Viewing profile — EnFinlay
EnFinlay
HN member- Joined
- Fri, Jul 12, 2013, 6:25 AM UTC
- HN karma
- 1,013
- Public activity
- 228 items
- HN profile
- View on Hacker News ↗
About EnFinlay
No profile information was provided.
Recent public activity
-
comment
Comment #30480055
I know Gitlab takes security seriously and I think part of why we hear so much about it is because they're so transparent.
-
comment
Comment #26713274
hacker101.com and join the community Discord. There's a ton of Bug Bounty hunting content on the internet. Plenty of room to explore and find your niche.
-
comment
Comment #20800924
I can't find the article right now, but I remember reading an article many years ago on Wired about the Obama campaign and their use of targeting and "big data". Really interesting…
-
comment
Comment #20782757
Saying you want "authentic" vs "just like home" are very different to me. One implies value judgement, the other does not.
- comment
- comment
-
comment
Comment #20763094
I'm having trouble articulating this, so bear with me. In general, having a Bug Bounty program is good. We can agree on that, right? Most Bug Bounty programs have a scope, and stay…
-
comment
Comment #20762016
I'm not trying to defend Valve, I'm just surprised that everyone seems to be so upset about the ban.
-
comment
Comment #20760948
I was responding to a comment that (I interpreted) to be talking in more general terms than the scope of the article.
-
comment
Comment #20760923
Retailiated as in he was banned from their bug bounty program. The program with a scope that they went outside of. I think it's reasonable to be banned. Obviously it would be bette…
-
comment
Comment #20760890
And Valve has ever right to ban him from their program, right?
-
comment
Comment #20760688
"Please don't do thing" does thing gets banned shocked
-
comment
Comment #20760675
The researcher can still disclose it, they just aren't going to get permission to disclose it on the Hackerone program. Most things out of scope don't get publicly disclosed as far…
-
comment
Comment #20760648
a) Program has scope that doesn't include X b) Researcher reports vulnerability that falls under X c) Since it's out of scope, it's closed as N/A d) Report is locked because compan…
-
comment
Comment #20752105
Might be easier to lay off everyone on that half-full 3rd floor and save money on your lease next cycle.
-
comment
Comment #20575922
It's crazy to hear someone pull a scam like that and deny it's scam because they were working hard too.
-
comment
Comment #20559906
I have no insight into the matter. My guess is that their traction and market dominance are far more fragile than you think. Because their drivers are contractors and not employees…
-
comment
Comment #20520947
I want to make sure that I understand your analogy. - The right to secure encryption is like the right to bear arms - Government mandated weakened encryption are like gun control -…
-
comment
Comment #20495481
I don't think you need a conspiracy to get to a place where in aggregate the decisions of people in control create or perpetuate a poor underclass. Just like some companies make de…
-
comment
Comment #20479529
Sounds like the same destructive behaviour that is commonly referenced as the bad 10x developer.
-
comment
Comment #20471821
This is a some next level bullshit > 3. 10x engineers laptop screen background color is typically black (they always change defaults). Their keyboard keys such as i, f, x are usual…
-
comment
Comment #20463688
I doubt you would get a positive reaction because listening to music isn't considered a problem. There might be a lot of reasons for that, one of them might be that most people don…
-
comment
Comment #20413822
I think they're referring to actually cancelling the service, rather than unsubscribing.
-
comment
Comment #20366396
The pithy way of saying it is "Engineering is making something with $1 that any fool could make with $2"
-
comment
Comment #20347278
- Many convention talks are really good and are too many to list - OWASP - zseano - hackerone - Bugcrowd (Jason Haddix's stuff is a pretty important pillar) - OWASP - DarkOperator …