exploresecurity
@exploresecurity
IT security miscellany, commentary and curiosities || the geeky alter ego of @MrJeromeSmith || thoughts are my own (who else's would they be?)
ID: 1287058142
http://www.exploresecurity.com 21-03-2013 21:51:29
949 Tweet
703 Followers
217 Following
Excellent customer service from Richer Sounds. Rang to query why 6yr guarantee unavailable on a product I was looking at (when it was on a similar product). 4 hours later - not only do they ring me back to tell me it was a mistake but they've fixed the website. Good job!
Is there really no way Just Eat UK that a lost-n-found gift card can be reactivated? I assume it's expired (website only says "invalid" and have triple-checked code). Having to tweet because your "Contact us" page does no such thing.
As usual from PortSwigger Research and James Kettle, it's not just the theory but the accompanying resources which support the practice - nice job!
The Alexandra Palace steward in this story should be congratulated - he followed protocol under pressure. So important for 'first line' staff to have a robust process to follow and to be confident sticking with it. talksport.com/sport/1705572/…
More awesome work from Rich Warren and Johnny Fishcake
SQLi despite 'secure' Prepared Statements! Known to affect mysql and mysql2, nice write-up from Balazs Bucsay [EQ] (and with due credit to previous work by other researchers)