I know we are like ten thousand miles OT by now but I just couldn't resist the baitOriginally Posted by Arno Werr
- well IMHO the alleged security holes in javascripts are not really in javascript as a language itself, but rather come from developers knowing too little and assuming too much. Check out thedailywtf and you'll see incompetent people can actually be quite competent at finding ways to screw up their system security, with or without javascript - e.g., by relying on client-side security checking, or by injecting cookie values into SQL statements.


- well IMHO the alleged security holes in javascripts are not really in javascript as a language itself, but rather come from developers knowing too little and assuming too much. Check out thedailywtf and you'll see incompetent people can actually be quite competent at finding ways to screw up their system security, with or without javascript - e.g., by relying on client-side security checking, or by injecting cookie values into SQL statements.
Reply With Quote