Hacker News new | ask | show | jobs
by Yoric 1161 days ago
> The fundamental challenge is that by the time a "secure default" has been universally agreed on, and implemented widely in a space, the target moves again.

That is certainly true, but there is also such a thing as "definitely insecure default", which can (and I believe should) be discouraged piecewise.