Y
Hacker News
new
|
ask
|
show
|
jobs
by
alexchamberlain
5259 days ago
Headers are too easily spoofed to carry security information without a signature.
1 comments
mooism2
5259 days ago
It's like security through obscurity: on its own it's inadequate, but as an extra layer it can be helpful.
link
alexchamberlain
5259 days ago
How is this helpful? We have proved it's inconsistent... Do you check IP addresses for security too?
link
mooism2
5258 days ago
I can imagine a bank fraud detection system being more suspicious of unusually large transactions if they originate from an unusual phone number or ip address, yes.
link