5 ms·
> internal network is now accessible from anywhere ! If you exposed it willingly.
by throwaway02y 3y ago
> internal network is now accessible from anywhere !
If you exposed it willingly.
- taway1237 3y agoThe point of the blog post is that this method is useful for attackers (as a so-called lolbin - trusted binary used in a malicious way).
- baz00 3y agoI work with 500 idiots. Willingly and cluelessly are interchangeable.
- userbinator 3y agoThe industry is only going to keep making more idiots if they treat developers like this.
- baz00 3y agoIt kept producing more idiots when we didn't treat them like this and this is easier so fuck it.
- eddythompson80 3y agoTake their computer away.
- Jochim 3y agoSeems to be the goal of most "cybersecurity" types.
- baz00 3y agoI thought their goal was collecting vendor certifications.
- eddythompson80 3y agoOuch dude
- baz00 3y agoIt's a burn but it's accurate. Had three consultancies in (high end well known ones) and and two in house certified to their eyeballs professional cyber security experts in charge. All they did was tick a fuck load of boxes, run some scans, spend a lot of money and make it really hard for people. Yet I managed to find a fully remote RCE and exploit it in 30 minutes after they did all this. The industry is a fucking scam.
- baz00 3y agoManagement frowned at this suggestion.
- eurg 3y agoNot nicely put, but not wrong. I had half an heart attack when that feature was rolled out, and the danger was split only between myself and a colleague. I can't even trust myself to not screw up. I needed another permanencied invocation of the principle of hope.
- intelVISA 3y agoWell said, this is why working solo can be beneficial: only one idiot to look out for. :)