• 0 Posts
  • 106 Comments
Joined 5 months ago
cake
Cake day: July 15th, 2025

help-circle



















  • Great article, but I disagree about WAFs.

    Try to secure a nonprofit’s web infrastructure with as 1 IT guy and no budget for devs or security.

    It would be nice if we could update servers constantly and patch unmaintained code, but sometimes you just need to front it with something that plugs those holes until you have the capacity to do updates.

    But 100% the WAF should be run locally, not a MiTM from evil US corp in bed with DHS.