Live data from Hacker News

Foreign hackers breached a US nuclear weapons plant via SharePoint flaws

csoonline.com

251–260 of 404 posts

Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws

#251
post #149

Earlier quoted context omitted.

How can you see from the MX record if it is Microsoft?

The "dig" command can get them for you $ dig ycombinator.com mx ;; ANSWER SECTION: ycombinator.com. 300 IN MX 20 alt1.aspmx.l.google.com. ycombinator.com. 300 IN MX 10 aspmx.l.google.com. ycombinator.com. 300 IN MX 20 alt2.aspmx.l.google.com. ycombinator.com. 300 IN MX 30 aspmx4.googlemail.com.

this doesnt work if they use a 3rd party email filtering service like mimecast or proofpoint fyi.

Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws

#254
post #222

Earlier quoted context omitted.

SharePoint really is that bad though (and I say this as someone who used to develop for it as a platform). The fact that it's so widespread in our corporate culture is more indicative of how enshittified it is. Now, realistically, we might not be able to avoid it because of that, but let's not pretend that it's not shit.

It fills a niche. What’s else does? Yes, it’s not great, but so what?

What niche?

Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws

#256
post #230
post #129

Earlier quoted context omitted.

For security-critical or sensitive situations, auditability should be a requirement. That implies access to source code and capabilty to build it. Decisions like these need to be done from first principles. SharePoint shouldn't even have been a contender here if looked at seriously. Do your own homework.

Think you answered just about everything except the question asked

I think this guy wants OpenBSD running on a POWER-based Mainframe at every governmental organization.

Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws

#257
post #181

Earlier quoted context omitted.

I'm gonna be honest, you sound like a problem employee. The companies not using Microsoft, are using Google. Which in my experience is equally or measurably worse. Just personal data points, but every avowed Microsoft hater I've ever worked with has been... difficult. Like a-drag-on-the-team-because-he-refuses-to-use-company-tools difficult. Edit: How does an aged post on this site go from +4 to -1 in the span of a f…

The chairman of my last big company said I was “ungovernable” at one of our last board dinners, so I’m reluctantly inclined to agree with you.

One of us! One of us! One of us!

Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws

#258
post #94

One of the first things I do after getting an inquiry from a recruiter or friend referral is lookup the MX record for the company’s email domain. It is an anonymous one-command check to see if they’re a Microsoft shop. If they are, it’s enormous personal red flag. MSFT is very popular so I’m only speaking about my own experience, but I have learned over the course of 20 years that an MSFT IT stack is highly correlate…

Hard agree. I've worked both kinds of places, I'm never working in an MS environment again for less than 7 figures.

Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws

#259
post #234

Earlier quoted context omitted.

Dev tools, sure. Self-selecting yourself out of the office/email toolset used by 90% of companies seems like a weird flex.

Companies that use Microsoft for one thing invariably use it for another, and then another, and then another, because they're "already paying for it". Their business model has always been like this. Microsoft Office usage is highly predictive of lots and lots of other choices.

[deleted]

Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws

#260
post #74

Sharepoint is one of the worst, most bug-ridden softwares I've worked with. It has a bug with Solidworks (3D design suite) that sporadically makes files completely un-openable unless you go in and change some metadata. They are aware of this, doesn't seem to be any limitation preventing them from fixing it, and it has sat unfixed for years. Microsoft's cloud storage as a whole is an insane tangle where you never know…

They've managed to mess up sharepoint even worse lately. I went there to try to find where company meetings got recorded to. I went to my sharepoint bookmark, which weirdly is www.office.com after some previous nightmare rebrand. Except what used to be the way into your sharepoint files, is now just a full page copilot screen with no hint of where the fuck your files are. Even though you've been visiting this bookmar…

Did you find it eventually?
Post reply on HN