WebApp Sec mailing list archives

Re: php to do input validation...


From: "Griffiths, Ian" <ian.griffiths () liv-coll ac uk>
Date: Thu, 3 Feb 2005 11:24:31 -0000

Its generally accepted that a multi-level approach to security is a good
thing.

----- Original Message ----- 
From: "Matthew Wirges" <wirges () purdue edu>
To: <webappsec () securityfocus com>
Sent: Wednesday, February 02, 2005 1:19 AM
Subject: php to do input validation...


My question for webappsec, is do you think its a good idea for a
programming language to add this sort of functionality?  Does it coddle
users?  Does it give a false sense of security (especially if they
aren't implemented right)?  Or do the positives outweigh the negatives?


Current thread: