865
(page 3) 50 comments
sorted by: hot top controversial new old
[-] ConstantPain@lemmy.world 19 points 1 day ago

Disabling index and making the names UUID would make the directory inviolable even if the address was publicly available.

[-] Scrappy@feddit.nl 12 points 1 day ago

Security through obscurity never works.

load more comments (2 replies)
[-] wizardbeard@lemmy.dbzer0.com 12 points 1 day ago

Sounds like a good case for brute forcing the filenames. Just do the proper thing and don't leave your cloud storage publicly accessible.

[-] ConstantPain@lemmy.world 4 points 1 day ago

Can't be done.

load more comments (22 replies)
[-] Valmond@lemmy.world 1 points 1 day ago

Bet you could reuse/keep UUIDs for someone/stuff that gets updated and get that new data even if you "shouldn't".

It could work in theory but in practice there are always a billion things that go wrong IMO.

load more comments (2 replies)
[-] RaivoKulli@sopuli.xyz 1 points 1 day ago

This is hilarious

[-] LovableSidekick@lemmy.world 8 points 1 day ago

Securing the db is more of an ops thing.

[-] Rhaedas@fedia.io 17 points 2 days ago

Even the best models fine tuned for coding still have training that was based on both good and bad examples of programming from humans. And since it's not AGI but using probability to generate the code, you're going to get crap programming logic dependent on how often such things were used and suggested by humans to other humans. Googling for an answer on how to code something pulls up all sorts of answers from many sources, but reading through them, many are terrible. An LLM doesn't know that, it just knows that humans liked some answers better than others, so GIGO.

[-] NoneOfUrBusiness@fedia.io 10 points 2 days ago
[-] Rhaedas@fedia.io 10 points 2 days ago
[-] jaybone@lemmy.zip 16 points 2 days ago

Gorilla In Giraffe Out

That would be the real trick.

load more comments (6 replies)

who'd have thought that javascript and client side programming was incredibly susceptible to security flaws and deeply unsafe

load more comments (11 replies)
[-] metacolon@lemmy.blahaj.zone 5 points 1 day ago

Does anyone have a source for this?

[-] 2910000@lemmy.world 7 points 1 day ago* (last edited 1 day ago)

The original article is paywalled (I mean, registration-walled?), this summary is not

404 Media reported that 4chan users claimed to be sharing personal data and selfies from Tea after discovering an exposed database.

load more comments
view more: ‹ prev next ›
this post was submitted on 26 Jul 2025
865 points (99.0% liked)

Programmer Humor

25282 readers
864 users here now

Welcome to Programmer Humor!

This is a place where you can post jokes, memes, humor, etc. related to programming!

For sharing awful code theres also Programming Horror.

Rules

founded 2 years ago
MODERATORS