5 ms·
Well, nothing ever left Twitter's servers. The logs themselves would probably be uninteresting to outside parties and inaccessible.
by bomb199 8y ago
Well, nothing ever left Twitter's servers. The logs themselves would probably be uninteresting to outside parties and inaccessible.
- deleted 8y ago[deleted]
- deleted 8y ago[deleted]
- colemickens 8y agoI suspect that many more employees at Twitter have access to the logs, than have access to a super computer and pasword hashes. I know I wouldn't trust my password with the number of people that have easy access to logs at other large(ish) tech companies. I really can't imagine why "we didn't have to" was included in that tweet, at all. What other flaps like this have occurred that exposed my creds or personal data to large numbers of employees, that they didn't have and didn't choose to tell us about?
- cbhl 8y agoEven if true, best practice is to strictly restrict access to and create audit trails for reading raw logs from production. Ideally, you'd only need to read raw logs tied to a test account, or, maybe your own personal accounts. Stack traces and exceptions and the like can be anonymized and collated.
- tptacek 8y agoMore employees at virtually every major web company have access to instances (and thus instance memory) than have access to supercomputer clusters, too. Every mainstream popular web application is fed a constant high-volume feed of plaintext passwords, right there in memory (or, in typical TLS termination environments, on the wire) to be read by a persistent attacker.
- colemickens 8y agoThat's true for nearly every single internet facing service, no? A compromise resulting in point-in-time access to traffic is a bit different than a bug that creates a persisted historical record of every single user who signed in for a period. Maybe I miss the point behind this comparison? I guess I'd understand more if I thought the number of folks with node access and log access were in the same magnitude at Twitter, or if the TLS stack persisted data over time.
- natch 8y ago>Well, nothing ever left Twitter's servers. Nothing is known to have ever left Twitter's servers. FTFY.
- MBCook 8y agoLast year a contractor deleted the president’s account. The fact it didn’t leave Twitter doesn’t mean everything is good. There are still a LOT of people who may have had some kind of access to this data.
- Alex3917 8y ago> Last year a contractor deleted the president’s account. The fact that they undeleted it is strong evidence that he didn't have discretion in how he performed his job, and thus was actually an employee and not a contractor.
- lstamour 8y agoI’m not sure how that follows. Are you suggesting they don’t keep backups or use a “deletion” flag temporarily, e.g. as part of spam account removal?
- SmellyGeekBoy 8y agoIndeed. I deleted my Twitter account recently, there was a message that data is retained for 30 days to facilitate un-deletion. I assume their internal process is the same.
- gowld 8y agoIf my gardener leaves a rake on my driveway, I'll remove the rake. That doesn't make the gardener an employee.
- deleted 8y ago[deleted]
- imdsm 8y agoAssuming everyone has access to the logs.