TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Security: better to be proactive or reactive?

1 pointsby andersonmvdalmost 9 years ago

1 comment

daenneyalmost 9 years ago
&gt; However this way you will focus on fixing only real world attacks. Still, it&#x27;s somewhat a shameful thing to put vulnerable applications on production and rely solely on bug hunters to find bugs before attackers. Shameful because of the disrespect with customer data and your own data &#x2F; reputation. In the end it&#x27;s still insecure. Bug hunters should only be considered &quot;an extra help&quot; and nothing else.<p>Shameful? Sure, if you know about the vulnerabilities. But in most case they&#x27;re honest human mistakes that make it out to production or because we&#x27;ve failed to educate people on properly securing their web apps and properties in general. And that sucks. And sometimes these bugs live on for years. But calling it shameful is rather harsh and it doesn&#x27;t improve any of it either. If anything it makes people feel crappy over it.
评论 #12189577 未加载