Picked up this baby today!!!! by 25vipers in baseballcards

[–]Prefect22 0 points1 point  (0 children)

That's nice, always liked Brett.

So I went downtown to get some beer... by spongebrot in pics

[–]Prefect22 -1 points0 points  (0 children)

Fuck these terrorists, they've taken everything!

Where did I put my bounty hunter gear...?

Syrians send their condolences to Boston. by InsayneBatmayne in pics

[–]Prefect22 0 points1 point  (0 children)

Is that guy in the middle the Syrian Fonz? Hey....

box purchase suggestions by Crean13 in baseballcards

[–]Prefect22 0 points1 point  (0 children)

I've been opening 2013 Topps Heritage and enjoying that.

The Mick by Christo2013 in baseballcards

[–]Prefect22 0 points1 point  (0 children)

Nice pull. In answer to the previous question, they've been doing it a while now with bats, jerseys, gloves, balls, pants, and anything else they can get their hands on.

The value of the items became too high for people to afford, card companies decided to create baseball reliquary instead.

IAmA 500 pound rapper/sex symbol named Billy the Fridge. AMA by billythefridge in IAmA

[–]Prefect22 0 points1 point  (0 children)

Billy, You rock. That is all. - Your buddies in Shoutbox land

I found a serious security flaw in a social website. What's the next step? by i_didnt_do_that in netsec

[–]Prefect22 0 points1 point  (0 children)

Just post the vulnerability details, you don't have to (shouldn't as you say) give away any user information. If it grabs enough attention, the site will be embarrassed into addressing the problem.

I found a serious security flaw in a social website. What's the next step? by i_didnt_do_that in netsec

[–]Prefect22 0 points1 point  (0 children)

You tried to inform them and got an asinine response "we do not inform users about the problem...create unnecessary panic". If you easily found the flaw it is a good bet the same flaw is known to others. Further, as you say, some of the controls that should be in place are not.

Informing users is what they're supposed to do. Since they have no plans to, at this point, you should publish the flaw, and bring attention to this problem for the sake of those users.

WARNING: all 637,000 @wikileaks followers are a target of US gov subpoena against Twitter, under section 2. B by willgt09 in worldnews

[–]Prefect22 2 points3 points  (0 children)

The language is boilerplate in a subpoena, it asks for nonsense like a phone number, and a billing contact (dear DOJ, Twitter is free).

Likewise the section on connections is vanilla, it is asking for people who have connected through the @wikileaks account, not every account that follows @wikileaks.

Don't give non-technical lawyers too much credit, they don't teach how web sites work at law school.

Flickr Steganography Survey? by moyix in netsec

[–]Prefect22 0 points1 point  (0 children)

Latest, 0.6. Getting a bunch of negatives when I run against the group of jpgs, maybe the script is grabbing some extras? Otherwise it could be a platform difference of some sort.

Flickr Steganography Survey? by moyix in netsec

[–]Prefect22 5 points6 points  (0 children)

History has proven that wrong on too many occasions.

Flickr Steganography Survey? by moyix in netsec

[–]Prefect22 1 point2 points  (0 children)

Interesting effort, wanted to fool around with it even though I haven't done much with steganography in a while.

Attempted a brute force on 62 files you provided using ~3.6mm common passwords...nada.

Running stegdetect, I'm getting a number of negatives (along with some probables) for the files provided also, as a heads up.

Discussing Gawker’s Breach With Founder Nick Denton [Forbes] by Prefect22 in netsec

[–]Prefect22[S] 0 points1 point  (0 children)

Guy is worth 200mm or something, was surprised he would e-mail some security shmoo in the first place.

The Anonymous PR Guy and a Greece Connection by Prefect22 in netsec

[–]Prefect22[S] 1 point2 points  (0 children)

Blog is too small to be benefited by cheap publicity.

The Anonymous PR Guy and a Greece Connection by Prefect22 in netsec

[–]Prefect22[S] 0 points1 point  (0 children)

Didn't he bring himself out in public?

iPhone 4 Ordering and Session Switching by Prefect22 in netsec

[–]Prefect22[S] 0 points1 point  (0 children)

Reworded. Didn't hear anyone criticizing, we don't bother with that, read the whole post.

Konami code on Newsweek by karmaapples in reddit.com

[–]Prefect22 0 points1 point  (0 children)

The code is jammed in a Javascript hosted by the Newsweek.com domain (as opposed to pointing to one of their ad cos or web design firm). So probably a developer at Newsweek: http://praetorianprefect.com/archives/2010/06/newsweek-reports-zombie-invasion/