Reply to post: Re: It's not about the product

NoSQL: Injection vaccination for a new generation

Steve Knox
Holmes

Re: It's not about the product

The reason why developers are giving users access to the DB is because of poorly trained, lazy and stupid DBAs who grant full access to developers...Security is the responsibility of the DBA.

NO. Security is the responsibility of EVERYONE. Yes, the DBA should not be allowing developers to set access controls. But even if a DBA makes such a mistake, that doesn't excuse the developers employing boneheaded programming practices that extend such weaknesses to the users.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon