1392
Comments (235)
sorted by:
You're viewing a single comment thread. View all comments, or full comment thread.
7
Artymisfoul 7 points ago +7 / -0

Really a sql injection hack? Do they have imbecilic software developers????

4
deleted 4 points ago +4 / -0
4
Ic3D 4 points ago +4 / -0

Do they have Twitter money? I don't think so ... Seems like the hack is still unproven, unless you have seen the leaked data ?

3
CantStumpTheTrump 3 points ago +3 / -0

Literally any WAF worth its salt should prevent SQL injections.

2
dev01 2 points ago +2 / -0

That's not the software engineers job. That's a penetration testers job.

5
CantStumpTheTrump 5 points ago +6 / -1

Security is everyones job.

1
dev01 1 point ago +1 / -0

A nice thing to say that functions as an excuse to avoid spending money on process improvement, actual security audits and bullet proofing.

2
Artymisfoul 2 points ago +2 / -0

That is dumb. Speaking as a software engineer you do not allow sql injection when writing software.

0
dev01 0 points ago +1 / -1

Not deliberately. But it's not our job to do in depth security testing

1
deleted 1 point ago +1 / -0
1
CantStumpTheTrump 1 point ago +1 / -0

I'm going to be straight up; you're one of those guys everyone hates to work with.

1
Artymisfoul 1 point ago +1 / -0

Sql injection is easy to avoid. Would not hire you fwiw.