Live data from Hacker News

DOGE worker’s code supports NLRB whistleblower

krebsonsecurity.com

581–586 of 586 posts

Re: DOGE worker’s code supports NLRB whistleblower

#581
post #536

Earlier quoted context omitted.

> when it comes to business skills with objective results and tight feedback cycles Is the federal government a business or startup? Does chainsawing it have a tight-enough feedback cycle to get good results? I'm going to say No to both, but I don't have the time or expertise to try to prove it. It can be true, both that young people are great at startups and bad at the federal govt.

Financial auditing does.

DoGE exists to dismantle branches of government that Republicans disapprove of, enrich the Republican elite, and use the federal government's data for their personal benefit.

Musk has openly reassigned some contracts to SpaceX for personal gain and fired people investigating his companies, so it's a given that they're also privately lining their pockets.

The federal data will be used to harass and disenfranchise their opponents. Musk, for example, can use the NLRB data to identify complainants about his companies, so that he can pay them off or have them sent to El Salvador. The data can also be used for the Safeguard Voting Eligibility Act (https://www.independent.co.uk/news/world/americas/us-politic...), which is intended to prevent women, blacks, and other groups from voting.

Financial auditing doesn't really enter into it.

Re: DOGE worker’s code supports NLRB whistleblower

#582
post #577

Earlier quoted context omitted.

When it comes to pardons, I actually believe Biden was significantly worse in that regard.

I don't see how you could come to that conclusion. Here are the facts: Biden: * Nonviolent Drug Offenders: Biden focused heavily on criminal justice reform, commuting the sentences of nearly 2,500 individuals convicted of nonviolent drug offenses. * Death Row Inmates: He commuted the sentences of 37 federal death row inmates to life imprisonment without parole. * Preemptive Pardons: Biden issued preemptive pardons to…

Biden quite literally pardoned his family and cronies of any wrongdoing before leaving office.

Get back to me when you can form your own thoughts and don't need a GPT bot to write your arguments for you.

Re: DOGE worker’s code supports NLRB whistleblower

#583

Earlier quoted context omitted.

Because the topic of pardons was brought up? Read through a discussion chain before responding to an individual reply.

I did read through it, i don’t generally just jump to a random point in the comment chain to start reading. The topic of something being brought up doesn’t necessarily mean its the topic being discussed. Keep your personal feelings in check and don’t react so emotionally.

You're missing something if you're tryijg to project feelings of emotion onto my comments based on my previous contribution to this discussion.

If you don't like a certain topic of discussion, you can always move on without being required to state your dissatisfaction.

Re: DOGE worker’s code supports NLRB whistleblower

#584
post #360

Earlier quoted context omitted.

> That said, I was surprised to learn much later that, by all accounts, Elon Musk was a competent and resourceful leader in SpaceX's early days. Maybe these stories are just his personality cult in action, but I found it plausible He's good at having and raising money which was what SpaceX needed, I think he was probably the same then as he is now. Reading about his early days at Tesla and the PayPal stuff, I don't r…

Having an empty life full of sycophants and scammers sounds like a negative consequence. I have a bet with my wife that Tesla will go under within 10 years so we'll see how that plays out.

I am super bearish on Tesla but I still would take the side of "not going under" of that bet. The factories have value, and once the brand is de-Musk'd, it can have value too. So most likely scenario is being bought out by someone once the company valuation goes down 10x-100x.

Re: DOGE worker’s code supports NLRB whistleblower

#585

Earlier quoted context omitted.

I'm relatively confident this critique is AI-powered. The dead giveaways: 1. Verbosity. Developers are busy people and security researcher devs are busy even moreso. Someone so skilled wouldn't spend more than 2-3 sentences of time in critiquing this repo. 2. Hostility. Writing bug free code is hard, even impossible for most. Unless your name is Linus Torvalds, Richard Hipp, or maybe Dan Abramov, most devs are not co…

Once you've read enough ChatGPT slop, you know it when you see it: - Massive verbosity. - Flawless spelling and grammar. - Grandiose tone. - Robotic cadence where every paragraph and sentence has similar length (particularly obvious in longer text.) - Em dashes everywhere. - The same few stock phrases or sentence structures used over and over - e.g. "This isn't X—it's Y", which that issue uses twice in two paragraphs…

These are all good points, and I agree. The Em dash I've noticed a lot. One additional is over usage of adjectives like "robust" or something that came out of the third option in a thesaurus.

As someone who has been using regular dashes and words like "robust" for years, I've had to purposefully dumb down things like my resume/CV and internet comments. Like many of us here, I'm coming from a generation that actually had to write 100% of the research paper instead of an AI generating it for me. So I always took great care to aim for something close to perfection in writing.

Re: DOGE worker’s code supports NLRB whistleblower

#586
post #475

Earlier quoted context omitted.

Can you explain why a GitHub repo for IP rotating and tied to a prominent DOGE member was downloaded and then deleted?

I can explain why I doubt him. The evidence supporting his claim is a screenshot of an Excel spreadsheet with several columns excluded. It appears to have been exported from the DeviceProcessEvents table within the advanced threat hunting schema. However, he failed to provide the threat hunting dashboard view, which would include critical context such as the process tree, MD5 hash, account SID, account domain, and pr…

Thanks for chiming in with your experience. Would you attribute the doubt to a DevOps person without Security experience, or someone with ulterior motives? Has CISA determined the lost credentials to be password stuffing or endpoint compromise? Seems plausible that DOGE staff had infostealers on their endpoints and the automated validation of those credentials did not include a review of where they got them or whether it will be noticed.

The (under oath) claims of extraction of data seem strange for the reasons you mentioned but so do the threats as well as the NLRB PR rep stating that DOGE was never there, I think there's more to be discovered that could clarify what happened.

Post reply on HN