you mah brrrr ra da mmba eeeeenba brrr rat da nnda enda boo..rata teek um blura brrrr ra
- Posts
- 48
- Comments
- 1122
- Joined
- 3 yr. ago
- Posts
- 48
- Comments
- 1122
- Joined
- 3 yr. ago
- JumpRemoved
We have one at home
- JumpRemoved
We have one at home
- JumpRemoved
We have one at home
I've had legacy systems that would encrypt user passwords, but also save the password confirmation field in plain text. There was a multitenent application that would allow front end clients to query across any table for any tenant, if you knew how to change a header. Oh and an API I discovered that would validate using "contains" for a pre-shared secret key. Basically if the secret key was "azh+37ukg", you could send any single individual character like "z" and it would accept the request.
Shits focked out here, mate.