During his secure code review, John, an independent application security expert, found that the developer has used Java code as highlighted in the following screenshot. Identify the security mistake committed by the developer?
I bet the developer is just trying to make the code 'edgy' by using Blacklisting. Gotta stay hip, you know? But security should come first, not fashion.
Ah, the old Whitelist vs. Blacklist debate. I'm with John on this one - Blacklisting is a recipe for disaster. Does the developer even know what they're doing?
Looks like the developer is trying to use Blacklisting Input Validation, which is a big no-no. Can't believe they're still using that outdated technique!
Lea
4 months agoLeoma
5 months agoJacki
5 months agoCatrice
5 months agoDominque
5 months agoCarlee
6 months agoOliva
6 months agoOretha
6 months agoIdella
6 months agoVeronique
6 months agoNgoc
6 months agoDalene
6 months agoNana
6 months agoAntonette
6 months agoBarrett
11 months agoLorean
11 months agoMable
10 months agoWillodean
10 months agoSkye
10 months agoMari
10 months agoXochitl
11 months agoJulio
11 months agoDaron
12 months agoDell
12 months agoLeslie
10 months agoEarleen
10 months agoMing
11 months agoOnita
11 months agoHoward
12 months agoQuiana
11 months agoIrma
11 months agoGearldine
1 year agoPamella
1 year agoTerrilyn
1 year ago