Hacker News new | past | comments | ask | show | jobs | submit login

I presume he meant "defend the perimteter, and they never get execution, so there is no need to defend the inside against privilege escalation".

The opposing line of thought is defense in depth. The idea being that "a hard shell but soft and mushy on the inside" is a fragile setup and only needs one thing to go wrong.




Consider applying for YC's Spring batch! Applications are open till Feb 11.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: