Image transcripion: shows a red sign with white text that says “STRICTLY NO ACCESS” mounted on a metal gate. The gate appears to be part of a fence around a park, with trees visible in the background but there is no fence around the gate or anywhere else


(Originally published earlier today on mastodon.social)

19 points
*

I generally use this picture to explain client-side security to an unsuspecting audience

Image transcription: A public emergency telephone with a sign stating “Only 911 can be dialed,” with the numbers 9 and 1 buttons taped to make it the only accessible dialing option.

permalink
report
reply
7 points

Joke’s on them. The number I wanted to dial was 1-999-999-9999.

permalink
report
parent
reply
2 points

Whose that number?

permalink
report
parent
reply
2 points
14 points

There’s a difference between ‘I would rather the user didn’t do that’ and ‘We must not allow this to happen’.

User enters the empty string for their password recovery question? Don’t care. Let the Frontend handle this. If the user is capable enough to disable the frontend validation, they’re capable to remember their password.

User enters SQL as their password recovery question? Validate in the backend.

permalink
report
reply
1 point

The issue with your example is that it could be that there was a bug and the user didn’t disable the validation and intend to send an empty string.

permalink
report
parent
reply
7 points
*

The key-code to open the gate is: 1234

permalink
report
reply
5 points
*

they mean for wheelchairs.

permalink
report
reply
2 points
*

window.isAuthenicated = true;

permalink
report
reply

tails: A Place for Mastodon Posts

!tails@lemmon.website

Create post

A virtual community

Posts from Mastodon users, featured natively in a community, so you can view them without the need for them to be re-hosted or screenshoted, and reply to the original author and Mastodon respondents if you wish.

Has so far included content from Warsandpeas, Mr. Lovenstein, SMBC, Loading Artist, Low Quality Facts, nixCraft, ElleGray, and other interesting or provocative stuff I’ve random’d across on Mastodon.


Supported:
Comments & Upvotes
Unsupported:
Posts, Downvotes, & PD’s Automod

Community stats

  • 1

    Monthly active users

  • 209

    Posts

  • 1.9K

    Comments

Community moderators