TMoible defends storing their passwords in clear text. WARNING: this twitter discussion is fucking retarded

TMoible defends storing their passwords in clear text. WARNING: this twitter discussion is fucking retarded. twitter.com/tmobileat/status/981785213549383680

Attached: Spectacle.oJ3164.png (613x959, 132K)

Other urls found in this thread:

twitter.com/alessandrinoino/status/982356908496564224
twitter.com/svblxyz/status/982333558525083648/photo/1
schule.t-mobile.at/phpmyadmin/
t-mobile.at/
twitter.com/SFWRedditImages

Yeah, pretty shitty. I use T-Mobile USA for pre-paid service but no doubt they're fucking it up here too.

Any website that can email you your forgotten password is storing in plain text.

holy fucking shit

Attached: Capture.jpg (642x793, 80K)

god damn it what the fuck
this is unacceptable for such a large company

Attached: 1504222751597.png (595x551, 55K)

Käthe ain't gonna be employed much longer

>woman in tech

Attached: 1444033478722.jpg (640x640, 108K)

>>>>>>CUSTOMER AGENTS SEE FIRST FOUR CHARACTERS OF YOUR PASSWORD

what the FUCK. thats more than enough info to guess 99% of passwords.

What is it about Twitter that turns people into rude assholes? Holy shit.

T R I G G E R E D

AHAHA

I actually applied there. Good thing I didn't get the job.

I can't believe this is real

Holy fucking shit.

Why is this allowed?

Attached: 1517476001945.png (1024x957, 692K)

Is Käthe the name pajeets use when Austria outsources its customer services to India?

Does anyone actually like Austria

Attached: 1511523253940.png (1231x212, 114K)

Well this one cool dude came from there but that's another story

>I know more about account security than a multi billion dollar international telecommunications company!

Stay retarded, Jow Forums

Storing passwords in plaintext is actually quite common. You can't do secure authentication schemes like CRAM-MD5 without it.

Check whether your email server supports cram-md5 for shits and giggles. If it does, it stores your plaintext password.

What are we looking at?

This was this one guy with a pretty cool moustache that was born there. I always liked him.

bait

>yfw the marketing team running this Twitter account have more authority than anyone in tech

Attached: butter.png (680x471, 390K)

twitter.com/alessandrinoino/status/982356908496564224

Most of their server software hasn't been updated in years.

Why censor this? It just looks like a shop when it's presented this way.

It isn't, she's fired by tomorrow.

My fucking sides
That's what they get for "hiring" interns instead of competent people. "amazingly good" security my ass.

She fucking better be

It's all over twitter, reddit etc. Really bad PR, she's a goner.

I love how they are already hacking this

OwO
It's probably vulnerable to all sorts of shit.

Where's the hacker known as four chan when you need him?

:^)

Attached: meme.jpg (1808x1980, 276K)

>build date
>2011

Attached: 1487050404754.gif (400x360, 666K)

>2.6

Attached: 1359666329260.png (361x451, 264K)

this has to be fake...

Attached: Arnold-Scwarzenegger-Golds-Gym-Harold.jpg (550x373, 28K)

Oh for fucks sake. I'd think about switching contracts, but I'd be surprised if other providers were any different.

No. Fucking. Way.

She's now got more "customer service incident handling" experience than most of her peers.

WHAT THE FUCK

Attached: 1517864453737.png (700x2000, 945K)

goes from polite and courteous to weirdly defensive and hostile in 1 reply

>we have the best security! You have nothing to worry about!

Attached: best security.png (362x188, 39K)

lmao

and that's T Mobile shorted

>god damn it what the fuck
>this is unacceptable for such a large company

Sony did it with Playstation Network users. Credit card data was stored in plaintext

Big companies need consumers to think they know what theyre doing, but remember that the bulk of their backend was devised by new college graduates led by 60 year olds who just want to retire soon

Hey Käthe

Yeah like the PR intern working the twitter account is an expert on their infrastructure. Telecommunication is objectively a haphazard industry and the person posting for T Mobile should be fired

>get hired by T 2 weeks ago

was too good escaping neetdom

Yeah but she wont be putting this on her resume

Pop corn time?

Go back to twitter, Käthe.

>Build Date: Jul 13 2011
>Jul 13 2011
>2011

Attached: koichi-reaction.png (960x540, 752K)

twitter.com/svblxyz/status/982333558525083648/photo/1

Attached: DaHzCPZW0AAiHK8.jpg (745x425, 21K)

>Credit card data was stored in plaintext
How is it supposed to be done? I suppose you can't hash them like passwords as you actually need to use them in their original form so what is there to do besides encryption of the plaintext?

Maybe ciphering?

It gets better.

Attached: 1522514600706.png (772x183, 13K)

So is this exclusive to austria or will worldwide be effected?

And whose fault is that?

That's still at best only security by obscurity.

Encrypt and hash 2 numbers at a time with each section stored in a separate area needing a separate key to access it giving you the pointer to the next location etc, how we do it at work

At least it's better than plain text.

What's their biggest crime other than whoever is running the Twitter account

Just how bad can this be

Let Stripe do it for you. :^)

So heartbleed would work here?

It’s probably pajeet and not Stacy the one to blame

I've had several pleasant conversations with her. Not really something I expected out of an incest thread, but I guess you find all sorts of people here.

No fucking way.

Attached: 1519716792004.jpg (641x530, 41K)

>Austria
Who gives a fuck?

If they do it in austria, they do it everywhere else.

schule.t-mobile.at/phpmyadmin/

It's not even over HTTPS.

It's documented in the PCI DSS standard, current version is 3.2.

The future of IT: Pajeet taking care of the systems, Stacy taking care of PR

T-mobile?

Maybe is a trap?

posting in a glorious thread.

Did you had tried the default password?

Well...noctua.

Well it's a multinational corporation, so...

They tried.

Attached: 1509190714920.png (474x87, 5K)

This isn't even a big deal.

This has to be a honeyspot by T-Mobile to turn in script kiddies to the government.

Attached: wtf this image huewhuehuee.jpg (1067x1129, 300K)

Maybe, maybe not.

>Assuming people are intelligent

>implying anons aren't using vpns

Of course. I'm an elite hacker.

Attached: 1517641201234.png (404x414, 42K)

>he doesn't use a different password for every website
Literally your own fucken fault.

kek did someone rm -rf the entire site

Attached: 2018-04-06-223457_527x288_scrot.png (527x288, 16K)

wew lad

Phone free day in Austria today.

t-mobile.at/ still looks clean so maybe. it might also be a panicked it monkey realizing that everyone was poring over the server and is desperately trying to lock it down.

I hope it went something like this:
twittertard >hey some people are complaining out our passwords or something?
IT >lemme see..
IT >fuck all that, our shit is super secure, they're just plebs who don't know what they're talking about
twittertard >yeah, ok..*proceeds to engage in ignorant bantz detrimental to PR*
twittertard >man, people are really pushy about stuff they don't know about, huh?
IT >what the fuck? were you telling people what I was saying? Jesus christ, we're going to be fucking fired.

I thought marketing/PR people are told specifically to not do what this person was doing. Don't start bantz, don't argue with complaints, don't confirm nor deny any accusations, etc.. Maybe it's just austrians

it's up for me, missing the fun part :'(

Never seen an Austrian named "Käthe". Thats a very german name.

That's the ass covering school of PR, but this looks like the result of a tier 1 phone agent being promoted to the keyboard because people DM/@ tech support questions. All the brilliant marketing in the world won't help you if the wrong person answers the message.

do you guys think Kathe is hot? I imagine her as a blonde 20 something.

Fucking based Kathe

how is cricket

Austria has some of the dumbest women I've ever met but they're hot

At this point I would just point metasploit at it and see if it works

Attached: 1506724942595.png (1242x859, 152K)

I'm pretty sure this bitch just painted a target on the company for hacker groups

What the fuck
Even the smallest project i've ever worked is using hashed passwords using salt
I wonder how their top management react to this one

Their top management didn't give a shit anyway. They'll only react because it affects their seats and find a scapegoat. They'll throw money at the problem to make it go away.