Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

How about putting a tool like Incapsula on top (free option offers 2 factor authentication) which makes hacking just a bit harder.


2 factor authentication is great, but it won't stop an attacker from using an XSS attack to get the authentication cookie.

In general, security isn't something that can be tacked on as an afterthought, it has to be built in from the beginning.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: