gabu

BARK BARK BARK!!! am dog!

samoyed taur / 32 / ΘΔ
i stream on twitch!! (sometimes???)

 

woof woof woof

 

fursuit head by AlphaDogs

pfp by BeetleYeen


🐕 mastodon
chitter.xyz/@gabu

tsiro
@tsiro
This page's posts are visible only to users who are logged in.

tsiro
@tsiro
This page's posts are visible only to users who are logged in.

pervocracy
@pervocracy

"Signs of a phishing email include: grammatical errors, misspellings, incorrect names and titles, conflicting or intentionally confusing information, and a false sense of urgency"

that describes every email I get at work 😐


ann-arcana
@ann-arcana

All of these do this because they've been told to implement awful single-sign-on services, but lacking the expertise or the manpower to scratchbuild (because IT budgets are always treated as cost sinks), they go to third party contractors.

My health insurance has at least two different SSO providers, one of which is Microsoft and the other of which is Fuck Knows™, but they somehow both still have my username and password shared somewhere, which sure doesn't seem like a good idea!

But having been involved in procurement discussions for shit like that, I can tell you that what probably happened is someone got an order somewhere that login needed to be "more secure", and they flailed around to find which ever third party auth solution satisfied the box ticks for whichever bogus certification standard someone in management thought sounded intimidating enough.

Nobody involved actually knew anything about security except "it's important", and so trusted the word of some overpriced corporate consultant that gave them a readable but meaningless metric with boxes they could tick off, so that's what they did.


You must log in to comment.

in reply to @tsiro's post:

Hey dont worry about the security, a lawyer looked at a data sharing agreement very hard to replace the <company name> references after copy pasting it.

And have you looked at the fines involved in HIPAA cases? They get doled out a whopping two tens of times a year, tens, a whole 2% of investigated cases! Wow, what a deterrent!

There is no issue with reselling 'plaintext behind figleaf TLS' service buses to hundreds of different medical service providers, please do not look at the man behind the screen.

Bank websites that insist in small font all over the place that you're entering a secure portal and everything is monitored and security aaaa and then they require a password no longer than 10 characters with letters numbers and a very tiny set of symbols that can only ever generate like five bits of entropy and can be cracked in an hour and there's exactly zero options for a second factor

tfw you have to make up a new password just for one website because its max characters is shorter than the shortest password you have for websites with slightly more lenient max characters.