Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I presume he meant "defend the perimteter, and they never get execution, so there is no need to defend the inside against privilege escalation".

The opposing line of thought is defense in depth. The idea being that "a hard shell but soft and mushy on the inside" is a fragile setup and only needs one thing to go wrong.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: