samples-rs VS MSRC-Security-Research

Compare samples-rs vs MSRC-Security-Research and see what are their differences.

MSRC-Security-Research

Security Research from the Microsoft Security Response Center (MSRC) (by microsoft)
InfluxDB - Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com
featured
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com
featured
samples-rs MSRC-Security-Research
3 9
64 1,290
- 0.2%
6.3 5.1
over 3 years ago 7 months ago
Rust Python
MIT License Creative Commons Attribution 4.0
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

samples-rs

Posts with mentions or reviews of samples-rs. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2021-01-21.
  • Microsoft unifies all Windows APIs under a single Rust library generated from metadata
    3 projects | /r/programming | 21 Jan 2021
    Honestly doesn't seem that bad, from the examples in that repo all calls to win32 apis are unsafe, but all rust/winrt examples seem pretty clean. Check out this ocr example. It opens a file, reads a bitmap, then performs ocr. I didn't even know windows shipped with a builtin ocr api!
  • Rust for Windows
    14 projects | news.ycombinator.com | 21 Jan 2021
    For someone not familliar with Windows API, why does creating a Windows needs unsafe and other pointer passing ect ...? I guess it's the same for the C++/C# version?

    https://github.com/kennykerr/samples-rs/blob/master/create_w...

MSRC-Security-Research

Posts with mentions or reviews of MSRC-Security-Research. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-03-27.
  • A reactionary take on memory safety
    1 project | news.ycombinator.com | 3 Mar 2024
    You’ll find more primary sources across different organizations that all arrive at the 60 - 70% number. But what really grinds my gears here is that you take a piece from the article you’re criticizing and pretend that it’s a quote from Matt Miller.

    It’s actually quite easy to find a primary source here because the slides from the talk that the article is based on are available: https://github.com/microsoft/MSRC-Security-Research/blob/mas...

    To quote from those slides: „~70% of the vulnerabilities addressed through a security update each year continue to be memory safety issues“.

  • Zig and Rust
    6 projects | news.ycombinator.com | 27 Mar 2023
    > It's still bizarre though that Rust is capturing such ridiculous mindshare.

    I don't think it's that bizarre. The two big headline features that bring Rust such popularity are: #1 "70% of bugs are memory-safety bugs" [1] and Rust can help solve those, and #2 C/C++ have a couple of package manager solutions - none of which have critical mass and Rust "comes with" cargo.

    Those two make me really eager to continue experimenting with Rust.

    > It seems to be a temporary low-level programming zeitgeist driven by YouTube and Reddit recommendation algorithms to an audience that has never done it and probably never will.

    This is some weird gatekeep-y kinda thing. Most of us didn't start out with low-level programming. Wouldn't it have been odd and frustrating for someone to tell your younger self that you have "never written C and probably never will"?

    [1] https://github.com/microsoft/MSRC-Security-Research

  • Will Carbon Replace C++?
    14 projects | news.ycombinator.com | 27 Feb 2023
    https://github.com/microsoft/MSRC-Security-Research/blob/mas...
  • How CastGuard Works [BHUSA 2022]
    1 project | /r/ReverseEngineering | 29 Aug 2022
  • Arm releases experimental CHERI-enabled Morello board
    4 projects | news.ycombinator.com | 20 Jan 2022
    Windows is likely a big task for the same reasons as SMAP (https://github.com/microsoft/MSRC-Security-Research/blob/mas...). XNU should be comparable to FreeBSD, which CheriBSD is a fork of, as both use Mach's VM for memory management and have a bunch of shared code in various places, but userspace is more of an unknown quite how much effort it'd be (you'll need to port Objective-C and, now, Swift, for example). For Chromium we have ported WebKit, so I'd imagine Blink isn't too dissimilar. V8 is likely interesting, though we have a version of WebKit's JSC JIT for Morello, which gives confidence in V8 being doable.
  • Security Analysis of CHERI ISA
    1 project | /r/cybersecurity | 4 Aug 2021
  • Security Analysis of Cheri ISA [pdf]
    1 project | news.ycombinator.com | 4 Aug 2021
  • BleedingTooth: Linux Bluetooth Zero-Click Remote Code Execution
    3 projects | news.ycombinator.com | 7 Apr 2021
    A related post from Google Security Blog[0]:

    > "A recent study[1] found that "~70% of the vulnerabilities addressed through a security update each year continue to be memory safety issues.” Another analysis on security issues in the ubiquitous `curl` command line tool showed that 53 out of 95 bugs would have been completely prevented by using a memory-safe language. [...]"

    [0]: https://security.googleblog.com/2021/02/mitigating-memory-sa...

    [1]: https://github.com/Microsoft/MSRC-Security-Research/blob/mas...

  • Rust for Windows
    14 projects | news.ycombinator.com | 21 Jan 2021
    Here is some of the internal advocacy going on at Microsoft.

    - Managed languages if you can afford a GC

    - Rust

    - C++ with Core Guidelines

    https://github.com/microsoft/MSRC-Security-Research/tree/mas...

    Note that there are still some teams like Azure Sphere and Azure RTOS, which are only providing C based SDKs, so no everyone is on the same wave length.

What are some alternatives?

When comparing samples-rs and MSRC-Security-Research you can also consider the following projects:

win32ada - Ada API to the Windows library

rust-zmq - Rust zeromq bindings.

core-foundation-rs - Rust bindings to Core Foundation and other low level libraries on Mac OS X and iOS

wuffs - Wrangling Untrusted File Formats Safely

win32metadata - Tooling to generate metadata for Win32 APIs in the Windows SDK.

PowerShell - PowerShell for every system!

winapi-rs - Rust bindings to Windows API

windows-rs - Rust for Windows

Cargo - The Rust package manager