Live data from Hacker News

Viewing profile — EnFinlay

EnFinlay

HN member
Joined
Fri, Jul 12, 2013, 6:25 AM UTC
HN karma
1,013
Public activity
228 items

About EnFinlay

No profile information was provided.

Recent public activity

  1. comment
    Comment #30480055

    I know Gitlab takes security seriously and I think part of why we hear so much about it is because they're so transparent.

  2. comment
    Comment #26713274

    hacker101.com and join the community Discord. There's a ton of Bug Bounty hunting content on the internet. Plenty of room to explore and find your niche.

  3. comment
    Comment #20800924

    I can't find the article right now, but I remember reading an article many years ago on Wired about the Obama campaign and their use of targeting and "big data". Really interesting…

  4. comment
    Comment #20782757

    Saying you want "authentic" vs "just like home" are very different to me. One implies value judgement, the other does not.

  5. comment
  6. comment
  7. comment
    Comment #20763094

    I'm having trouble articulating this, so bear with me. In general, having a Bug Bounty program is good. We can agree on that, right? Most Bug Bounty programs have a scope, and stay…

  8. comment
    Comment #20762016

    I'm not trying to defend Valve, I'm just surprised that everyone seems to be so upset about the ban.

  9. comment
    Comment #20760948

    I was responding to a comment that (I interpreted) to be talking in more general terms than the scope of the article.

  10. comment
    Comment #20760923

    Retailiated as in he was banned from their bug bounty program. The program with a scope that they went outside of. I think it's reasonable to be banned. Obviously it would be bette…

  11. comment
    Comment #20760890

    And Valve has ever right to ban him from their program, right?

  12. comment
    Comment #20760688

    "Please don't do thing" does thing gets banned shocked

  13. comment
    Comment #20760675

    The researcher can still disclose it, they just aren't going to get permission to disclose it on the Hackerone program. Most things out of scope don't get publicly disclosed as far…

  14. comment
    Comment #20760648

    a) Program has scope that doesn't include X b) Researcher reports vulnerability that falls under X c) Since it's out of scope, it's closed as N/A d) Report is locked because compan…

  15. comment
    Comment #20752105

    Might be easier to lay off everyone on that half-full 3rd floor and save money on your lease next cycle.

  16. comment
    Comment #20575922

    It's crazy to hear someone pull a scam like that and deny it's scam because they were working hard too.

  17. comment
    Comment #20559906

    I have no insight into the matter. My guess is that their traction and market dominance are far more fragile than you think. Because their drivers are contractors and not employees…

  18. comment
    Comment #20520947

    I want to make sure that I understand your analogy. - The right to secure encryption is like the right to bear arms - Government mandated weakened encryption are like gun control -…

  19. comment
    Comment #20495481

    I don't think you need a conspiracy to get to a place where in aggregate the decisions of people in control create or perpetuate a poor underclass. Just like some companies make de…

  20. comment
    Comment #20479529

    Sounds like the same destructive behaviour that is commonly referenced as the bad 10x developer.

  21. comment
    Comment #20471821

    This is a some next level bullshit > 3. 10x engineers laptop screen background color is typically black (they always change defaults). Their keyboard keys such as i, f, x are usual…

  22. comment
    Comment #20463688

    I doubt you would get a positive reaction because listening to music isn't considered a problem. There might be a lot of reasons for that, one of them might be that most people don…

  23. comment
    Comment #20413822

    I think they're referring to actually cancelling the service, rather than unsubscribing.

  24. comment
    Comment #20366396

    The pithy way of saying it is "Engineering is making something with $1 that any fool could make with $2"

  25. comment
    Comment #20347278

    - Many convention talks are really good and are too many to list - OWASP - zseano - hackerone - Bugcrowd (Jason Haddix's stuff is a pretty important pillar) - OWASP - DarkOperator …