skip to main content
article
Free access

Reflections on trusting trust

Published: 01 August 1984 Publication History

Abstract

To what extent should one trust a statement that a program is free of Trojan horses? Perhaps it is more important to trust the people who wrote the software.

References

[1]
Bobrow, D.G., Burchfiel, J.D., Murphy, D.L., and Tomlinson, R.S. TENEX, a paged time-sharing system for the PDP-10. Commun. ACM 15, 3 (Mar. 1972), 135-143.
[2]
Kernighan, B.W., and Ritchie, D.M. The C Programming Language. Prentice-Hall, Englewood Cliffs, N.J., 1978.
[3]
Ritchie, D.M., and Thompson, K. The UNIX time-sharing system. Commun. ACM 17, (July 1974), 365-375.
[4]
Unknown Air Force Document.

Cited By

View all
  • (2024)Hardware Trojan Attacks on the Reconfigurable Interconnections of Field-Programmable Gate Array-Based Convolutional Neural Network Accelerators and a Physically Unclonable Function-Based Countermeasure Detection TechniqueMicromachines10.3390/mi1501014915:1(149)Online publication date: 19-Jan-2024
  • (2024)XAI Human-Machine collaboration applied to network securityFrontiers in Computer Science10.3389/fcomp.2024.13212386Online publication date: 13-May-2024
  • (2024)Merchants of Vulnerabilities: How Bug Bounty Programs Benefit Software VendorsSSRN Electronic Journal10.2139/ssrn.4808742Online publication date: 2024
  • Show More Cited By

Recommendations

Reviews

Grady Gaston Early

Ken Thompson's 1983 Turing Award lecture is a fascinating glimpse at a current sociological phenomenon :V unauthorized access to computer systems. The first part of the lecture deals with a hacker's delight :V in C, of course. The second part extends the idea to illustrate how a compiler in this case, the C compiler can be made completely portable. The final extension, in the third part of the lecture, deals with untraceable insertions of Trojan Horses into program translators. The moral is unsettling, as well as obvious: If you didn't write it, you can't trust it.:L

Access critical reviews of Computing literature here

Become a reviewer for Computing Reviews.

Comments

Information & Contributors

Information

Published In

cover image Communications of the ACM
Communications of the ACM  Volume 27, Issue 8
Aug 1984
90 pages
ISSN:0001-0782
EISSN:1557-7317
DOI:10.1145/358198
Issue’s Table of Contents
Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than ACM must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected]

Publisher

Association for Computing Machinery

New York, NY, United States

Publication History

Published: 01 August 1984
Published in CACM Volume 27, Issue 8

Permissions

Request permissions for this article.

Check for updates

Qualifiers

  • Article

Contributors

Other Metrics

Bibliometrics & Citations

Bibliometrics

Article Metrics

  • Downloads (Last 12 months)17,428
  • Downloads (Last 6 weeks)1,750
Reflects downloads up to 26 Oct 2024

Other Metrics

Citations

Cited By

View all
  • (2024)Hardware Trojan Attacks on the Reconfigurable Interconnections of Field-Programmable Gate Array-Based Convolutional Neural Network Accelerators and a Physically Unclonable Function-Based Countermeasure Detection TechniqueMicromachines10.3390/mi1501014915:1(149)Online publication date: 19-Jan-2024
  • (2024)XAI Human-Machine collaboration applied to network securityFrontiers in Computer Science10.3389/fcomp.2024.13212386Online publication date: 13-May-2024
  • (2024)Merchants of Vulnerabilities: How Bug Bounty Programs Benefit Software VendorsSSRN Electronic Journal10.2139/ssrn.4808742Online publication date: 2024
  • (2024)The Design of a Self-Compiling C Transpiler Targeting POSIX ShellProceedings of the 17th ACM SIGPLAN International Conference on Software Language Engineering10.1145/3687997.3695639(70-83)Online publication date: 17-Oct-2024
  • (2024)Zero Tolerance for BiasQueue10.1145/366464522:2(19-38)Online publication date: 29-May-2024
  • (2024)AROMA: Automatic Reproduction of Maven ArtifactsProceedings of the ACM on Software Engineering10.1145/36437641:FSE(836-858)Online publication date: 12-Jul-2024
  • (2024)Increasing trust in the open source supply chain with reproducible builds and functional package managementProceedings of the 2024 IEEE/ACM 46th International Conference on Software Engineering: Companion Proceedings10.1145/3639478.3639806(184-186)Online publication date: 14-Apr-2024
  • (2024)Ambush From All Sides: Understanding Security Threats in Open-Source Software CI/CD PipelinesIEEE Transactions on Dependable and Secure Computing10.1109/TDSC.2023.325357221:1(403-418)Online publication date: 1-Jan-2024
  • (2024)ImpNet: Imperceptible and blackbox-undetectable backdoors in compiled neural networks2024 IEEE Conference on Secure and Trustworthy Machine Learning (SaTML)10.1109/SaTML59370.2024.00024(344-357)Online publication date: 9-Apr-2024
  • (2024)Compiler Differentiation Detection Method for Binary Similarity2024 International Conference on Networking and Network Applications (NaNA)10.1109/NaNA63151.2024.00019(72-77)Online publication date: 9-Aug-2024
  • Show More Cited By

View Options

View options

PDF

View or Download as a PDF file.

PDF

eReader

View online with eReader.

eReader

Get Access

Login options

Full Access

Media

Figures

Other

Tables

Share

Share

Share this Publication link

Share on social media