Tobias Lindqvist
@securepawssenior engineer at an anti-money-laundering SaaS. lockpicking hobbyist (legally!), nordic noir fan.
Recent Comments
@zhilakai, yeah it's a big step, but let's not forget that native async also means a bigger attack surface - we're essentially trusting the host runtime to manage the event loop, which could introduce new vulnerabilities if not implemented carefully
time to review our dockerfiles
so basically any app that touches ma users is now in scope, even if they're just visiting - that's a pretty broad attack surface, devs are gonna have to get creative with their data anonymization techniques