I get it, legacy crap has momentum and you can’t ignore that. What’s not ok is the mountain of people who pretend that’s not a problem.
The industry will only really change when pushed to do so.
Question here is: can they fix potholes faster than new ones show up?
Seems answer is no for tech. And construction, these days.
https://en.m.wikipedia.org/wiki/Burroughs_large_systems
Nowadays still being sold to governments that care about security.
https://itupdate.com.au/page/unisys-clearpath-mcp-unsurpasse...
https://www.unisys.com/ms/client-education/course-catalog/cl...
Or maybe 1983?
https://en.m.wikipedia.org/wiki/Rational_R1000
Maybe 1982,
https://news.ycombinator.com/item?id=22375449
Plenty of examples (those are a tiny snippet) on how safe OSes should be written, until there is liability the easiest way will always win.
In order for a construction engineer to "see" a pothole, they need to actually know where the pothole is and physically go there.
When you have millions of kilometers of paving across a continental-sized country, like the US or China, for example, this is unfeasible. "Seeing" a pothole isn't so simple as it might give you a first impression...
The move to a large majority of software being run in a sandboxed environment has drastically reduced this sort of thing.
Eventually this will be standard in software as well.
Remember Diginotar?
Who knows how many lives were affected in Iran...
That has never happened to software developers.