Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Locked thread
SwampDonkey
Oct 13, 2006

by Smythe

(and can't post for 4 years!)

ate all the Oreos posted:

uhh why is SA trying to load flash player, i'm getting the "plugin blocked" thing when I load the page :ohdear:

vimeo embeds further up the page.

Adbot
ADBOT LOVES YOU

Shame Boy
Mar 2, 2010

SwampDonkey posted:

vimeo embeds further up the page.

yeah it's not happening on this page, ok

CrazyLittle
Sep 11, 2001





Clapping Larry

fishmech posted:

Is this overall a good or bad way to run this sort of thing?

pretty standard for large multi-tenant hosts in a post-IPv4 supply depletion world but a "better" way would be to move all their services over to SNI capable hosts

ate all the Oreos posted:

yeah it's not happening on this page, ok



https://www.youtube.com/watch?v=oHC1230OpOg

spankmeister
Jun 15, 2008






I posted some vimeo's but it embeds a flash player :saddowns:

Rooney McNibnug
Sep 2, 2008

"Life always hopes. When a definite object cannot be outlined, the indomitable spirit of hope still impels the living mass to move toward something--something that shall somehow be better."
https://twitter.com/josephfcox/status/846299963369967616

my metadata...

fins
May 31, 2011

Floss Finder

quote:

Timeline:
=========
2016-11-16 Vulnerability discovered
2016-11-10 Asked for security contact
2016-11-21 Contact with Miele product representative

i'm the premonition

Soylent Pudding
Jun 22, 2007

We've got people!


Why is the register considered a bad source? It actually was a recommended source from one of my security professors.

Shaggar
Apr 26, 2006
their reporting varies wildly in quality and a while back all their good reporters got poached by real news orgs.

FlapYoJacks
Feb 12, 2009

Security Fuckup Megathread - v13.4: Your 20" Lifelike Horse Dong has shipped!

Lutha Mahtin
Oct 10, 2010

Your brokebrain sin is absolved...go and shitpost no more!

Soylent Pudding posted:

Why is the register considered a bad source? It actually was a recommended source from one of my security professors.

i don't know if they are bad overall, but they are deffo born and bred on garbage UK tabloid style

Farmer Crack-Ass
Jan 2, 2001

this is me posting irl

Lutha Mahtin posted:

i don't know if they are bad overall, but they are deffo born and bred on garbage UK tabloid style

would you say they're... british born and bread?? :v:

RISCy Business
Jun 17, 2015

bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork
Fun Shoe

ratbert90 posted:

Security Fuckup Megathread - v13.4: Your 20" Lifelike Horse Dong has shipped!

BattleMaster
Aug 14, 2000

fins posted:

i'm the premonition

maybe it isn't a mistake; you can pretty much assume anything that inexplicably has internet access and web servers in it for no apparent reason also has a whole host of security issues so why not preemptively get ready to send them reports

Cocoa Crispies
Jul 20, 2001

Vehicular Manslaughter!

Pillbug

BattleMaster posted:

maybe it isn't a mistake; you can pretty much assume anything that inexplicably has internet access and web servers in it for no apparent reason also has a whole host of security issues so why not preemptively get ready to send them reports

if you need one, buy one and fuzz it

if you're pro, get someone to pay you to do that

Mr.Radar
Nov 5, 2005

You guys aren't going to believe this, but that guy is our games teacher.
https://twitter.com/GossiTheDog/status/845446263244050434

read the whole thread, it's amazing

EndlessRagdoll
May 20, 2016


oh no...

influx.
Dec 16, 2007

Nice pants!

Deep Dish Fuckfest
Sep 6, 2006

Advanced
Computer Touching


Toilet Rascal

how could i not with a hook like that

RISCy Business
Jun 17, 2015

bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork
Fun Shoe
https://twitter.com/vtlynch/status/846378109402263553

spankmeister
Jun 15, 2008






Phoenixan
Jan 16, 2010

Just Keep Cool-idge

dpkg chopra
Jun 9, 2007

Fast Food Fight

Grimey Drawer

white nerds all look exactly the same jfc

ohgodwhat
Aug 6, 2005

Edit: kind of a dumb post

ohgodwhat fucked around with this message at 01:46 on Mar 28, 2017

Lain Iwakura
Aug 5, 2004

The body exists only to verify one's own existence.

Taco Defender

Ayyy

Farmer Crack-Ass
Jan 2, 2001

this is me posting irl



lmbo

Farmer Crack-Ass
Jan 2, 2001

this is me posting irl

to the tune of...

Powerful Two-Hander
Mar 10, 2004

Mods please change my name to "Tooter Skeleton" TIA.



lol

ages ago i hooked up a search engine to some internal shared areas for a department and the vendor said "before you turn it on, check what's in there because we guarantee there's stuff that shouldn't be" stuff i found included:

* multiple wedding plans and invites
* a lot of photos from office parties
* pst dumps of entire user mailboxes from former staff
* a 10mb bmp of the teletubbies
* a number of spreadsheets that keyed off 'salary' various people were maintaining
* an entire folder of one guy's tax returns he was storing on the department shared drive accessible to like 50 people

people are dumb.

Powerful Two-Hander fucked around with this message at 09:33 on Mar 28, 2017

Babies Getting Rabies
Apr 21, 2007

Sugartime Jones

it is nice of microsoft to offer an alternative to sci-hub, though

Doom Mathematic
Sep 2, 2008

Nice.

Cold on a Cob
Feb 6, 2006

i've seen so much, i'm going blind
and i'm brain dead virtually

College Slice

spankmeister
Jun 15, 2008







This also works really well on virustotal by the way

yoloer420
May 19, 2006

spankmeister posted:

This also works really well on virustotal by the way

My VT intelligence account expired :( it was super good for all sorts of things!

spankmeister
Jun 15, 2008






yoloer420 posted:

My VT intelligence account expired :( it was super good for all sorts of things!

Yep I still have one and it's absolute gold.

Last Chance
Dec 31, 2004


i don't understand why ms disabled the search and then re-enabled it? wtf?

Chalks
Sep 30, 2009

Last Chance posted:

i don't understand why ms disabled the search and then re-enabled it? wtf?

Isn't the entire point of the site to publish documents for sharing? I dunno what they can do about people uploading confidential documents to a site like that.

*edit* although I notice if you search for the word "confidential" it brings back an error now :)

Cold on a Cob
Feb 6, 2006

i've seen so much, i'm going blind
and i'm brain dead virtually

College Slice
people are dumb and think 'unpublished hard to guess url' = 'secure'

Cold on a Cob
Feb 6, 2006

i've seen so much, i'm going blind
and i'm brain dead virtually

College Slice
that said maybe the default privacy level shouldn't be 'public' for everything

with a big loving warning beside it if you change it to 'unlisted' or 'shared' or whatever

spankmeister
Jun 15, 2008






Chalks posted:

Isn't the entire point of the site to publish documents for sharing? I dunno what they can do about people uploading confidential documents to a site like that.

*edit* although I notice if you search for the word "confidential" it brings back an error now :)

works 4 me op

Chalks
Sep 30, 2009

spankmeister posted:

works 4 me op

Strange, I get "There's a problem with your search. Try again later."

Welp, I clicked the search button again and it just worked. Microsoft having issues from all the totally legitimate spike in document searches happening recently I guess!

4th result down is entitled "Confidential credit cards and SSNs". Who even has files with titles like that.

Adbot
ADBOT LOVES YOU

flakeloaf
Feb 26, 2003

Still better than android clock

Chalks posted:

4th result down is entitled "Confidential credit cards and SSNs". Who even has files with titles like that.

guess how I know you don't interact with ordinary end-users

  • Locked thread