Hacker News new | past | comments | ask | show | jobs | submit login

Is this bug another manifestation of the ubiquitous “confused deputy” problem that results from conflating authorization and authentication? (Trying to relate to some recent stuff I’ve read about the importance of “object capabilities”)



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: