|
|
|
|
|
by m12k
2798 days ago
|
|
This reminds me of the way most application developers aren't security experts, and it's taken decades with a lot of very public hacks for awareness about the risks to be spread and for a set of security practices and middleware to evolve (hashed & salted passwords, CSRF mitigation, input sanitation, etc.), to make it feasible for normal developers to create reasonably secure applications. It seems something similar needs to happen in tax administration (and tax law) to make tax systems that are not exploitable. Maybe a new class of white-hats to "pen-test" the tax systems using loopholes and shell companies instead of 0-days and scanners? |
|