boatswain

@boatswain@infosec.pub

This profile is from a federated server and may be incomplete. For a complete list of posts, browse on the original instance.

boatswain ,

I see this claim all the time, and it bugs me every time. Obfuscation is a perfectly reasonable part of a defense in depth solution. That's why you configure your error messages on production systems to give very generic error messages instead of the dev-centric messages with stack traces on lower environments, for example.

The problem comes when obscurity is your only defense. It's not a full remediation on its own, but it has a part in defense in depth.

boatswain ,

This confused me, too. I generally see"Lemming" used as the equivalent of "Redditor": someone who uses Lemmy.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • test
  • worldmews
  • mews
  • All magazines