

“We do not break userspace.” ~ Linus Torvalds
I would always argue that any distribution which does not prioritize this principle is a hobby project, not a serious distribution for end users.
Which is fine, hobby projects are good, but they should be labeled accordingly to properly set user expectations.
Nobody but nobody has time to know what’s in every library they might need to use. Who among us truly understands their network stack, all 8 layers?
That’s OK we will just train AI to review and refactor for us! I’m sure everything will be fine.
Vulnerable code will be with us forever. The system will always be Swiss cheese. If you think you understand common mistakes, enough that you can review other peoples’ code for them, there’s work for you in infosec for sure.