logoalt Hacker News

DamonHDyesterday at 12:12 PM1 replyview on HN

When I last looked (as a consulting dev in a bank or three, horrified) absolutely they had not!


Replies

cluckindanyesterday at 12:59 PM

If this was in the US, all financial institutions need to audit their code to comply with NIST SP 800-53.

If they haven’t, it would be ethically dubious for you to not report it.