logoalt Hacker News

dangoodmanUTyesterday at 8:20 PM1 replyview on HN

One thing I find about these "all in one" platforms is that they tend to lure people into a sense of "wow this is easy to use" such that they forget to check security, assuming it's covered.

This is one reason why Firebase was such a gold-mine for security researchers: everyone just forgot about security when they forgot about their backend.


Replies

teaearlgraycoldyesterday at 8:25 PM

Any time I see a product like Firebase that rolls auth and other major features into a database I roll my eyes.

show 2 replies