Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Locked thread
grilldos
Mar 27, 2004

BUST A LOAF
IN THIS
YEAST CONFECTION
Grimey Drawer
https://twitter.com/sheeraf/status/756633801179144192

Adbot
ADBOT LOVES YOU

nexous
Jan 14, 2003

I just want to be pure

quote:

Dear Glassdoor User:

Earlier today we inadvertently revealed your email address to other recipients during a routine e-mail distribution regarding changes to our Terms of Use.

We are extremely sorry for this error. We take the privacy of our users very seriously and we know this is not what you expect of us. It certainly doesn't live up to our own expectations of who we are and what we represent. We will do better.

If you have any questions, please contact us at emailcare@glassdoor.com.

Sincerely,
The Glassdoor Team

Bcc is hard.

Shame Boy
Mar 2, 2010

nexous posted:

Bcc is hard.

sorry we basically revealed who the company traitors are and probably got a bunch of people fired, we'll try harder next time

Agile Vector
May 21, 2007

scrum bored



Parallel Paraplegic posted:

sorry we basically revealed who the company traitors are and probably got a bunch of people fired, we'll try harder next time

'perhaps you can look for a new job at glassdoor.com?'

Pile Of Garbage
May 28, 2007



Snapchat A Titty posted:

yo get me outta this SAP prison

Acer Pilot
Feb 17, 2007
put the 'the' in therapist

:dukedog:

i don't remember seeing this here yet but "How we broke PHP, hacked Pornhub and earned $20,000": https://www.evonide.com/how-we-broke-php-hacked-pornhub-and-earned-20000-dollar/

ChickenOfTomorrow
Nov 11, 2012

god damn it, you've got to be kind

Acer Pilot posted:

How we broke PHP

:frogon:

Partycat
Oct 25, 2004

fins posted:

I guess I'll need a tachyonic antitelephone to call them back.

I got one

Volmarias
Dec 31, 2002

EMAIL... THE INTERNET... SEARCH ENGINES...

Acer Pilot posted:

i don't remember seeing this here yet but "How we broke PHP, hacked Pornhub and earned $20,000": https://www.evonide.com/how-we-broke-php-hacked-pornhub-and-earned-20000-dollar/

So should I be concerned, or aroused, or both, or what?

Blinkz0rz
May 27, 2001

MY CONTEMPT FOR MY OWN EMPLOYEES IS ONLY MATCHED BY MY LOVE FOR TOM BRADY'S SWEATY MAGA BALLS

Volmarias posted:

So should I be concerned, or aroused, or both, or what?

mainly aroused imo because a bug bounty program worked perfectly and the company paid out without any issue

DrPossum
May 15, 2004

i am not a surgeon

Blinkz0rz posted:

mainly aroused imo because a bug bounty program worked perfectly and the company paid out without any issue

weren't they screwing people over initially though and had to revamp?

Acer Pilot
Feb 17, 2007
put the 'the' in therapist

:dukedog:

DrPossum posted:

weren't they screwing people over initially though and had to revamp?

the whole site is about people screwing if you know what I mean :heysexy:

Munkeymon
Aug 14, 2003

Motherfucker's got an
armor-piercing crowbar! Rigoddamndicu𝜆ous.



hackbunny posted:

yeah I do this (except it's "lol nice try") but nobody noticed

or maybe they were so mad about your sick burn they smashed their keyboard during a fit of rage and, realizing they could not computer anymore today, went outside and had a nice afternoon getting some fresh air and sunshine, perhaps with a nice cold drink

Sharktopus
Aug 9, 2006

ok which one of you guys blackmailed this guy

https://www.dailyherald.com/article/20160724/news/160729429/

quote:

"It has been a tremendous honor and privilege to serve the people of the 81st district for the past four years in Springfield," he said in the statement. "But after some cyber security issues arose, I began to re-evaluate my continued public service."

Rooney McNibnug
Sep 2, 2008

"Life always hopes. When a definite object cannot be outlined, the indomitable spirit of hope still impels the living mass to move toward something--something that shall somehow be better."
https://enigma0x3.net/2016/07/22/bypassing-uac-on-windows-10-using-disk-cleanup/

quote:

After investigating some default Scheduled Tasks that exist on Windows 10 and their corresponding actions, we found that a scheduled task named “SilentCleanup” is configured on stock Windows 10 installations to be launchable by unprivileged users but to run with elevated/high integrity privileges.

Bhodi
Dec 9, 2007

Oh, it's just a cat.
Pillbug
I've always had a grudge against MS for that. "It's not a security boundary" it only halts whatever you were doing and demands permission to make changes, that's nothing like a boundary, how silly that people could become confused since it's very similar to virtually every privilege escalation prompt ever

"it's for notification", well it doesn't give you information on what's going to be changed so that's worth a wet fart

hackbunny
Jul 22, 2007

I haven't been on SA for years but the person who gave me my previous av as a joke felt guilty for doing so and decided to get me a non-shitty av

how worthless can the security recommendations of researchers get?

quote:

Further, if you would like to monitor for this attack, you could utilize methods/signatures to look for new WMI events as it is required to monitor for new folder creation for this attack to succeed.

about this much

Smythe
Oct 12, 2003
Probation
Can't post for 6 hours!
hello small question: what is the best end-to-end encrypted messenger that also has no message history and ideally can be accessed from at least ios and also android but also has a computer/web client ? does this exist?

anthonypants
May 6, 2007

by Nyc_Tattoo
Dinosaur Gum

Smythe posted:

hello small question: what is the best end-to-end encrypted messenger that also has no message history and ideally can be accessed from at least ios and also android but also has a computer/web client ? does this exist?
signal, i think? it has a chrome app, if that works

surebet
Jan 10, 2013

avatar
specialist


i just got off the phone with a channeladvisor rep and apparently they want our admin level credentials to connect to the various channels we're selling on

not api keys, not subaccount credentials, straight up i-can-gently caress-with-where-payments-are-going admin credentials

oh, an they also want 2% of our gross to duct tape our inventory feeds in a single thing

:psyduck:

Cocoa Crispies
Jul 20, 2001

Vehicular Manslaughter!

Pillbug

Smythe posted:

hello small question: what is the best end-to-end encrypted messenger that also has no message history and ideally can be accessed from at least ios and also android but also has a computer/web client ? does this exist?

signal, but you have to clear message history yourself

Smythe
Oct 12, 2003
Probation
Can't post for 6 hours!
tks all

spankmeister
Jun 15, 2008






Whatsapp fits the bill too, even.

Smythe
Oct 12, 2003
Probation
Can't post for 6 hours!
Oddly, the no message history is the more important criteria for me. Kind of like Hangouts "Off the record" mode. I guess that's better for me. My use case is I just would prefer some chats be ephemeral instead of logged forever

anthonypants
May 6, 2007

by Nyc_Tattoo
Dinosaur Gum
here's a great idea, put your iot poo poo on tor

Trabisnikof
Dec 24, 2005

The Paranoids now work for Verizon

Crusader
Apr 11, 2002

Trabisnikof posted:

The Paranoids now work for Verizon

LP0 ON FIRE
Jan 25, 2006

beep boop

surebet posted:

i just got off the phone with a channeladvisor rep and apparently they want our admin level credentials to connect to the various channels we're selling on

not api keys, not subaccount credentials, straight up i-can-gently caress-with-where-payments-are-going admin credentials

oh, an they also want 2% of our gross to duct tape our inventory feeds in a single thing

:psyduck:

haha don't do it and report it to the higher ups

Sharktopus
Aug 9, 2006

surebet posted:

oh, an they also want 2% of our gross to duct tape our inventory feeds in a single thing

tell ur boss ill do it for 1% of gross and in half the time

Sharktopus
Aug 9, 2006

what im trying to say is call me :wink:

surebet
Jan 10, 2013

avatar
specialist


trust me, i tried lol

for reals i'm about to start offering contracts over here, we're running the stupidest expensive-est poo poo at the moment

like this bullshit:
http://www.teikametrics.com/

like, if we were doing fba, fine, but we're not, and we're basically only using the d3.js powered advertising metrics

1500$ a month

:raise:

Carthag Tuek
Oct 15, 2005

Tider skal komme,
tider skal henrulle,
slægt skal følge slægters gang



wtf kinda business contract is that

Bhodi
Dec 9, 2007

Oh, it's just a cat.
Pillbug

Smythe posted:

Oddly, the no message history is the more important criteria for me. Kind of like Hangouts "Off the record" mode. I guess that's better for me. My use case is I just would prefer some chats be ephemeral instead of logged forever
they're logged forever on hangouts, you just can't see them

Varkk
Apr 17, 2004

if I can't see them then they don't exist.

Fuzzy Mammal
Aug 15, 2001

Lipstick Apathy

Bhodi posted:

they're logged forever on hangouts, you just can't see them

not true :shobon:. would be bad for corporate discovery and things otherwise.

Shame Boy
Mar 2, 2010

i have a friend who'd like to learn about pentesting / how it's done, any books he can check out that y'all recommend? i learned it myself just by poking around with random tools so i'm not quite sure where to even start when it comes to actual learning materials :v:

geonetix
Mar 6, 2011


Parallel Paraplegic posted:

i have a friend who'd like to learn about pentesting / how it's done, any books he can check out that y'all recommend? i learned it myself just by poking around with random tools so i'm not quite sure where to even start when it comes to actual learning materials :v:

I just picked up "Penetration Testing" from no starch press. It seems extremely basic this far, so I'll be leaving it in the office or something, but it may be a good, gentle, introduction for your, err, "friend".

~Coxy
Dec 9, 2003

R.I.P. Inter-OS Sass - b.2000AD d.2003AD
http://www.loper-os.org/?p=1662

New blog article from the Phuctor guys, mainly funny because it contains a tale of corporate proxy blocklists.

Westie
May 30, 2013



Baboon Simulator

surebet posted:

i just got off the phone with a channeladvisor rep and apparently they want our admin level credentials to connect to the various channels we're selling on

not api keys, not subaccount credentials, straight up i-can-gently caress-with-where-payments-are-going admin credentials

oh, an they also want 2% of our gross to duct tape our inventory feeds in a single thing

:psyduck:

2%? wow, that's quite a low amount for them

as someone who has made a channeladvisor clone for a private project work, all i can say is, good luck (or hire me for a :10bux: * 100000)

Adbot
ADBOT LOVES YOU

Volmarias
Dec 31, 2002

EMAIL... THE INTERNET... SEARCH ENGINES...

Bhodi posted:

they're logged forever on hangouts, you just can't see them

Would love to see any sort of information on this, since

Fuzzy Mammal posted:

not true :shobon:. would be bad for corporate discovery and things otherwise.

  • Locked thread