Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update 0xaa-unsafe-consumption-of-apis.md #136

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

zer0uno
Copy link

@zer0uno zer0uno commented Sep 22, 2024

Here I think that the object complement "endpoints" in the sentence "Developers tend to trust and not verify the endpoints [,,,]" is wrong, the problem is not trusting and not-verifying the developer's endpoint, but trusting and not-verifying the interactions with the external parties.

The problem is not the endpoint itself, but what happens under the hood, that is the lack of verification on the interactions with the external parties: a developer can implement an API that correctly validates the input from the user, however this doesn't solve the lack of verification with the third party.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant