Hacker News
new
|
past
|
comments
|
ask
|
show
|
jobs
|
submit
login
lifeisstillgood
on May 27, 2013
|
parent
|
context
|
favorite
| on:
You are dangerously bad at cryptography
I completely agree with this and have just released a session-cache for python that completely ignores encryption and just stores uuid in a cookie, and relies on server side lookups for session work.
kbaker
on May 27, 2013
[–]
Make sure you are using HTTPS exclusively so you aren't vulnerable to Firesheep-style attacks.
lifeisstillgood
on May 28, 2013
|
parent
|
next
[–]
That's in the docs :-)
Ooops no it's not - kind of assumed it was obvious - thank you for the reminder :-)
lifeisstillgood
on May 28, 2013
|
parent
|
prev
[–]
That's in the docs :-)
Guidelines
|
FAQ
|
Lists
|
API
|
Security
|
Legal
|
Apply to YC
|
Contact
Search: