Erlang/OTP 29.0
AIThis post was created with the assistance of artificial intelligence (AI).

TL;DR

AUDIBLE

Listen free for 30 days with Audible

Thousands of audiobooks and originals — cancel anytime.

Start your free trial

As an affiliate, we earn on qualifying purchases.

Erlang/OTP 29.0 is now available, bringing significant new features, improved security defaults, and compiler warnings. The release aims to enhance performance, safety, and developer productivity.

Erlang/OTP 29.0 has been officially released, marking a major update with new features, security improvements, and some incompatibilities, according to the Erlang/OTP team.

The release introduces support for -unsafe attributes to mark functions as unsafe, with the compiler warning about such calls. The SSH daemon now defaults to disabled for shell and exec services, aligning with the ‘secure by default’ principle, and the SFTP subsystem is no longer enabled by default. In SSL, the hybrid quantum-resistant key exchange algorithm x25519mlkem768 is now preferred. New language features include native records, multi-valued comprehensions, and an improved is_integer/3 guard. The compiler now emits warnings for deprecated constructs like catch, variable exports from subexpressions, and obsolete boolean operators. Enhancements to the stdlib include functions for list permutation, and the SSH default key exchange algorithm has shifted to mlkem768x25519-sha256, offering quantum resistance.

Why It Matters

This update matters because it enhances security by default, introduces advanced language features for more expressive code, and improves performance through compiler optimizations. Developers need to be aware of potential incompatibilities and new warnings to update their codebases accordingly.

Amazon

Erlang/OTP 29.0 development tools

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Background

Erlang/OTP 29.0 follows previous releases focusing on performance and security. Notably, the support for native records is experimental, and the shift to secure defaults in SSH reflects ongoing security improvements. The release also continues the trend of adding language features to improve developer productivity and code safety.

“Erlang/OTP 29.0 introduces significant new features and security defaults, marking an important step forward for the platform.”

— Erlang/OTP Team

“The new support for -unsafe attributes and compiler warnings aims to improve code safety and maintainability.”

— Erlang/OTP Documentation

Amazon

secure SSH server hardware

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

What Remains Unclear

It is not yet clear how widely adopted the new native records will become, as they are marked experimental. Additionally, the full impact of the new compiler warnings on existing codebases remains to be seen, and some incompatibilities may surface as developers update.

Amazon

quantum-resistant cryptography hardware

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

What’s Next

Next steps include developers adopting Erlang/OTP 29.0, testing their applications against the new features, and monitoring community feedback for any unforeseen issues. Further updates or patches may follow to address initial challenges.

Amazon

Erlang programming books

As an affiliate, we earn on qualifying purchases.

As an affiliate, we earn on qualifying purchases.

Key Questions

What are native records in Erlang/OTP 29.0?

Native records are a new data type introduced as an experimental feature, providing a more efficient and type-safe alternative to traditional tuple-based records.

How does the new default SSH configuration improve security?

The SSH daemon now defaults to disabling shell and exec services, reducing the risk of arbitrary code execution by authenticated users unless explicitly enabled.

What is the significance of the new hybrid quantum-resistant key exchange algorithm?

The x25519mlkem768 algorithm enhances security against quantum attacks while maintaining compatibility with existing systems, marking a step forward in cryptographic robustness.

FLEA & TICK SEAS

Flea & tick season Picks

As an affiliate, we earn on qualifying purchases.

You May Also Like

Social Engineering Attacks: Why Humans Are the Weakest Link

Acknowledge how social engineering exploits human psychology, making us the weakest link in cybersecurity—learn how to spot and prevent these manipulative attacks.

New Nginx Exploit

A new exploit for CVE-2026-42945 allows unauthenticated remote code execution in Nginx servers, impacting versions 0.6.27 to 1.30.0.

How to Spot and Avoid Phishing Scams

Protect yourself from phishing scams by learning key warning signs—discover how to stay safe and avoid falling victim today.

Valorant’s new Vanguard update seems to be bricking cheaters’ PCs. Riot’s response? “Congrats on your $6k paperweights”

Riot Games states Vanguard anti-cheat does not ‘brick’ PCs, clarifying recent claims about hardware damage linked to updates, amid ongoing anti-cheat concerns.