing

Signature Payments has partnered with adult content management platform BunnyCMS to offer creators secure payment processing.

Sexologist Dr. Susan Block Files Motion in Meta Lawsuit

Sexologist Dr. Susan Block has reported she has filed a Motion to Vacate with a California court after an arbitrator threw out her case against Meta in June.

JustFor.fans Launches BlueSky Autoposting Feature

JustFor.fans has launched a new BlueSky autoposting feature that shares JFF posts on the social media platform.

Pineapple Support Introduces 'Sacred Rage' Support Group for Performers, Creators

Pineapple Support will host a free online support group for performers and creators, designed for individuals struggling with intense emotions and the pain often hidden behind their anger.

FSC: Kansas Attorneys Seeking Plaintiffs to Sue Adult Companies Over Age Verification

Free Speech Coalition (FSC) has released a statement warning that a personal injury law firm in Kansas is soliciting plaintiffs to sue adult companies under the state's age verification law.

Ukrainian Parliament Registers Bill to Decriminalize Porn

Ukraine's parliament, the Verkhovna Rada, registered a bill today to decriminalize the creation and distribution of pornography.

Cherie DeVille Guests on 'Sex Tales' Podcast

2023 XBIZ Performer of the Year Cherie DeVille is the latest guest on the "Sex Tales" podcast, hosted by Melissa Stratton and Vanniall, streaming on the company’s “Camming Life” YouTube channel.

Niki Media Acquires BritSexCash

Production studio Niki Media BV has acquired affiliate program BritSexCash.

FSC Warns of Nude Photography Site Falsely Claiming Affiliation With Organization

Free Speech Coalition (FSC) published a statement Friday warning of a nude art photography website fraudulently claiming to be associated with the industry trade organization.

MojoHost Reaffirms Commitment to Adult Industry Amid Project 2025 Implications

In the wake of Tuesday’s election and concerns about Project 2025’s potential ramifications, MojoHost President Brad Mitchell has released a statement affirming its commitment to the adult industry.

Show More