upvote
Sadly complexity is unavoidable for most real-world usecases. Just see how so many people interested in de-Googled phones balk at the prospect of losing access to banking apps. Telling them to go use an OS that doesn't support Bluetooth isn't going to work, but hopefully you wouldn't say that means they should give up all hope of security.

Abstraction has served us well in managing complexity before. I wouldn't abandon it out of misplaced idealism.

reply
Hey I'm quite happy to run my banking over TN3270 :)
reply
> tone was appropriate

TDR said:

> You are absolutely deluded, if not stupid, if you think that a worldwide collection of software engineers who can't write operating systems or applications without security holes, can then turn around and suddenly write virtualization layers without security holes.

This comment wouldn't survive HN scrutiny. It's a strawman argument, and doesn't address the core point at all: does virtualization improve or degrade security, when taken as a whole?

Adam's response is great, and TDR is smart, but he's been a lightning rod for 20 years for a reason: he was doing hot takes before they were even called that, and this is a great example.

reply
Theo and Linus' prolonged public attitudes are exactly why I boycott OpenBSD and Linux.
reply