Reading 1/10 on twitter is usability wise a nightmare.
PeopleDAO “exploited” by Google Docs edit
51–60 of 87 posts
Re: PeopleDAO “exploited” by Google Docs edit
#52I've said it before, I'll say it again: Crypto currency is about tearing down the old rules and institutions of banking and finding out one failure at a time why each rule and institution exists.
Re: PeopleDAO “exploited” by Google Docs edit
#53Re: PeopleDAO “exploited” by Google Docs edit
#54Earlier quoted context omitted.
This feels like the financial version of, “front end feels too complicated. Let’s make it simple.” And then they re-discover all the hard fought lessons one by one until their framework is complicated too.
Exactly. Or young people coming out of college having this adorably naïve, idealistic world view where everything fits nearly into their world view. Then they live some, experience things that don't fit so neatly, and begin to acknowledge the complexity of the world, becoming more pragmatist politically. At least that was my experience of 20->30. I can't even think of a long sentence that encapsulates my world view a…
Re: PeopleDAO “exploited” by Google Docs edit
#55Earlier quoted context omitted.
> granting any permission at all to "Anyone who has this link" is, in the end, security through obscurity. That's like saying passwords are "security through obscurity" because they're also "obscure" random strings, just like URLs. To try and make my point more clear: Basic auth password url: https://username:randomSecurePassword@webpage.com Google docs edit url: https://docs.google.com/randomLongString/edit How are…
> How are those two things different How they're used? I mean, we can argue that pizzas are wheels because they're circles, but, until you throw one on a car and get where you're going, no one will take it seriously. URLs get shared, passed around, posted in chats, etc. Passwords don't, or at least everyone knows they're doing something wrong if they do. In the case of the this doc, if it was privately shared, I don'…
There is a point here that the difference between access level grants is not clear enough and the urls should have a clearer demarcation of the level granted, (e.g. sheets.google.com/danger-allows-editing/{secureToken} or sheets.google.com/allows-viewing/{secureToken}.)
Re: PeopleDAO “exploited” by Google Docs edit
#56Earlier quoted context omitted.
Exactly. Or young people coming out of college having this adorably naïve, idealistic world view where everything fits nearly into their world view. Then they live some, experience things that don't fit so neatly, and begin to acknowledge the complexity of the world, becoming more pragmatist politically. At least that was my experience of 20->30. I can't even think of a long sentence that encapsulates my world view a…
Confused - that's my one word.
There is no order, only confusion.
Re: PeopleDAO “exploited” by Google Docs edit
#57Re: PeopleDAO “exploited” by Google Docs edit
#58Re: PeopleDAO “exploited” by Google Docs edit
#59Re: PeopleDAO “exploited” by Google Docs edit
#60What's a DAO?