Well.. I never...
May. 1st, 2008 06:37 am[06:27] Gotica: rarr rarr rarr
[06:35] SO#2: rarrr
[06:35] Gotica: oh my farking fod
[06:35] Gotica: err
[06:35] Gotica: god
[06:35] SO#2: what?
[06:35] Gotica: I googled an error for one of our internal systems on the off chance that there would be something out there...
[06:36] Gotica: I farking found GOLD... GOLD I tell you
[06:36] SO#2: *giggles*
[06:36] Gotica: Another airline has all their IT documentation open to the outside world.
[06:36] SO#2: wow nice
[06:36] Gotica: Including their internal forms and details on their servers, proceedures etc.
[06:36] Gotica: and it helped solve my problem XD...
Obviously I'm going to do the right thing, drop their manager an email (or call, the phone numbers are published too) and find out if they're aware of their faux pas.
But before I do, I'm collecting anything that will help me in my job (is that bad?).
[06:35] SO#2: rarrr
[06:35] Gotica: oh my farking fod
[06:35] Gotica: err
[06:35] Gotica: god
[06:35] SO#2: what?
[06:35] Gotica: I googled an error for one of our internal systems on the off chance that there would be something out there...
[06:36] Gotica: I farking found GOLD... GOLD I tell you
[06:36] SO#2: *giggles*
[06:36] Gotica: Another airline has all their IT documentation open to the outside world.
[06:36] SO#2: wow nice
[06:36] Gotica: Including their internal forms and details on their servers, proceedures etc.
[06:36] Gotica: and it helped solve my problem XD...
Obviously I'm going to do the right thing, drop their manager an email (or call, the phone numbers are published too) and find out if they're aware of their faux pas.
But before I do, I'm collecting anything that will help me in my job (is that bad?).
no subject
Date: 2008-04-30 11:21 pm (UTC)At least you know they're in compliance with SOX by having this documented somewhere.
no subject
Date: 2008-04-30 11:28 pm (UTC)no subject
Date: 2008-04-30 11:30 pm (UTC)"Ooh, shiny! Material that shouldn't be seen by the public! I should tell them. After I make a copy for myself..."
no subject
Date: 2008-05-01 12:10 am (UTC)There's an SECOND option? Really?
no subject
Date: 2008-05-01 12:18 am (UTC)Some people skip the 'tell them' bit.
no subject
Date: 2008-04-30 11:40 pm (UTC)no subject
Date: 2008-04-30 11:55 pm (UTC)no subject
Date: 2008-05-01 12:37 am (UTC)And a DailyWTF posting.
no subject
Date: 2008-05-01 01:27 am (UTC)I'd snag a copy on General Principles. I'm sure Google has already. *snicker*
no subject
Date: 2008-05-01 04:44 am (UTC)Got a copy of what we can use, the rest is pointless unless I want to destroy the company. Plus my boss has a couple of contacts within that company ironically.
no subject
Date: 2008-05-01 02:14 am (UTC)They never thanked me.
no subject
Date: 2008-05-01 03:39 am (UTC)Oh, and suggest they get a vulnerability assessment, application test, and an external penetration test or two. Just for good measure.
The pitiful thing is, they're not the only ones who expose data like this. I see it all the time in banks and credit unions.
no subject
Date: 2008-05-01 04:41 am (UTC)no subject
Date: 2008-05-01 05:59 am (UTC)There are larger institutional issues if that's the case.
no subject
Date: 2008-05-01 06:00 am (UTC)no subject
Date: 2008-05-01 06:47 pm (UTC)