Live data from Hacker News

“Banclist.com is probably the most lucrative direct messaging platform”

twitter.com

41–50 of 77 posts

Re: “Banclist.com is probably the most lucrative direct messaging platform”

#41
Seems like we're missing a "StocList" for buying/selling shares in private companies. There are some "secondary market" services. But (IIRC) they all take a hefty cut from both parties, have zero transparency, act as an intermediary, have high minimum transactions, etc.

Seems like accredited investors and private company stock owners should be able to make deals directly. Someone get on it!

Re: “Banclist.com is probably the most lucrative direct messaging platform”

#42

> Apache/2.4.6 (CentOS) OpenSSL/1.0.1e-fips mod_fcgid/2.3.9 PHP/5.4.16 mod_python/3.5.0- Python/2.7.5 Eek! I wouldn't trust them with my data if I was a bank. They haven't updated their server since 2013. All of the versions listed in that header have major vulns. This is a disaster waiting to happen.

They really have no clue what they are doing... No security headers and their SSL is insecure. Someone needs to tell them to shut their servers down right now.

Directly from their website:

"Patrick Brown - Chief Technology Officer. Mr. Brown is the co-founder of Eye Candy Creative, a highly successful technology and marketing company."

So their CTO is a marketing guy. No wonder they suck.

Re: “Banclist.com is probably the most lucrative direct messaging platform”

#43
post #32

Earlier quoted context omitted.

Thanks for the info! Seems like a bit of a silly regulation given that major banks themselves are able to circumvent it in order to shed liability.

But at least unregistered banks can’t name their company “Trust Bank” or something.

This is worth stressing: such regulations often exist to prevent fraud from outright scammers. If such a regulation did not exist, I am confident there would be institutions that called themselves a "bank" but met none of the basic consumer protections we expect from a bank.

Re: “Banclist.com is probably the most lucrative direct messaging platform”

#44
post #23

Earlier quoted context omitted.

What about BancList indicates that the field is over-regulated

The fact that it's called "BancList"?

In one system, thousands of people are scammed out of millions of dollars every year.

In the other system, a company that is not a bank was forced to avoid the word "bank" in their name.

This sounds like two reasons the second system is better, to me at least?

Re: “Banclist.com is probably the most lucrative direct messaging platform”

#45
> In "Goodness that is a great, great software business", I present http://banclist.com , which is probably the most lucrative direct messaging platform in the world on a per user basis. (I'm exempting e.g. Bloomberg which does a lot more than DMs.)

That's some hyperbole from Patrick. The website is not a direct messaging platform by any stretch. It's a listing website with a very specific audience. Lots of that stuff happen over email, regular DM, phone calls or regular in-persons meetups.

> BancList.com does not participate in any way in the execution of trades. Any trades that may occur must take place offline independent of BancList.com or any of its affiliates.

They only risk getting their data compromised but no money is at risk. Trades happen discretely and they might not be aware of them or not care.

Re: “Banclist.com is probably the most lucrative direct messaging platform”

#47

> Apache/2.4.6 (CentOS) OpenSSL/1.0.1e-fips mod_fcgid/2.3.9 PHP/5.4.16 mod_python/3.5.0- Python/2.7.5 Eek! I wouldn't trust them with my data if I was a bank. They haven't updated their server since 2013. All of the versions listed in that header have major vulns. This is a disaster waiting to happen.

It seems dir listing is not properly disabled https://banclist.com/app/webroot/img/

Re: “Banclist.com is probably the most lucrative direct messaging platform”

#48
post #47

> Apache/2.4.6 (CentOS) OpenSSL/1.0.1e-fips mod_fcgid/2.3.9 PHP/5.4.16 mod_python/3.5.0- Python/2.7.5 Eek! I wouldn't trust them with my data if I was a bank. They haven't updated their server since 2013. All of the versions listed in that header have major vulns. This is a disaster waiting to happen.

It seems dir listing is not properly disabled https://banclist.com/app/webroot/img/

It it now, by the look of it.

Re: “Banclist.com is probably the most lucrative direct messaging platform”

#49
post #23

Earlier quoted context omitted.

What about BancList indicates that the field is over-regulated

The fact that it's called "BancList"?

Can't see much of an issue with random businesses not being able to call themselves "Bank" personally.

Re: “Banclist.com is probably the most lucrative direct messaging platform”

#50

> Apache/2.4.6 (CentOS) OpenSSL/1.0.1e-fips mod_fcgid/2.3.9 PHP/5.4.16 mod_python/3.5.0- Python/2.7.5 Eek! I wouldn't trust them with my data if I was a bank. They haven't updated their server since 2013. All of the versions listed in that header have major vulns. This is a disaster waiting to happen.

It doesn't sound like they hold any really sensitive data though, at least not any customer data.
Post reply on HN