Ranter
Join devRant
Do all the things like
++ or -- rants, post your own rants, comment on others' rants and build your customized dev avatar
Sign Up
Pipeless API
From the creators of devRant, Pipeless lets you power real-time personalized recommendations and activity feeds using a simple API
Learn More
Comments
-
olback109817yWe have public WiFi at our school as well but we don't need to log in. Every device gets its own VLAN. Also, Spotify and all VPNs I've tried are blocked.
-
@PrivateGER do you just open the proton app and after a VPN conn is established, you open up tor Web browser?
-
@gitpull No, by that I mean I use TOR to connect to it since literally all VPN IPs are blocked.
-
justmove7367yPasswords in MD5 is about as bad as plain 😂
++ Because funny as fuck and you did the right thing 😂 -
brigdeer507ySomeone would ddos the access points for our school and we found out who it was so we changed the WiFi password and didn't tell him, worked like a charm
-
At work, in our own developed CRM software, passwords are only xored with a const and stored in database. A few weeks ago i was bored at work. I wrote an SQL function which dumps all user passwords. 123456 is still alive ;-)
-
c3ypt1c99057yIt's like shooting yourself in the foot and then pulling out the bullet to shoot yourself once more.
-
My college's seminar page used to be so broken you could sign up for seminars from 10+ years ago by changing a number in the URL
-
gitlog62067y@PrivateGER and now it seems everyone just knows much more than me even when I'm 18 now. :'(
-
After reading your rant I wanted to see how secure my universitys network was.
However I just found out that the entire network has already crashed over night with the domain name no longer resolving -
@PrivateGER apparently the edu extension is currently not resolving in the Philippines. Guess I'll have to wait before I can check their security :(((
-
620hun83707yMy high school was the worst. They fucked up the accounts server, so they logged us in using admin accounts which had access to the administrative data. We found a document containing the WiFi password. We were gods from that moment. We also gave admin rights to ourselves to be covered in the future 😂
-
Related Rants
My school.
We have free WiFi access, but you need to login into your personal student account to use it.
Turns out, SQL Injection works.
It gets worse.
Table name "schueler".
SELECT *
Well.
Got all data on all students.
Name, address, phone number, passwords in plain.
I reported it using an anonymous email. Partially fixed. Standard quotes now get eacaped. Still, passwords are now MD5.
rant
wk93