mbarrick: (Default)
[personal profile] mbarrick
H@x0ring the bank

OK, this is the second largest bank in the world, you'd think they'd have it more together. In the six weeks I have been here I have punched holes out through and around the proxy server and firewall to get at blocked sites (like LiveJournal!). That's not so bad other than it potentially means I could circumvent the download and e-mail anti-virus security, but that's meaningless from the point of view of doing something malicious since I could walk in with evil software on a floppy or a CD and cause havoc that way, so big deal. Today, however, I found a nice little hole in one of the key applications I happen to be working on that is based on the fact that the corporate inertia here is so powerful that they are running server software that is years old and has very well documented security holes. Any disgruntled employee in Canada who has the brains to do a search at astalavista.box.sk could drop several of the key applications here. I can't imagine any other bank is any better. My recent experience with the Royal Bank certainly proved to me that their systems are just as fucked up as the ones here.
This account has disabled anonymous posting.
If you don't have an account you can create one now.
HTML doesn't work in the subject.
More info about formatting

January 2026

S M T W T F S
    123
45 67 8910
11 121314 15 16 17
18 19 20 21 22 2324
25262728293031

Expand Cut Tags

No cut tags
Page generated Jan. 26th, 2026 10:23 pm
Powered by Dreamwidth Studios