It was around 620 by the time I got around to opening new cards.
I think the crash was mainly due to the length of my average active credit history going from 10 years to 0 years, as I really did only use Chase credit cards.
856 karma · joined March 4, 2017
It was around 620 by the time I got around to opening new cards.
I think the crash was mainly due to the length of my average active credit history going from 10 years to 0 years, as I really did only use Chase credit cards.
What I will do is spoof my mac address to match my laptop, and then pass the login wall to create a session. Then restore the original mac address, and then I can finally use my apple tv on the hotel wifi...
I wish they had a web browser on the apple tv.
https://web.archive.org/web/20200103170008/https://tjcx.me/p...
It is a big change from when I reported issues back in 2012[1] with them on the starbucks.com domains.
They were very nice though, and did let me keep a $200 credit which was quite rare at that time.
Also after they fixed it the SAME bug got reintroduced for some reason in 2015[2], and @homakov had the pleasure of reporting it again.
At the time I do NOT think they had any actual bounty programs like they do now.
I can only hope they now do proper regression testing for these types of issues.
[1] https://chadscira.com/post/556999d91cb00914380006ee/Re-Starb...
"Can you also confirm if this allows additional points to become available for use?"
This was why I had to remove the negative points, and make a transfer to prove that they indeed could be used.
The entire experience with Chase while I was assisting them was very positive, and they even mentioned something about putting me on their upcoming researcher leaderboard.
Since chase is a very big organization I would have to assume that another department took over the situation after, and decided to terminate my accounts to avoid any risk.
I will never know for certain as they have been very close lipped about the whole event.
They were one of the first companies to have solid mobile banking.
The account was brought back to normal well before the termination of all of our accounts.
I also expected them to have automatic triggers, but at the time they did not.
From what I understand they can close your accounts for any reason.
You would think out of all people a bank would have deep enough pockets to afford a proper bounty program, as well as treat researchers well.
Back when this originally happened they gave me 60 days for the credit cards, and 30 days for the checking/savings account.
It's always a scary experience.
The funny thing is according to them I was the only contributor from 2016 to the end of 2017. So they must not get many reports.
Since then they did develop a disclosure program, but it would be great to hear from anyone else that reported things to them after the end of 2017.
The only compensation I received with this whole situation was the termination of my accounts, and a family members account being terminated as well.
It's very hard to know the reasoning behind the termination as they never gave me any information.
"ignorance is bliss"
It seems like they just are taking all the new patients, and not calculating it correctly. I expect this number to grow.
It is an ADDITIONAL privacy step. He runs a company with thousands of employees, and with any company like that you never know if someone may decide to become a bad actor, and physically compromise him.
But yeah lets continue to hate on facebook.
https://github.com/icodeforlove/task.js
Which works on Node.js, and the browser. (Supports fork, worker_threads, and WebWorkers)
The advantage of this is that the workers become generic enough to run anything. Instead of having to have many "specialized" workers.
Performance-wise eval is not slow, and it is encapsulated inside of the actual worker. Obviously you don't want a user to be able to control any input. But for most cases we are talking about code related to processing, which involves hard coded functions, and the "external-data" being ArrayBuffers.
I have no idea why they would not be using transactions, and make the same mistake twice. It really does make me wonder how much FAKE money is inside of that BILLION DOLLAR pot.
I also found similar issues in 2017 for their Thailand division. But this is at least understandable as Thailand operates its own Gift Card system.
[1] https://chadscira.com/post/556999d91cb00914380006ee/Re-Starb... [2] https://sakurity.com/blog/2015/05/21/starbucks.html
https://github.com/you-dont-need/You-Dont-Need-Momentjs/raw/... https://github.com/you-dont-need/You-Dont-Need-Momentjs
There are still many situations where these alternative solutions will not work. For example timezones.
But in general pulling moment.js in for one method call is pretty ridiculous if it can be replaced and needs to be ran on the clientside.