View Full Version : Reasn #45657859818874 Microsoft sucks.
black rabbit
05-08-2003, 09:49 AM
They can't tell method="get" from method="post".
This is old news in Slashdot land, but there has apparently been a vulnerability in Passport (http://news.com.com/2100-1002_3-1000429.html) for who knows how long that allowed anybody to reset and recieve a new password for anybody else's hotmail/passport/.net account.
Hope none of you gave them your CC numbers.
Sorry Dooku, but this is really, really fucking stupid.
Trusted computing my ass.
Hauky
05-08-2003, 11:53 AM
Wow... that's a pretty basic thing to screw up. Good thing nobody uses Hotmail for anything serious, right?
...Right?
Mort Furd
05-08-2003, 02:09 PM
Damn straight. Especially since I earn a few bucks in my spare time fixing spontaneous brain farts in people's Windows systems. Four hours last night because windows 2000 on one client decided it didn't want to use its domain server stored user profile for one user any more. Fun was had by all. Sheesh.
rjung
05-08-2003, 02:25 PM
Flaming Microsoft for stupid software problems is a lot like flaming George W. Bush for not pronouncing "nuclear" correct, ainnit? A bit too easy, don'cha know...
Morbo
05-08-2003, 03:13 PM
Yep. It's stupid alright. We do a bunch of stupid things.
However, it doesn't really have anything to do with me. I appreciate the thought, but I'd prefer to not be the "MS-Guy" around here. I come here to fight ignorance and have a good time, not to be the corporate spokeperson. I only visit threads like this when I'm named, or if I feel I can positively contribute.
Lobsang
05-08-2003, 03:19 PM
I didn't know you were the 'MS-Guy' until you stated that you prefer not to be known as such.
Fix my word please.
Lobsang
05-08-2003, 03:22 PM
Mind you - If I worked for MS (which would actually be cool) I wouldn't take the mass contempt personally either. The place I do work at does some cum-feltchingly goat-guzzlingly stupid things, things that make me laugh.
Morbo
05-08-2003, 03:31 PM
Originally posted by Lobsang
I didn't know you were the 'MS-Guy' until you stated that you prefer not to be known as such.
So you must have been pretty confused when the OP mentioned me specifically, eh? :)
Fix my Microsoft® Word please.
Done. :D
I don't take the mass contempt personally. I take misinformed opinions about the way I do my job personally, however. I would expect no less from any Doper.
Geek Mecha
05-08-2003, 03:59 PM
There's a follow-up here (http://news.com.com/2100-1002_3-1000575.html?tag=lh), saying MS has fixed the flaw.
My favorite part (bolding mine):
By 8 a.m. PST Thursday, the company had replaced the service with a more secure version, one that should have been there in the first place, said Adam Sohn, product manager for Microsoft's Passport team.
"It was something that slipped through the reviews," he said. Sohn added that the feature had been around since September 2002 and that Microsoft is currently investigating to what degree the flaw may have been exploited by online vandals to grab user accounts.
'Cause everyone wants a security flaw.
And if I'm reading it correctly, I find it distressing that MS could let a security flaw of this magnitude remain unpublicized and unadressed for eight months. I mean, gosh, I appreciate the investigation and all, but maybe ya think ya coulda investigated a little faster?
Mikahw
05-09-2003, 12:38 AM
Reason #45657859818875: That damn "o" key that doesn't work
black rabbit
05-09-2003, 01:55 PM
Originally posted by Mikahw
Reason #45657859818875: That damn "o" key that doesn't work
Actually, that's reason #1 SuSE sucks, 'cuz I (happily) don't run Windows...
Mort Furd
05-09-2003, 02:48 PM
As of latest reports on www.heise.de, Microsoft still has some spot that aren't fixed. They reference a site with reports from people who report in after trying the exploits in their area.
istara
05-09-2003, 03:40 PM
Part of the reason M$ gets flamed so often/disproportionately is that they're the dominant and most widespread player.
And they suck ;)
(my religion made me type that, GodJobs would strike me down if I failed to include it...)
rjung
05-10-2003, 02:59 AM
Originally posted by istara
Part of the reason M$ gets flamed so often/disproportionately is that they're the dominant and most widespread player.
And they suck ;)
(my religion made me type that, GodJobs would strike me down if I failed to include it...)
Hey, it's the truth, ainnit? ;)
And GodJobs wouldn't strike you down, he'd simply cuss you out for being an idiot and then throw something at you. :D
vBulletin® v3.7.3, Copyright ©2000-2013, Jelsoft Enterprises Ltd.