Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
ssivark
on Feb 26, 2022
|
parent
|
context
|
favorite
| on:
Zulip Cloud security vulnerability with reusable i...
Is this bug another manifestation of the ubiquitous “confused deputy” problem that results from conflating authorization and authentication? (Trying to relate to some recent stuff I’ve read about the importance of “object capabilities”)
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: