this post was submitted on 20 Dec 2024
6 points (87.5% liked)

Hacker News

328 readers
312 users here now

RSS Feed of HackerNews

founded 3 months ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 3 points 3 days ago (1 children)

As a response to 3, I'm a professional pentester. I see several of the mistakes mentioned more than I'd like. Stuff like that still happens on the regular.

I typically get higher profile brands similar to McDonald's as well.

[–] brie 1 points 3 days ago (1 children)

Let me guess, you signed an NDA, and won't tell anyone which brands had badly configured access control in their web apps?

Each red flag is okay, but all together is rather strange. It's kinda classic to say that pajeets write shitty code.

[–] [email protected] 1 points 1 day ago (1 children)

Of course I'm not telling you my fucking clients. My career path requires a modicum of professionalism

[–] brie 0 points 1 day ago

Good, because it's not of interest.

Even better for your career is being an actual researcher with a good grasp on heap grooming, MAC circumvention instead of spreading FUD over something that can easily be detected with burp.