DEV Community

Discussion on: Pwned Together: Hacking dev.to

Collapse
 
rattanakchea profile image
Rattanak Chea • Edited

If dev.to was not open source, would you still be able to find this discovery? How much more effort? Using different approach? Thanks

Collapse
 
antogarand profile image
Antony Garand

Without the website being open source, I would have to perform a black box audit, and finding those vulnerabilities is definitely possible but might require more time.