Ranter
Join devRant
Do all the things like
++ or -- rants, post your own rants, comment on others' rants and build your customized dev avatar
Sign Up
Pipeless API
From the creators of devRant, Pipeless lets you power real-time personalized recommendations and activity feeds using a simple API
Learn More
Comments
-
I worked at a company with that policy.
Nobody followed it.
Like man everyone heads to the building with the lunch place at the same time.... -
I have worked in government buildings that kept nuclear secrets. I would never let anyone in on my badge, ever. Also, the badge tracks when people entered and left for legal and safety reasons. Hey stupid people. The badge is not just for access, but to find your ass in the bathroom during a fire!
-
@Demolishun I mean, most folks aren't guarding nuclear secrets, they just want lunch at Stupid-Ass-Company.
-
Many companies do a security test once per year where they have someone walz in and see how far they can get into the office and how much stuff they can carry out without anyone stopping them.
If they get stopped the next test will be done by a guy with a hard hat and a ladder saying "I'm here to fix some stuff, let me in" -
ctales14yCan be relatively easy to fix by allowing employees to exit only that part of the office that they used their badge to enter
-
hjk10157314yThat can be easily fixed with a physical barrier that lets trough one person at a time. If there is no way to let people trough there is no courtesy issue. Only the reception/sectors that verifies can let external people in.
-
hjk10157314y@ctales exit trap is harder and people still feel that they need to let externals in.
If I can enter with other people holding the door I can do my damage. Put some laptops in my backpack. Pull the fire alarm (this will negate exit verification) and leave the building. -
hjk10157314y@jiraTicket there are some interesting video's on Defcon about that.
A lot of systems just transmit an ID and can be cloned in a second.
Some companies use an elevator as the security barrier. There is a long episode on how this is just stupid (it's easy to get the fire emergency keys allowing you to override everything for example). -
@N00bPancakes
Let me reiterate for you:
" The badge is not just for access, but to find your ass in the bathroom during a fire!" -
@hjk101 Now I’m gonna look up some Defcon videos. Thanks.
Off the top of my head I have no idea where I could even access any system that would output a code. But I bet it’s easier than I imagine. -
hjk10157314y@jiraTicket your welcome. Have fun!
The badges and tags use RFID or similar approach. A lot can be read with NFC on your phone, other's need a reader that work on different frequencies. Ali express probably has them as do the access system resellers.
Related Rants
-
zemaitis7My local ISP was saving their database backups in an unprotected folder which was literally domain.com/backups...
-
PonySlaystation8There was a time in Windows 95, where during login, you could just press cancel and you were logged in without...
-
netikras15Colleagues sharing passwords.That was a big fat NO when I was a sysadmin - and for a good reason. But now, sin...
Not a software bug but an organisational bug...
Employees holding the door to other people so they can come into a secured building without using their identity badges.
I look like an asshole everytime I refuse to let people I don't know in because most people let them in...
rant
wk234