Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I don't think the argument was ever that "JavaScript was insecure." It was that the websites hosting it may be compromised or may change the script at any time without any indication (or the FBI forcing a site to backdoor the JS for some investigation)


Yeah, but see also Code Verify (and sub-resource integrity): https://blog.cloudflare.com/cloudflare-verifies-code-whatsap...




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: