HNHacker News
TopNewBestAskShowJobs

deelin

-1 karma · joined January 20, 2017

Berkeley '13 Interested in Distributed Systems + DevOps Currently working as a Full Stack Engineer @ pymetrics
submissionscomments
deelin··on Virtual Keyboard Developer Leaked 31M Client Records
Imagine that you created a tool that had all security features enabled. The usability of it would be incredibly low and barrier of entry so high that rarely anyone would use your tool. The idea behind allowing "open access" is to allow for a new user to learn the most important aspect of your tool by realizing what problems it solves.

Of course, from a security standpoint, people will still make mistakes like this, but the onus is NOT on the tool developers. They make it configurable for a reason.

deelin··on Virtual Keyboard Developer Leaked 31M Client Records
This little comment about Mongo really bothers me... I disagree that it's a flaw. It's obviously the fault of the tech team for not securing the DB

"One flaw is that the default settings of a MongoDB database would allow anyone with an internet connection to browse the databases, download them, or even worst case scenario to even delete the data stored on them"

deelin··on Ask HN: Which Berkeley Courses Should I Archive?
Ahh Harvey. He was really one of the best teachers I had at Berkeley.