3,219 karma · joined December 8, 2010
And speakers! I recommend: https://www.youtube.com/watch?v=5Vt8zqhHe_c
I've been researching these services for the past few weeks since I've committed myself to liquidating most of my belongings (I live in a small apartment with no closets -- thanks New York! -- and was inspired by this blog post: http://www.raptitude.com/2011/01/i-dont-want-stuff-any-more-...), and would prefer to see them in the hands of friends and those in need rather than a landfill.
Does anyone have recommendations for where/how to donate more valuable items? For example, I want to donate an expensive drone I never use, but would prefer to see it go to a classroom/after-school program. Thinking I'll search DonorsChoose.org and offer things to teachers, but is there another service?
(I'm really glad they did this, because at 4chan's patented "SOON™" dev pace, it'll take us another decade to add native IPv6 support.)
The biggest concern I have is not so much the price it would fetch (which is probably not much given recent events), but rather finding a suitable steward for the community.
It sucks, but I think we'll see more of it in the coming months/year. A lot of the seed-funded apps/companies from the past few years simply won't represent later-stage venture opportunities, and may find themselves in a position where they can't raise additional capital but can keep the service afloat without the payroll overhead.
I appreciate the kind gesture, but I really hate accepting donations, and to that end we haven't accepted any in ~8.5 years.
Where/who would you suggest? I'm certainly open to the idea.
These already exist in droves, which is exactly how our Amazon credentials were found.
http://www.itnews.com.au/News/375785,aws-urges-developers-to...
I'm not a terribly good programmer, and have been very hands-off with 4chan's code for quite some time. I still direct development and am responsible for the servers/sysadmin tasks, but there are far more talented developers out there than I. In the case of Canvas/DrawQuest, I was 100% uninvolved on the tech side.
But again, in both cases I accept full responsibility for the breaches since ultimately it's up to the project leader to ensure these things don't happen -- even if not active on the technical side.
> I wonder how old the code was for "Mistake 2"?
Very new. It was in a once-off file that we used to quickly pull stats about reported posts, which a) shouldn't have been on a domain without HTTP auth, b) should have been deleted long ago, c) shouldn't have had a bugged auth check or injection vuln to begin with.
All of our codebase (the core application and related tools) has been closed-source from day one. Not sure what you're referring to.
EDIT: Here's a screenshot -- http://i.imgur.com/p0peJp6.png The best part was the reviews. They were all either 1 or 5 stars. People were shocked it actually worked.
The vulnerability wasn't in the main application. I'll write more about it on my personal blog in the coming days (http://chrishateswriting.com).
And you need to disable HTTPS Everywhere for blog.4chan.org since Tumblr doesn't support HTTPS :(
Content-Type: video/webm