Engineers usually know how to do the hard stuff quite well. What causes compromises is mishandling the boring stuff no one cares about. This is why mature frameworks and coding standards are so important, and why continuously adopting the latest cool tech gets you breached.
Replying to @jvehent
This is especially true in web security where the most boring things ("display some text", "link to another page") are unsafe by default and lead to code execution on the client. Sadly, the best solution has been to build complex abstraction layers over common unsafe native APIs.
3:54 AM - 30 Jun 2018
0 replies
0 retweets
3 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.