4 ms·
The password was in a file that was committed to github IIRC. I think both the intern that posted the file and the person making that statement both did not re
by frombody 5y ago
The password was in a file that was committed to github IIRC.
I think both the intern that posted the file and the person making that statement both did not realize that someone had given the user write access.. which in my opinion was the actual mistake, not the ftp or the password.
- ta9999 5y agoSomething to remember is that these sorts of things happen in many organizations. You should always verify the data you get, be careful with complex supply chains, and avoid binaries you didn't build yourself. Don't skip these things just because "that's the way it's always been done." 10 years ago very little internet traffic was encrypted, security still means progress not the status quo.