Foreign hackers breached a US nuclear weapons plant via SharePoint flaws
281–290 of 404 posts
Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws
#282Earlier quoted context omitted.
I'm gonna be honest, you sound like a problem employee. The companies not using Microsoft, are using Google. Which in my experience is equally or measurably worse. Just personal data points, but every avowed Microsoft hater I've ever worked with has been... difficult. Like a-drag-on-the-team-because-he-refuses-to-use-company-tools difficult. Edit: How does an aged post on this site go from +4 to -1 in the span of a f…
Well, in my experience every Microsoft shop I've ever interacted with has been a problem employer. Why do you feel your angle has greater moral defensibility?
OP doesn't like working for people that have bad tools mandated by the company. He uses a proxy measure to determine this beforehand.
The other poster had problems with people like OP because they don't use the (bad) tools provided by the company.
It doesn't sound wrong from either side. It's actually a win-win for both if they don't meet, which would mean OPs strategy is great for both. It might preclude OP from some opportunities though if the filter is too wide.
I personally do think that if you mandate the wrong tools you will never get the best developers, because great developers are very picky about the tools they use. It can be a bit too extreme in some cases, but I've rarely seen anybody that is good at this job and not very opinionated in some way or the other.
In most cases the problem is mandating though, if you give recommendation but allow deviations from that recommendation within reason you can usually get everybody to be happy.
Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws
#283Earlier quoted context omitted.
> Sharepoint with another 2 RCEs. Not shocked, the software is terrible. However, it's only software that will stand up under load and let us shard it easily. All open-source software is one of those, runs fine in Homelab, likely falls down under load. Few Open Source Developers want to work on this stuff which I get because it's tedious work interfacing with computer illiterate end users. I'd rather chug sewage then…
Find me an FTP server which integrates with your entire productivity, communication and collaboration suites easily enough that an admin can run a 50k person company off of it and equally Doris from accounts can manage to get some work done. I hate SharePoint, but i use/administer it every day and it works, mostly. Exposing it to the internet is a mistake. Why anyone would do that is beyond me.
Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws
#284Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws
#285Newsflash; nation state, or state sponsored hackers will gain access one way or another. The vector here just happens to be Sharepoint, but could've easily been something else, like a good old social engineering attack.
Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws
#286There needs to be a law that all nuclear and nuclear-adjacent facilities have no connection to the Internet. The fact it's allowed is unbelievable.
It's believable when the industry has pivoted to pushing SaaS garbage in every place imaginable to the point that on-prem solutions don't exist anymore. Do you expect them to not use email either? Remember, the industry told us we're in a 'zero trust' world now. The network perimeter is an anachronism. OTOH you know damn well they keep the important stuff airgapped, in which case the title (and your predictable react…
> receptionist's PC she uses to browse Facebook to pass the time.
Why does 'her' PC have access to the internet?
Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws
#287Earlier quoted context omitted.
SharePoint really is that bad though (and I say this as someone who used to develop for it as a platform). The fact that it's so widespread in our corporate culture is more indicative of how enshittified it is. Now, realistically, we might not be able to avoid it because of that, but let's not pretend that it's not shit.
It fills a niche. What’s else does? Yes, it’s not great, but so what?
It tells the company values price more than capability.
I asked in my company why we use SharePoint and the answer was name a better alternative. So I asked an better alternative to do what? I never got an answer.
Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws
#288Earlier quoted context omitted.
The "dig" command can get them for you $ dig ycombinator.com mx ;; ANSWER SECTION: ycombinator.com. 300 IN MX 20 alt1.aspmx.l.google.com. ycombinator.com. 300 IN MX 10 aspmx.l.google.com. ycombinator.com. 300 IN MX 20 alt2.aspmx.l.google.com. ycombinator.com. 300 IN MX 30 aspmx4.googlemail.com.
this doesnt work if they use a 3rd party email filtering service like mimecast or proofpoint fyi.
Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws
#289Re: Foreign hackers breached a US nuclear weapons plant via SharePoint flaws
#290Earlier quoted context omitted.
> I think the point is that GP red flagging all MS shops, which is more or less just sorting companies by headcount I wouldn't be surprised if many people find that smaller companies are more fun/interesting to work at, so even if this were only filtering out large companies checking for MS could be helpful.
Then it's an overcomplicated company size check.
Developer’s quality of life might differ.