Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

isn't cases like this where the saying "security through obscurity is no security at all" came from?


Not really, no. That came about more from people claiming to have good security, but not disclosing their security practices and many of them turning out to be rather insecure.

Many products (Google Docs, Youtube, Office 365, Dropbox, etc) allow sharing things via unguessable URLs; it's a standard practice that was safe, until browsers and browser extensions decided it was okay to send private URLs to other parties.

I would not be surprised if the EU steps in at some point and fines them heavily for it.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: