Midori: A Tale of Three Safeties
joeduffyblog.com
joeduffyblog.com
With defense in depth, inherently insecure OS's, libraries, and so on mean extra layers = some extra time/effort. We also know that software markets concentrate into a small number of products in each category that get dominant. We also know nation states and malware authors specialize and increase efficiency similar to markets with effort focused on greatest gains. So, naturally, these combine to dramatically reduce odds one will be safe if they're using popular combinations of hardware, OS's, and software.
High assurance is still necessary. At least at the level of CPU's, kernels, type systems, protocols, and so on. The critical stuff everything else depends on. Rest might be contained or detected running on right architecture.