Content pfp
Content
@
https://opensea.io/collection/dev-21
0 reply
0 recast
2 reactions

Justin Hunter pfp
Justin Hunter
@polluterofminds
Interesting article about the impact of knowing a database schema has on potential sql injection. It’s a legal drama played out in sql tables. https://sockpuppet.org/blog/2025/02/09/fixing-illinois-foia/
2 replies
0 recast
1 reaction

Mo pfp
Mo
@meb
Super cool read, thanks for sharing! This is a classic case of "security by obscurity" which never ends well. That said, I do wonder what tables exist in that schema that would give pause to citizens if revealed. Part of modern democracy will be better disclosures about the tech that's used to govern us
1 reply
0 recast
1 reaction

Justin Hunter pfp
Justin Hunter
@polluterofminds
Yeah I’m actually all for FOIA requests revealing database schemas. I also think it DOES make it easier to find vulnerabilities if you know the schema. But the way to protect against vulnerabilities shouldn’t be based on obscurity
1 reply
0 recast
0 reaction