Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Writing such an exploitable code is entirely forgivable. However, I would expect such a critical module to be thoroughly unit tested. I am going to venture that it probably was not the case.


Not exactly sure how forgivable this is. But yes, unit testing and writing a few negative scenarios would have caught this problem early on.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: