Hacker News new | past | comments | ask | show | jobs | submit login

I can't think of a reliable way to filter out "malicious" code without also having many false positives.

Without having seen their solution, I feel that the browser is the wrong place to fix this kind of problem anyway. Much like PHP tried to prevent SQL Injection Attacks with "Magic Quotes" - we all know how that went.




This is not about the browser "fixing" the issue, but rather helping developers find the issues in the first place.




Consider applying for YC's Summer 2025 batch! Applications are open till May 13

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: