Details
-
AboutYes.
-
SkillsPython. Numpy. ML. lilbit.
Joined devRant on 8/14/2017
Join devRant
Do all the things like
++ or -- rants, post your own rants, comment on others' rants and build your customized dev avatar
Sign Up
Pipeless API
From the creators of devRant, Pipeless lets you power real-time personalized recommendations and activity feeds using a simple API
Learn More
-
After 2 months of reading every rant, downloading every posted image and enjoying being part of this awesome community, i finally get something at least little funny to post here.(It's rubber (eraser))
Thanks for this awesome community.7 -
My last internship (it was awesome). A programmer developed a vacation/free day request application for internal use.
Asked if I could test it for security.
The dev working on it thought that was a very good idea as he wasn't much into security and explained how the authentication process worked.
I immediately noticed a flaw just from his explanation. He said it was secure anyways (with an explanation but his way of thinking was wrong in this case). Asked if I was allowed to show him. He said he was intrigued by this so gave me a yes right away.
For the record, user levels were normal user, general admin and super admin (he was the only super admin).
Wrote a quick thingy server side (one of my own servers/domains) for testing purposes.
Then I started.
Went from normal user to super admin (his account) through a combination of XSS and Session Hijacking within 15 seconds.
Explained him where he went wrong and he wrote a patch under my guidance 😃.
That felt so fucking awesome.5 -
Okay it's called devRant - so I'll rant...
Why the fuck do people write comments like that:
$savesThisStuff = "stuff"; # does save stuff
Why are here 1500 lines from which there are 700 outcommented code and 300 dead functions which aren't called anywhere?
Why the fuck is here PHP code which generates JavaScript inline which itself generates STATIC (!!) HTML.
------
"Always code like the one maintaining your code next is a violent murderer with an axe and you'll still be save."
... Where's my axe again?9 -
There is a spider outside my window at work that I've named Vanessa. She is a web developer. And every time I squash a bug, I feed it to her.5