敗' OR 1=1 -- is a fine username.
At Hacker News, turdnagel writes about one astonishing example of incompetence.
My favorite dumb password experience involves EZPass, a system for paying tolls without cash, in New York.
I signed up for EZPass using a relatively “long” password (20 chars). I then received a letter in the mail about a toll I had to pay, even though I’d had the EZPass at the the time. But, the letter said, I could pay the toll by logging in to their site and using my EZpass credentials. Didn’t use OAuth but I figured it would be OK. I input my username and password using my password manager but it didn’t work. Pretty strange, as I was able to log in to the “main” EZpass site using those same credentials. I tried logging in on the payment site again to no avail. Finally I realized that my password was being truncated by the password input field itself.
The solution was to inspect the page and change the maxlen attribute of the password field.
There are sites that block password managers! One site has you send three characters of your old password when picking a new one. American Express is apparently still on 8-character case-insentive alphanumeric passwords, which at this point suggests you might go to a public library to read about the security defects of its systems, in printed books written by people who have been dead for decades.
Something went wrong with my archival encode of the Utah State-LSU game, and all the audio is pitch-shifted down 100%. Which resulted in this. pic.twitter.com/AmispkZO9q — Timothy Burke (@bubbaprog) October 10, 2019 Sports reporter Timothy Burke writes that “Something went wrong with my archival encode of the Utah State-LSU game, and all the audio is […]
With the launch of the Disney+ streaming service, all eyes were on The Mandalorian, the new sci-fi western set in the aftermath of Return of the Jedi. But the original Star Wars movies are also availabe in 4K, and someone noticed that they’ve yet again tinkered with the scene where Han Solo shoots Greedo to […]
The Google Translation of this Instagram post: “And you wake up in the morning to discover that Firulais entertains himself by biting your $250,000.00 Porsche in this house.” View this post on Instagram Y te levantas en la mañana a descubrir que Firulais se entretiene mordiendo tu Porsche de $250,000.00 en esta casa hoy se […]
The more you use your computer, the more it becomes possible for others to use it too. Where there are anti-virus systems, there are hackers looking for a way to get around them. That’s why it’s important to get software that doesn’t just passively scout for viruses in the background. The folks behind GlassWire have […]
Knowledge is power. It’s a cliché, but sometimes things turn into a cliché because they’re true. If you’re making your way through the world of business and entrepreneurship, it only makes sense to read about the insights of people who have climbed that ladder before you. Trouble is, the modern workday doesn’t leave a lot […]
As much as some of us fear the loss of our jobs to robots, there’s one job we’re pretty sure they are welcome to: vacuuming. There’s nothing quite like kicking back and watching a robot vacuum do one of the most time-consuming tasks on the household chore list. And there are few ‘bots that do […]