Skip to main content
The 2024 Developer Survey results are live! See the results
alecxe's user avatar
alecxe's user avatar
alecxe's user avatar
alecxe
  • Member for 9 years, 9 months
  • Last seen more than a week ago
90 votes
7 answers
69k views

Does a CSRF cookie need to be HttpOnly?

46 votes
3 answers
10k views

Should we keep logs forever to investigate past data breaches?

34 votes
2 answers
8k views

HTML login form without a CSRF protection

8 votes
3 answers
510 views

Proving the need to upgrade Django

8 votes
3 answers
1k views

Continuous SQL injection testing

8 votes
3 answers
1k views

Recent ESLint hack or how can we protect ourselves from installing malicious npm packages?

7 votes
1 answer
13k views

Self-signed certificate for a IdP-initiated SAML SSO

3 votes
1 answer
1k views

Is mod_reqtimeout a sufficient and safe technique to mitigate Slow HTTP DoS Attacks?

3 votes
1 answer
554 views

Is using online SQL prettifiers considered safe?

3 votes
2 answers
631 views

Is it possible to block non-PyPI requests during pip install?

3 votes
1 answer
2k views

Port-forwarding to a web server on Raspberry Pi

1 vote
1 answer
1k views

Securing Flask admin pages

0 votes
1 answer
853 views

How dangerous is it to allow local connections to remote selenium servers?

0 votes
1 answer
175 views

When does a company need to hire a dedicated security specialist? [closed]