Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Their managers don't incentivize them spending time on it, and their PM will fight security tickets they don't understand the need for. Most devs have little autonomy at orgs today and operate under a strict hierarchy of command at the ticket level.


Presumably, "we're been storing 600 Million passwords in plaintext" is understandable to their PMs given its understandable to complete laymen. Aren't FAANG companies supposed to employ the very brightest minds.

Hard to imagine this wasn't done on purpose.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: