3 ms·
In what way do Javascript heavy SPAs reduce supply chain attacks vs a no-JS solution?
by ferdowsi 4y ago
In what way do Javascript heavy SPAs reduce supply chain attacks vs a no-JS solution?
- upbeat_general 4y agoJust taking a guess: supply chain attacks may occur the same (or even more) but they’re less impactful client side. Makes it easier to have more trusted server-side code and less validated client-side JS.
- gatvol 4y agoThat was my assertion, I said the surface for attack included supply chain. As another poster pointers out, that is in fact reduced under some circumstances, since the runtime context is browser side.