Live data from Hacker News

Infosec company pwned by 4chan user

maia.crimew.gay

121–130 of 234 posts

Re: Infosec company pwned by 4chan user

#121

This page reminds me of the old web. I kind of miss it, auto-playing MIDI songs and custom cursors and all. I'll take that over having to wade through Reddit 12 times out of 10.

You might have liked Lulzsec's website. They had an auto-playing audio clip of the Love Boat TV theme and an ASCII ship above text lyrics that replaced the word 'love' with 'lulz'. It was refreshingly amusing. Sadly archive.org doesn't have a copy from its live state—however I saved the home page at the time (MHTML ftw) and here's a video capture of it*: https://streamable.com/zon5wy * Expires in one day Edit: for co…

Until they flipped Sabu

Re: Infosec company pwned by 4chan user

#122
post #8

Earlier quoted context omitted.

But what's the trap here? Checking who downloads the file? I don't see how they can get any actionable info out of this

1. post link to jenkins job in a 4chan thread relating to something nefarious 2. see who clicks it 3. now you have IP addresses of possibly nefarious people without needing to subpoena 4chan Something like that.

[deleted]

Re: Infosec company pwned by 4chan user

#123
post #2

"however, they made one of the most comedic mistakes you can still make while setting up jenkins (im actually not sure which misconfiguration leads to this): the build information for each past build contains a link to the git repository, including the bitbucket credentials in the url. genius."

The most horrible thing Jenkins does to devs is it encourages bad practice. Good practice is so cumbersome to do properly (create a secret, load secret in env through Groovy code, setup git configuration in a shell script) that, unless someone is actively monitoring them, devs are always in a temptation to just put the credentials in the git URL, we'll remove them after testing. Then one out of N times they forget and you get a security hole.

Re: Infosec company pwned by 4chan user

#124

This page reminds me of the old web. I kind of miss it, auto-playing MIDI songs and custom cursors and all. I'll take that over having to wade through Reddit 12 times out of 10.

As the creator was born in 1999, it's interesting to me because she's nostalgic for a period she did not fully experience. It's something I did, and it's neat yet strange to see it being done to a part of my past.

I feel this. It seems like somewhere I would have thrived and immensely enjoyed, and I hear people's nostalgia for it, but it's something I never got to experience myself. (~18yo).

Re: Infosec company pwned by 4chan user

#125

This page reminds me of the old web. I kind of miss it, auto-playing MIDI songs and custom cursors and all. I'll take that over having to wade through Reddit 12 times out of 10.

0 times out of ten for me. First I blocked the annoying cat, then I got to the bottom, was assaulted by blinking buttons and decided I didn’t need to know what else they were saying anyway.

Have you tried Firefox Reader Mode? It renders this website (and a lot of others) without a lot of distractions.

Re: Infosec company pwned by 4chan user

#126
post #60

Earlier quoted context omitted.

Oh my, assaulted ? By that single blinking icon? I hope you're ok.

Interestingly, had this complaint been about an ad, parent would have been upvoted with hundreds of comments agreeing with them. In other words, what OP is trying to say is that websites should be designed with the users goals in mind, and IMO it's fair to say that this website wasn't designed that way.

If anything this just shows that people don't hate ads because they're obnoxious, they hate ads because they're ads.

Re: Infosec company pwned by 4chan user

#128
post #124

Earlier quoted context omitted.

As the creator was born in 1999, it's interesting to me because she's nostalgic for a period she did not fully experience. It's something I did, and it's neat yet strange to see it being done to a part of my past.

I feel this. It seems like somewhere I would have thrived and immensely enjoyed, and I hear people's nostalgia for it, but it's something I never got to experience myself. (~18yo).

Yeah, it was freakin' awesome. All my friends and I made websites. We linked to each other, shared sources of good GIFs and images, chatted on IRC, eventually shared mp3s when those were a thing. It was a seriously badass time to grow up. I regularly feel very thankful/lucky to have grown up in that time period and have my own online computer to experience all that stuff!

Re: Infosec company pwned by 4chan user

#129

This page reminds me of the old web. I kind of miss it, auto-playing MIDI songs and custom cursors and all. I'll take that over having to wade through Reddit 12 times out of 10.

They were born in 1999, so it's more like what a new generation's impression of what the old web was like.

FYI, the author uses it/she pronouns.

Re: Infosec company pwned by 4chan user

#130
post #96
post #88

I had to check the article to understand how it is notable for a 4chan user to also be a business owner. They're using "owned" in leet speak sense, infiltrated security.

The correct spelling in that case is pwned isn’t it? I got it from context, but those always felt like subtly different words to me.

> The correct spelling in that case is pwned isn’t it? I got it from context, but those always felt like subtly different words to me.

For me owned was as in "CIA owned Crypto AG" not "netrunner owned the Chrome"

not that Chrome

Post reply on HN