(April 9, 2018 at 5:21 pm)Tiberius Wrote:
(April 8, 2018 at 4:48 pm)AtlasS33 Wrote: one of the main reasons that made me choose Microsoft's "ASP.NET" and C# was the security. Any produced app/ web app will be very secured. PHP frameworks don't provide a very secured server side environment as far as I know. That's why banks use .NET
Oh man, I can't begin to tell you how wrong you are.
ASP.NET doesn't have a good track record for security either. I agree, PHP's is pretty crappy too. However I disagree about the framework point, most PHP frameworks work around PHP's insecurity and actually provide a pretty secure platform for development. What we are generally seeing in the security business is actually more security with frameworks than ever before. We used to advise people not to use frameworks, but now we advise them to always use them.
Banks use .NET because it's Microsoft, and they know Microsoft. However a lot of their legacy systems are still running FORTRAN or COBOL, and computer security really isn't their first thought when creating an app, sorry to say.
The global economical system is a scam in itself if you ask me, so I won't criticize your opinion. Bankers and Bill Gates make a fine tag-team, I can imagine that the fuss around Microsoft's security is just a hype. The open-source community doesn't have that hype.