"In most real-world applications, MySQL authentication and privileges have absolutely no effect on security."
To me, that makes as much sense as:
"In most real-world applications, file permissions have absolutely no effect on security."
Or:
"In most real-world applications, running services under isolated uids instead of running everything as root has absolutely no effect on security."
It's a bold claim, but one made with no evidence to back it up.