Live data from Hacker News

I reverse engineered McDonalds’ internal API

twitter.com

21–30 of 454 posts

Re: I reverse engineered McDonalds’ internal API

#21
He wouldn't have tweeted it if it was malicious -- he could have even kept it secret. What is it with HN? little pranks, reverse engineering, vulnerabilities, free ice-cream. I do not condone crime but let's be honest, he could have made money with his findings online...the person is just letting his curiosity go wild. If Yelp wants to fire him I'd take him in my company any day.

Re: I reverse engineered McDonalds’ internal API

#22
post #11

While humorous, this seems actively malicious and I don't think McDonalds will look at it very favorably…

It definitely is malicious if he actually places orders. Jail seems like a possibility if every restaurant actually is affected.

If he's just triggering "Add to Cart" and the system responds with "Ice Cream Machine Broken" then it's relatively less harmful. As he says, it probably messes with their data. Unlikely that he's spending $18000 per minute.

Re: I reverse engineered McDonalds’ internal API

#24

Earlier quoted context omitted.

It is, but more likely he’ll get fired by his current employer which according to his Twitter profile is Yelp.

Fired? If Yelp has any sense, they’ll add this as a feature. “Ice Cream Available” status on all McDonalds Yelp pages.

You don't willingly fuck with Ronald's lawyers. The soulless Muppets are brutal even when dealing with Hippies.

Imagine what they would bring down on a semi-legitimate business like Yelp.

Re: I reverse engineered McDonalds’ internal API

#26
post #12

Earlier quoted context omitted.

You’re essentially asking what the chance that the author kills themselves in the near future. It would be poor taste to speculate on that.

No, I think they're referring to the part where Aaron was "made an example of" by an overzealous prosecutor.

Well they did throw in "RIP". Which can be used in a non-literal way, but considering the context here...

Re: I reverse engineered McDonalds’ internal API

#28
post #11

Earlier quoted context omitted.

It definitely is malicious if he actually places orders. Jail seems like a possibility if every restaurant actually is affected.

Wouldn't he need to pay to actually place the order though?

Not on an internal API I wouldn't think - he's just spoofing that volume of orders from registers, as if customers had walked into all stores and all ordered the same ice cream simultaneously.

Re: I reverse engineered McDonalds’ internal API

#29
post #11

Earlier quoted context omitted.

It definitely is malicious if he actually places orders. Jail seems like a possibility if every restaurant actually is affected.

Wouldn't he need to pay to actually place the order though?

Yes, another case of a little whitd lie to grab eyeballs. Drafting an order and placing an order are 2 distinct states of an order

Re: I reverse engineered McDonalds’ internal API

#30
Some details here: https://www.producthunt.com/posts/mcbroken

A commenter asks: "How are you funding the $18k per minute this requires?"

He replies: "I'm actually not paying for it! just placing an order."

I'm not sure how he's placing an order without payment information, or if he is providing payment information, how he's managing to not get charged for successful orders (when the ice cream machine is not broken). Perhaps the payment doesn't go through until he arrives to pick up the order?

Post reply on HN