SECURITY·중요도 8·2026. 09. 27.·InfoQ

Google Rewrites Critical C Dependencies to Rust Using AI and Differential Fuzzing

── KO ──────────────────

구글의 보안팀이 C 코드의 Rust로의 자동 마이그레이션 방법을 개발했다.

구글의 보안팀은 giflib 이미지 처리 라이브러리의 오래된 C 코드를 Rust로 대체하는 방법을 개발했습니다. 이 과정은 메모리 취약점을 목표로 하며, 호환성과 제로데이 취약점 완화를 보장하는 자동화된 마이그레이션 프로세스를 활용했습니다. 프로젝트는 런타임 성능을 유지하면서 AI 번역이 지속적인 인간의 감독을 필요로 함을 보여주었습니다.


── EN ──────────────────

Google's security team developed a method to automate C to Rust migration for giflib.

Google's security team has developed a method to replace legacy C code in the giflib image-processing library with Rust. This process targets inherent memory vulnerabilities and employs an automated migration approach to ensure compatibility and mitigate zero-day vulnerabilities. The project successfully maintained runtime performance while illustrating the need for ongoing human oversight in AI translations.

원문 보기 →목록으로