HN Top New Show Ask Jobs

settings

Theme

Hand Mode

Feed

Comment by SonOfLilit

Comment by SonOfLilit 5 months ago

0 replies

View on Hacker News

I don't agree. WAFs usually add more attack surface than they remove.

https://www.macchaffee.com/blog/2023/wafs/

Of course, Wordpress is basically undefendable, so I'd never ever host it on a machine that has anything else of value (including e.g. db credentials that give access to much more than the public content on the WP installation).