Hacker News new | past | comments | ask | show | jobs | submit login

Do you work on projects as a programmer where the project has rich ui requirements and tight deadlines? I ask this because your advice not to use Javascript is, to me, completely unrealistic.

Yes, I manage a team of guys doing just that. And there's no avoiding JavaScript today.

This was a presentation at a security conference.


I like how you mentioned frameworks like RoR that have XSRF prevention built in. Not enough security talks mention things like that.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact
