Hacker News new | ask | show | jobs
by beders 560 days ago
It is a good reminder for front-end devs that security-through-obscurity is not sufficient. It never has.

Reminds me of a security company that claimed they could force a watermark onto any content in their web-front-end. Turns out it was a canvas overlay you could just simple delete from the HTML. LOL.

2 comments

I used a tool in school that outputted svgs with watermarks. So I proved that if I ever wanted to, though I never needed to, I could just delete that element. Trivial.
This is such a problem in security - executives don’t know that and will buy all sorts of security theatre bullshit