Kasra Rahjerdi
@jc4p
done a lot of vibe coding videos, a lot of vibe managing videos... should we do a vibe hacking/security-audit video?
9 replies
0 recast
40 reactions
Gregarious
@gregarious
ha I was telling someone just yesterday that one of the gaping holes for founders new to coding is the unfortunate lack of security controls the generated apps have. some platforms are making a real effort to resolve this, which is great.. but the hackers only need to be right once to win.
1 reply
0 recast
1 reaction
Kasra Rahjerdi
@jc4p
i’ve checked 3 popular mini apps this week and they all had “client can send a diff user id to backend and get their data” style holes 🙈🙈🙈 like just flat out stuff on the CWE 25
1 reply
0 recast
2 reactions