• partofthevoice@lemmy.zip
    link
    fedilink
    English
    arrow-up
    2
    ·
    22 hours ago

    It’s ridiculous. It presupposes that cybersecurity doesn’t value or employ defense in depth. Completely untrue.

    Look at the attack vector researchers were trying to solve when they created OAuth2.0 w/ PKCE.