HN2new | past | comments | ask | show | jobs | submitlogin

This is also why smart money in appsec is focused on langsec and framework-integrated security controls, such as by forcing security patterns (e.g. html-context output encoding) by default and by compelling developers to work harder or, should they decide to break the rules, to do so more visibly.


("work harder to be wrong" specifically)




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: