Hacker News new | ask | show | jobs
by jkl5xx 96 days ago
> If the pen tester doing a security evaluation judges that a bug is easier to find and exploit if the source code is public, then, sharing the source code lowers your score

Good on the author for calling out how nuts this is! In the age of LLM coding agents, I feel this mentality needs to change quickly. Security through obscurity is dead. LLMs have little to no issues conversing in encoded or obfuscated data.