logoalt Hacker News

freeplayyesterday at 6:03 PM1 replyview on HN

Nailed it. Assume your client is compromised and/or malicious regardless of how it was built.


Replies

asdfsa32today at 1:37 AM

This is the most naive take on security ever. For the backend, you assume your client is compromised, but you still don't want to allow your client to be compromised.