Lecture 11
What kinds of security vulnerabilities are still possible in an
Ur/Web application? One approach might be to keep the OWASP
Top-10 list in mind as you are reading the Ur/Web paper, and
consider whether Ur/Web's features can eliminate certain classes
of bugs, or whether it's still possible to have vulnerabilities.
A note from the paper author: this paper is a draft of a camera-ready
conference paper, and if you have any bug reports or suggestions about
the paper, the author (Adam Chlipala, adamc@csail.mit.edu) would
appreciate your feedback!