Live data from Hacker News

Thanks FedEx, this is why we keep getting phished

troyhunt.com

441–450 of 576 posts

Re: Thanks FedEx, this is why we keep getting phished

#441
post #359

Earlier quoted context omitted.

This is just an extremely incompetent and rude loan officer. Generally the loan officers are motivated to close the deal and write you a check because they get commission from that. They are nice to their customers because pissing off customers won't get them that sweet commission. The loan officer I last talked to managed to close more than $1B of mortgages in a year and he's the nicest guy on the phone. In your cas…

Wait what? 1B in mortgages per year, even at a nice fat 500k per is what 2,000 closures or something like 10 per day every day. It’s not impossible but, wow, that’s grinding it out day after day.

This is in the Bay Area so more like 1M each. But still I was also very impressed.

Re: Thanks FedEx, this is why we keep getting phished

#442

Earlier quoted context omitted.

Does it require installing 3rd party software on the host machine? This might not work great for this kind of "shadow IT" application in all environments, whereas one that acts as a USB keyboard might be more versatile.

Does it require installing 3rd party software on the host machine? No, it identifies as a keyboard. It also defaults to generating a password that will use the same scancodes on (most?) western keyboard layouts so that computers configured to default to e.g. QWERTZ or AZERTY will still result in the same password.

How do you tell it which password to type?

Re: Thanks FedEx, this is why we keep getting phished

#443

Earlier quoted context omitted.

Does it require installing 3rd party software on the host machine? This might not work great for this kind of "shadow IT" application in all environments, whereas one that acts as a USB keyboard might be more versatile.

Only to configure it. It presents as a USB keyboard (among other device types).

How do you tell it which password to type? I haven't seen yubikeys with physical interfaces to select a particular password.

Re: Thanks FedEx, this is why we keep getting phished

#444
post #243

Earlier quoted context omitted.

Is it impressive though? They have about a 50% success rate delivering things to me across multiple addresses and I know other people who have had similar long term issues.

At one of my addresses FedEx will happily sell anyone overnight shipping and then just keep the parcel at the depot for a week until they have a driver who can actually make the trip. I have had like 6 very urgent packages delayed like this. Once my wife ordered something perishable and they pulled this then told her she had to drive into town and pick it up at the airport. I've also been nearly run off the road by F…

> just keep the parcel at the depot for a week until they have a driver who can actually make the trip.

Depot workers can get up to the weirdest stuff. One time I was returning unused product (oil well perforating guns, a UN 1.4D explosive device) via Yellow Freight. I handed over the cases and signed all the appropriate paperwork to handover custody at the depot and went on about my day. The supplier called me ~10 days later saying they never received the shipment! Perturbed, I called down to the depot who basically shrugged it off with "no idea lol not our problem". Their attitude changed when I told them that in accordance with my license and federal law I would be notifying the ATF at the end of the day that there were missing or lost explosives and it would very much be their problem.

A couple hours later they called back and told me the boxes had missed their truck and were just sitting in the corner of the secure cage in the loading dock, forlorn and forgotten. What the fuck, guys.

Re: Thanks FedEx, this is why we keep getting phished

#445

Earlier quoted context omitted.

I ordered a computer from Southern California, they shipped it to Texas, Florida, Maine, and then back to Northern California. My last two orders were just stolen from someone at FedEx. They got the shipment, but it never left the facility after that. Customer service is an offshore apology machine that can't help with anything. I used to prefer fedex, but the standard of service is so subpar I go out of my way to av…

I assume you know that you can open a claim? They'll either find your package really fast, or will have to pay its full value. Often the vendor has to initiate the claim. If the vendor doesn't want to open a claim, refund. If the vendor doesn't want to refund, chargeback.

My last two stolen packages required the vendor to open a claim, I did in both cases and both vendors refunded me. Fedex wouldn't even entertain trying to help me.

Re: Thanks FedEx, this is why we keep getting phished

#446
post #219

FedEx may have the worst and least secure digital platform for a major company. Some examples I’ve noticed: 1. I moved into a 10-unit apartment building and wanted to set up FedEx Delivery Manager. I just put in my new address, no verification whatsoever, and I was immediately given access to the previous tenant’s delivery instructions which included the buildings private garage code. Any thief could have done the sa…

Of the carriers, FedEx is the worst for me (North Carolina, USA). DHL is the fastest and most reliable. UPS and USPS tie for second place, slightly below. (People I talk to in person hate USPS, but I've had consistently good experiences with them for both sending, and receiving). Then FedEx several rungs below; Out for delivery, then rescheduled every time.

Re: Thanks FedEx, this is why we keep getting phished

#447

Earlier quoted context omitted.

Strangely, I've had perishable medicine delivered to me (a biologic injection) for two years without a single hiccup by FedEx. They have been the most consistently reliable delivery service where I live (though the post office is pretty good too). My house is at the bottom of a hill that is difficult for rear wheel drive vehicles in winter. UPS, on the other hand, can go pound sand. They often refuse to deliver due t…

> They have been the most consistently reliable delivery service where I live (though the post office is pretty good too). Every service relies on the USPS to some extent, which makes the Republican attempt to gut the organization so baffling. There's no replacement and nobody is looking to replace it. From my perspective as an ex letter carrier, your personal experience with package delivery is determined almost ent…

It took the 2020 pandemic for Republicans to finally get on board and pass the Postal Service Reform Act of 2022.

Re: Thanks FedEx, this is why we keep getting phished

#448
post #32

A few months ago I got an email from the IT center of the company I work for that was dodgier than any phishing email I have ever received: - Coming from a domain that looks nothing like the official domain of the company, rather some generic @itservice.com or something. - Subject: "URGENT: your account is expiring soon". - Multiple links provided in the email body, all illegible and multiple lines long, none of them…

The company I work for has a service that sends phishing test emails to everyone that you are supposed to report. I take great joy in reporting every legitimate email that is at all sketchy just for the inevitable email back from the security team informing me that they reviewed my report and it was indeed a legitimate email.

Re: Thanks FedEx, this is why we keep getting phished

#449
post #359

Earlier quoted context omitted.

This is just an extremely incompetent and rude loan officer. Generally the loan officers are motivated to close the deal and write you a check because they get commission from that. They are nice to their customers because pissing off customers won't get them that sweet commission. The loan officer I last talked to managed to close more than $1B of mortgages in a year and he's the nicest guy on the phone. In your cas…

Wait what? 1B in mortgages per year, even at a nice fat 500k per is what 2,000 closures or something like 10 per day every day. It’s not impossible but, wow, that’s grinding it out day after day.

I think it highlights why this jerk was rude and short about it. They want to avoid high maintenance customers because it impacts their short term metrics of how many they can churn out and directly affects their compensation. There are presumably zero repercussions for them personally - the worst case maybe is some long term reputational damage for the bank.

Re: Thanks FedEx, this is why we keep getting phished

#450
post #219

FedEx may have the worst and least secure digital platform for a major company. Some examples I’ve noticed: 1. I moved into a 10-unit apartment building and wanted to set up FedEx Delivery Manager. I just put in my new address, no verification whatsoever, and I was immediately given access to the previous tenant’s delivery instructions which included the buildings private garage code. Any thief could have done the sa…

I wasn't very impressed when they tossed my new 100G network switch under the water runoff spout on my porch during a snow melt day.
Post reply on HN