On Fri, 25 Jun 2010 20:43:51 -0400, Roy Smith wrote: > To bring this back to something remotely Python related, the point of > all this is that security is hard. Oh, this isn't solely a security issue. Ask anyone with a surname like O'Neil, O'Connor, O'Leary, etc; they've probably broken a lot of web apps *without even trying*.