Skip to main content
Sjoerd's user avatar
Sjoerd's user avatar
Sjoerd's user avatar
Sjoerd
  • Member for 8 years, 7 months
  • Last seen this week
322 votes
Accepted

Is single quote filtering nonsense?

173 votes
Accepted

What is 'tabnabbing'?

120 votes
Accepted

What to do when using your private key from another computer?

117 votes
Accepted

Is it unsafe to show message that username/account does not exist at login?

112 votes

What does it mean to "burn a zero-day"?

107 votes
Accepted

Are EU cookie consent forms safe?

106 votes
Accepted

Is layered encryption more secure than long passwords?

96 votes
Accepted

Discouraging users from copying images off a website?

85 votes
Accepted

Should I use HTTPS on a domain that will only be used for redirection?

83 votes
Accepted

Is it a good idea to use the entire Unicode range to generate a random password rather than limited ranges?

69 votes
Accepted

Is it acceptable practice to only increment a number when changing a password?

68 votes
Accepted

Can someone without the WiFi login and no physical access to a router still access it with the admin login?

65 votes

Is it really Security Misconfiguration to show a version number?

51 votes

Secure USB cable for charging in untrusted environments

47 votes

How can an attacker use robots.txt?

44 votes

What are the cons of stateless password generators?

44 votes
Accepted

Could a Google Chrome extension read my password?

44 votes

How can an administrator secure against a 0day before patches are available?

40 votes
Accepted

Checksum vs. Hash: Differences and Similarities?

39 votes
Accepted

Password 'spatial' pattern?

39 votes
Accepted

How do "Confidence images" on my bank's login page improve security?

34 votes

Why was DES with 112 bit keys (IBM) reduced to 56?

34 votes

Determining Entropy in PHP

33 votes

What is the point of entering numbers in the two-factor authentication app?

33 votes

How can I securely develop a local webapp at a coffee shop?

32 votes
Accepted

How to avoid using System.String with Rfc2898DeriveBytes in C#

30 votes

Could governments and banks become CAs?

28 votes
Accepted

Is redirecting in htaccess providing enough security for sensitive pages?

26 votes

How can I check password strength client-side?

26 votes
Accepted

Ongoing effort to detect MitM attack on TLS?

1
2 3 4 5
16