All of those data leak could be prevented if their backend implemented just one line of code for authorization. Most Bhutanese apps miss the basic concepts of data protection.
I think that is the surface level problem. But we should also ask why did the backend not implement this code authorization. Was it laziness? Was it incompetence? I think it is just our history of never having produced inhouse software and not knowing the inner workings that has led to such shoddy security practices. I know RAMIS was produced by TCS and not inhouse but we never spotted these things because for the last ___ years we were making enough money through tourism to never focus on making a knowledge economy. I think there are root causes to this that could be explored further
I feel a million reasons or "root cause" is not enough to justify why the BE did not implement authorization. Data integrity, safety..., those are the ABC of back end.
But a dive into why the current condition of many Bhutanese web apps and softwares would be interesting case study. One might get slapped from almost all interviewee if they did any.
All of those data leak could be prevented if their backend implemented just one line of code for authorization. Most Bhutanese apps miss the basic concepts of data protection.
I think that is the surface level problem. But we should also ask why did the backend not implement this code authorization. Was it laziness? Was it incompetence? I think it is just our history of never having produced inhouse software and not knowing the inner workings that has led to such shoddy security practices. I know RAMIS was produced by TCS and not inhouse but we never spotted these things because for the last ___ years we were making enough money through tourism to never focus on making a knowledge economy. I think there are root causes to this that could be explored further
I feel a million reasons or "root cause" is not enough to justify why the BE did not implement authorization. Data integrity, safety..., those are the ABC of back end.
But a dive into why the current condition of many Bhutanese web apps and softwares would be interesting case study. One might get slapped from almost all interviewee if they did any.