Well said. There are really some abominable security practices out there. And much of the anti establishment attitude and "rebel dev" self-promotion does enough to cover it up and create a sense of false security in the community.

Replies (2)

To be fair, security is hard and nobody or organization is perfect, including me. And nothing wrong with self promotion, especially in open source where funding is scarce or non-existent. But too much overconfidence can be misleading to self and others.
โ†‘