3 ms·
If security vendors followed this logic then all an attacker would have to do is look up the error and render the security moot. By leaving the reason vague an
by imchillyb 2y ago
If security vendors followed this logic then all an attacker would have to do is look up the error and render the security moot.
By leaving the reason vague an attacker has no immediate feedback and no clue how to remedy.
I vastly prefer the way this works now.
- wtetzner 2y agoThe only way this could be an issue is if it's entirely relying on security through obscurity.
- saagarjha 2y agoAttackers are smarter than you give them credit for
- imchillyb 2y agoI believe humans are vastly more stupid than you give them credit for. It's the HN effect. The pool of geniuses here suggests to the reader that the pool of intelligence outside of this microcosm is similar. It's not. Criminals are overwhelmingly stupid. It's why LEO catches so many of them. Smart people don't tend to do crime, they tend to sell their skills to more legitimate enterprises.
- saagarjha 2y agoYou are vastly overestimating the intelligence of the people on this site.