I am working for a medium sized Swiss company. We're coding our own ERP, based on a nightmare of a stack. We call it "security by confusion". An attacker would maybe find its way in, but he'll never find the way out. If he destroys 90% of our code, we'll still be up and running, because 95% of the codebase is obsolete.
barbazoo|7 months ago
sam_goody|7 months ago
Of course, that was said purposefully, and may not reflect the truth at all.
But still, the thought that that is security for some (and I am sure it is for someone, somewhere) is kind of an extension of security by obscurity that is scary.
boznz|7 months ago
m4rtink|7 months ago
akudha|7 months ago