Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

It's a meaningful difference for SaaS. Most likely an attacker doesn't have access to your running binary let alone source code, and if they probe it like a pentester would it will be noisy and blocked/flagged by your WAF.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: