Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Private keys checked into code?

Password salts that were identical for the entire set?

"Random" initialization vectors always created from the same prng seed?

Without coders like these, hackers would really have to work for it.

(And, yes, I've encountered all of these in my career.)



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: