• 0 Posts
  • 115 Comments
Joined 2 years ago
cake
Cake day: August 4th, 2023

help-circle










  • Where I work, the infra folks are way overworked. Getting them to do things is impossible given their existing todo list. And when you do get them to do something (by throwing managers at them) they half-ass it.

    (I’m not blaming them. I blame the managers. It is frustrating though. Anyway.)

    And as a result, there’s one system that I use frequently that they set up, but cut corners and never hooked it up to our single sign-on solution. And so in order to get into this system, everyone has to use a shared username/password. “readonly:readonly”. And every time I log in, my browser nags me about the known weak password.


  • If Satan walked into the room you’re currently in right now and said “I’m here to collect your soul to torture for eternity as payment for the bigger dick I gave your great great great grandfather on this date in 1925 unless you can make me laugh in the next 30 seconds”, what would you do?





  • If you get caught, your professional life is over.

    That seems hyperbolic. Maybe your workplace is super draconian and will immediately fire you in such a case. But different employers have different cultures. Where I work, there are running jokes among the employees about how hard it is to get fired. One of the few cases of a firing we know of involved someone who was so passed-out drunk at his desk that he couldn’t be awoken. And that was after he was given multiple stern talkings to.

    I’ve seen people play WOW and Counter Strike on their office computers in the office in very visible areas.

    Lest you think “yeah, but no place where it’s that hard to get fired is going to have a locked down firewall” this is the same place where I had to make a special request to have http://portswigger.net/ , the official site of Burp Suite Pro, the web application security tool, unblocked so I could evaluate it’s suitability to replace the tool we were using previously. (From what I’ve seen, Burp Suite Pro is kindof the de facto tool for web app security among pen testers, or at least was at the time.) The reason given on the “this site is blocked” page the corporate proxy gave was because it had something to do with alcohol.

    In my time here, I’ve gone to lengths to curcumvent corporate firewalls multiple times. Both for personal aims and because it was necessary to do my job. I’ve never once been repremanded for it.

    OP knows their workplace. OP, be smart, but do if you can get away with it, go for it.




  • Gotta be honest about my experience with Legal Eagle. One of the first videos I ever saw of his contained an error. (Sonny Bono had nothing to do with the Copyright Act of 1976. Bono wasn’t in congress until 1995. Legal Eagle is confusing the Copyright Act of 1976 with the “Sonny Bono” Copyright Term Extension Act which was passed in 1998.)

    And maybe it’s just serendipitous that one of the first videos of his that I watched contained an error that I was able to identify immediately. And maybe the vast majority of his videos aren’t riddled with errors. But I’m no expert on law and he’s supposed to be an expert on law, and given that one of the first few facts I even heard him speak was one I could immediately identify as incorrect, it made me concerned.

    Like if I had no expertise in Chemistry beyond my high-school class 20 years ago and was able to correct someone on YouTube who claims to hold a Ph.D. in Chemistry and claims to have worked as a chemical engineer at Dow Chemical for the last 20 years that “no, actually oxygen isn’t a noble gas. Maybe you’re thinking of neon? It’s just two to the right on the periodic table from oxygen.”