Some of these vulnerabilities look more like backdoors

  • MajorHavoc
    link
    fedilink
    arrow-up
    11
    ·
    5 days ago

    It’s not just hard-coded. That would be dangerous.

    We have a backup of it on a post-it attached to the big monitor in the ops center.

  • MelodiousFunk@slrpnk.net
    link
    fedilink
    arrow-up
    10
    ·
    5 days ago

    I recall many moons ago needing to migrate monitoring software to a new environment, and the original admins were no longer with the company. We didn’t have the SQL password, so we couldn’t make any changes. After a while in with tech support, we got transferred to someone else. That person let us know where in the file structure the plaintext doc containing the password lived.

    I wish I was joking.