Viewing profile — 1B05H1N
1B05H1N
HN member- Joined
- Mon, Nov 30, 2020, 9:01 PM UTC
- HN karma
- 178
- Public activity
- 98 items
- HN profile
- View on Hacker News ↗
About 1B05H1N
ibrahim@l-shinnawi.com
Recent public activity
-
comment
Comment #39257749
So they use lies and deceit instead of anger.
-
comment
Comment #39208054
Hallucinating about biological threat creation now?
-
comment
Comment #39178493
I've found that it's useful for explaining things to me, and barely anything else.
-
comment
Comment #39167279
It matters now because it's easy to do?
-
comment
Comment #39167124
I work in application/product security and have managed WAFs for multi-billion dollar companies for many many years. Move DNS to Cloudflare and put a few WAF rules on your site (ma…
-
comment
Comment #39099475
Didn't make enough money off skins this year I guess. Good luck to those impacted.
-
comment
Comment #39079622
""" The baker, in fact, had unwittingly become a textbook example of how to survive a shipwreck. First, he delayed immersion; among those who went into the water that night, Joughi…
-
comment
Comment #39079568
Do you guys actually share this much locally? I have my local sync'd to my cloud storage and just pull it down if/when I need it. I'll just email/text people around me if they don'…
-
comment
Comment #39079511
[flagged]
-
comment
Comment #39015570
Fraud is a huge driver of this. The need for high friction is here as more people are issuing chargebacks, hackers are getting more bold, etc.,. Source: I work in ecommerce.
-
comment
Comment #38992910
Maybe 5k is the max payout for the bug class?
-
comment
Comment #38992904
How should one detect this kind of stuff? Also reverse props to the meta bug bounty program manager for not understanding the finding initially. I know it's difficult managing a pr…
-
story
Supporting Former Colleagues After Layoffs?
What can/should I do beyond reaching out, and offering practical assistance/support?
-
comment
Comment #38992818
One of the many applications of chatgpt, I'm not a programmer by trade so any pointers are welcomed!
- story
-
comment
Comment #38872363
Long long phone https://youtu.be/6-1Ue0FFrHY
-
comment
Comment #38856824
They prioritized earning new business and lowering customer friction over enforcing MFA. They also had no idea 14k accounts were brute forced and cred stuffed, so that's 100% on th…
-
comment
Comment #38595548
Sorry, why would I pay 20/year bucks for this when I have my own website/infra?
-
comment
Comment #38553814
Can you still see the meta data (sender, receiver and timedate)?
-
comment
Comment #38535479
How did they not notice 7 million accounts being accessed through credential stuffing? Do they have 0 fraud prevention? I doubt the attackers cycled IPs.
-
comment
Comment #38523229
Is credential stuffing even hacking? It's super lame that the company doesn't enforce 2FA.
-
comment
Comment #38523167
Write/read is not great and there is no way to get help from google if you're not an enterprise customer (in the event of something happening). I use a cloud provider for important…
-
comment
Comment #38469682
They're the flavor of the month today, but I'm waiting on a better/cheaper option.
-
comment
Comment #38411917
In case anyone wants to read the US Treasury announcement: https://home.treasury.gov/news/press-releases/jy1925 """ ...Binance willfully failed to report well over 100,000 suspicio…
-
comment
Comment #38411746
My netflix subscription went up because Rinsch embezzled money to pump and dump dogecoin?