A beginner dev could build many simple web applications in a day. However, it will probably have security holes and spaghetti code.
A beginner dev could build many simple web applications in a day. However, it will probably have security holes and spaghetti code.
It's an arrow that points in one of two directions. I can not think of a single way this could be made insecure. Even if someone was able to influence the direction the arrow was pointing, everyone is still going through the same ineffective screening process.
High chance somebody gets shot.
2. Everything required to make a bomb can be bought past the TSA checkpoint.
3. It would stand to reason that if a terrorist organization can get a conspirator to infiltrate the TSA, they could get, I don't know, two?
4. There's more than one person involved in the screening process.
It's not like TSA agents haven't already been caught letting people smuggle contraband past them:
http://www.foxnews.com/us/2015/12/19/tsa-agent-accused-smugg...
Not even a newbie programmer is going to do this. Every language out there has a Random() function.
Seriously, all these worst case scenarios and we're still well within the land of what even a middling iOS developer could crank out in under an hour.
I wouldn't bet on that. I've seen all sort of horrendous monstrosities that students and new grads have come up with.
For example, even a newbie wouldn't trust a remote client to tell you the size of a string they are sending you so you can echo it back to them, yet we still had Heartbleed and it sat there for a long time, undiscovered.
That quickly takes you down a rabbit hole, which may be why the contract was so expensive.
http://stackoverflow.com/questions/9234686/generating-random...
I don't actually much care about the security of TSA hardware (my view is that it is all expensive security theater in any case). However, if you told me you spent 300K designing a very simple control interface for say, a critical component of the electrical grid, and the argument you gave me for the cost is proper security engineering, I would buy that. I certainly would prefer it to a $30 USD solution developed as a HackerRank project, even if the nominal functionality is the same.
Even though it may be cheaper to just do it 10 times over with cheap one person shops and throw out the worst 9.
I get the feeling this "knowing who to sue" saying is a bit of a myth.