    Trusting the cat to keep the cream or the Netanyahu to keep the data?

    Haaretz received an anonymous tip about the security lapse, allowing anyone to obtain the leaked information in its entirety without using sophisticated tools. Right-clicking on the Elector app's home page and choosing "view source" revealed the original code of the internet page. The code revealed all the usernames and passwords of system admins, allowing one to log in and download the registry.


    I'd like to pass on that question


  • @Luhmann That's one. There's several more in my post. 😀

    Fake edit: Oh, you were pointing out my name error... um, whoops. Names are hard?

    As linked by @ender over on Discord:

    @Atazhaia at first I thought "hold up" was about "doesn't build due to runtime errors".

    @Atazhaia The original mail on a mailing list archive:

    Apparently the text of the novel is used to test the compression library:

  • @levicki said in WTF Bites:

    Even GitHub stopped counting .Net bugs.

    how many of those are:

    • Actual bugs
    • Users failing to read the manual
    • Users asking someone else to do their homework for them
    • Feature requests for useful features
    • feature requests to make the language do their chores for them
    • Documentation update requests to clarify confusing language
    • Documentation update requests to replace "factory" with "hotdog" because the word "factory" is triggering and no longer politically correct.
    • Issues opened requesting that the people who want to replace "factory" with "hotdog" be banned
    • Spam
    • Cut rate Cialis commercials
    • More Spam
    • Trolling
    • Stupid trolling
    • Seemingly legitimate issues that are actually elaborate trolls


  • @Vixen said in WTF Bites:

    Cut rate Cialis commercials

    Issue summary: Developing in .NET fails to give me a boner


    @Vixen so assuming all of those issues are garbage, you see no problem with Microsoft failing to delete them?

    However, I find that highly unlikely, considering that the MO seems to be to automatically close tickets older than 3 months.

    @topspin said in WTF Bites:

    However, I find that highly unlikely, considering that the MO seems to be to automatically close tickets older than 3 months.

    I prefer to leave an issue for three months to see if the user is going to give up and go away before I have to do anything about it. The power of :kneeling_warthog: is mighty indeed...

  • @topspin said in WTF Bites:

    @Vixen so assuming all of those issues are garbage, you see no problem with Microsoft failing to delete them?

    However, I find that highly unlikely, considering that the MO seems to be to automatically close tickets older than 3 months.


    if the issue is legitimate more than one person will report it or upvote it or produce a test case.... otherwise.... yeah these open to the public bug trackers need a mechanism to remove the dross and that mechanism serves.

    is it perfect? no, does it work? -makes a "maybe" sort of grunt with accompanying hand gesture-

    Timezones are hard, let's go voting!

  • @djls45 It's not much better


    Samsung has announced the Galaxy S20 (which was already leaked), but they're not taking preorders yet. Instead you can register to preorder? Pre-preorder? This gives you an advantage over people planning to preorder later, but it's also rumored that particular VIPs were able to pre-pre-preorder.

    Filed under: I'm gonna pre.

  • @levicki said in WTF Bites:


    no offense.... don't actually care who or why.


    i make my own amusement. and the fact that i got a +5 upvote with only 4 total points amused me so i ran with it.

    that's all.

    also because i know you care.....


    @levicki said in WTF Bites:

    So, you are basically punishing me for being open and honest with you just so you can get instant revenge?

    Do you see the lack of red color on that vote button? That was her point, because you care.

    Now back to Radio WTF.

  • @levicki said in WTF Bites:

    it was not "you should be funnier" but "you could have asked the same thing in one sentence and get the same answer sans downvote".

    ah, but you see, the point of my post was 90% to be funny (to my sense of humor), 5% because i could and only 3% to ask a question (with a 2% margin of error) so.... i think the proportions of my original posting are correct.

    @levicki said in WTF Bites:

    When we are at it, you could have spent some effort yourself on .Net issue tracker

    could have. didn't because wasn't actually relevant to the joke i was "attempting" to make (which i found to be hilarious by the by) also :kneeling_warthog:

    @levicki said in WTF Bites:

    really rubbed me in a wrong way.

    [insert extremely not safe for work/life joke here.]

    @levicki said in WTF Bites:

    As usual, @topspin asked a good question and offered another point of view, but you shrugged that off as well.

    you know..... they did. they asked "if all those issues are garbage should they be deleted"

    I answered that because anyone with a github account could create an issue they needed some mechanism to filter the issues so that the issue tracker contained only relevant tickets. I explained that i thought their current system while flawed served that purpose..... so if that's shrugging off the question....... welll.....

    /shrug oops?

    @levicki said in WTF Bites:

    Sorry if I was not clear the first time around. Still learning to communicate.

    Not a problem, learning is fun. shouting, not so much.

    @Vixen Disengage.

    Per official WTFCorp policy, the webmail logs me out automatically after every hour of inactivity. Except, it kind of doesn't? My inbox stays open, and I can even see new messages arrive, but as soon as I try to open one, then it logs me out for having been inactive too long. But I'm obviously still logged in until that point or I wouldn't have seen the message to click on it.

  • @error Our extremely backward web printing system does something similar. If you're quick enough, you can even go through the motions of submitting a job. But, just as soon as you've selected the file to upload, confirmed that you indeed want to get a dead-tree copy, *bam* login page.

    Unfortunately, given the amount of suck that printing suffers from around here, this doesn't even make my list of complaints.

  • Considered Harmful

    @cvi said in WTF Bites:

    @error Our extremely backward web printing system does something similar. If you're quick enough, you can even go through the motions of submitting a job. But, just as soon as you've selected the file to upload, confirmed that you indeed want to get a dead-tree copy, *bam* login page.

    Unfortunately, given the amount of suck that printing suffers from around here, this doesn't even make my list of complaints.

    I'm willing to automate the login process with my Chrome extension but it asks for a 2FA token.

    I want to write an Android app that sends the token to the extension but I don't know how to scrape the code from the app.

  • @error said in WTF Bites:


    You can try if faking activity with “Staying Alive for Google Chrome™” plugin (or corresponding plugin for whatever browser you use) helps…

  • Considered Harmful

    @Bulb said in WTF Bites:

    @error said in WTF Bites:


    You can try if faking activity with “Staying Alive for Google Chrome™” plugin (or corresponding plugin for whatever browser you use) helps…

    The real policy is login expires after 1 hour of inactivity or 2 hours of activity. It's dumb.

  • @error said in WTF Bites:

    1 hour of inactivity

    Somewhat sane…

    @error said in WTF Bites:

    or 2 hours of activity.

    Ok, that's clinically insane. Especially since

    @error said in WTF Bites:


    That would deserve just responding with “I just read and respond to emails once a day, because it logs me out and I don't get notifications”…

    @error said in WTF Bites:

    But I'm obviously still logged in until that point or I wouldn't have seen the message to click on it.

    … and this is clearly their defence against that. Because you do see the notifications. Because otherwise it would be like you don't have the mail at all, right?

    Yeah, :trwtf:.

    @error said in WTF Bites:

    I want to write an Android app that sends the token to the extension but I don't know how to scrape the code from the app.

    The app will try hard to make that impossible, because otherwise the token wouldn't prove anything. Probably—but if it's the Microsoft or the Google one, it might even get the security reasonably right.

  • Considered Harmful

    @Bulb said in WTF Bites:

    The app will try hard to make that impossible, because otherwise the token wouldn't prove anything. Probably—but if it's the Microsoft or the Google one, it might even get the security reasonably right.

    Well, it proves that I have or someone has compromised my phone. In that case, they can read my email anyway.

    I think I can probably OCR it.

  • @error said in WTF Bites:

    I think I can probably OCR it.

    Hm, true, when connected via adb, both input and screenshot (or whatitscalled—it's been a couple of years I did anything around automating android) should work and should work on any application.

  • @levicki said in WTF Bites:

    @Vixen Your joke is funny for you because you seem to be lacking the perspective of an issue reporter.

    @error_bot xkcd perspective

  • WTF of the day.

    User reports that their ad listing is not appearing on the website correctly.

    We (IT Support, with a side order of Appdev because the ad system is old and arcane enough that front line support doesn't understand all of it) ask what's wrong with the ad.

    They report it's missing.

    we look, all ads in the system are listed correctly (we have a script for this because that was a problem once.... three/four years ago and users still don't trust the system....)

    we inform the user that all ads in the system are listed.

    User informs us theirs is still missing and it should be online.

    We ask the user if they had entered their ad into the system.

    User had not.

    We tell user that in order to run an ad it needs to be in the system. please enter the ad in the system.

    User complains that they never had to in the past.

    Customer service (separate department from IT) chimes in with "that's because we always ended up having to do it when the customers who placed the ads complained to us. so enter the ad in the system."

    I sigh and go get donuts for customer service, because they're nice people who deal with way too much of that carp from our salespeople.

