Did information technology had a increase or decrease in security with the introduction of automatic update features?

For obvious reasons we teach users

Always update… updates are good… never forget updates, et cetera!

Apart from the danger of malicious advertisements that make use of that showing users that they need to “update”, I want this … Continue reading Did information technology had a increase or decrease in security with the introduction of automatic update features?

Did XSS reach its end-of-life with the introduction of the HTTP X-XSS-Protection header?

With the introduction of the HTTP X-XSS-Protection header it seems to me that the vulnerability impact (read: amount of possibly affected users with modern browsers) is drastically reduced.

Firstly, does this mean that when the X-XSS-Pro… Continue reading Did XSS reach its end-of-life with the introduction of the HTTP X-XSS-Protection header?