[cap-talk] Security considerations for cookies

Bill Frantz frantz at pwpconsult.com
Wed Feb 17 13:02:48 PST 2010


daw at cs.berkeley.edu (David Wagner) on Wednesday, February 17, 2010 wrote:

>Don't you just love web security?

Well not really. (And I realize that David wrote it with his tongue firmly
in his cheek).

In the old days, when I didn't understand how a security system achieved
its goals, I thought the problem was that I didn't understand the system
well enough. As time passed, and I became more of a curmudgeon, I found
that in most cases, the reason I didn't understand how it worked was
because it didn't work. Web security has more fiddley little bits, with new
ones being discovered every day. And these flaws assume "perfect"
implementations. And people wonder why I normally run my browser with
Javascript turned off.

Cheers - Bill

-----------------------------------------------------------------------
Bill Frantz        | I like the farmers' market   | Periwinkle
(408)356-8506      | because I can get fruits and | 16345 Englewood Ave
www.pwpconsult.com | vegetables without stickers. | Los Gatos, CA 95032


More information about the cap-talk mailing list