Message from @shadowedROM

Discord ID: 225429091925360640


2016-09-14 01:24:54 UTC  

Everybody is making SaaS stuff

2016-09-14 01:26:49 UTC  

yeah idk i'm probably biased.

2016-09-14 01:27:01 UTC  

what do you work on nowadays?

2016-09-14 01:27:50 UTC  

infra stuff, the meta task of spinning up lots of your SaaS webapps

2016-09-14 01:28:14 UTC  

and keeping all the plates in the air, monitored and not pwned by the worst enemy: ourselves

2016-09-14 01:28:33 UTC  

accidentally pwning your webapps?

2016-09-14 01:28:49 UTC  

it happens

2016-09-14 01:28:59 UTC  

people aren't that good

2016-09-14 01:29:32 UTC  

I got a piece of software running in the wild

2016-09-14 01:29:36 UTC  

someone bought it

2016-09-14 01:29:46 UTC  

It's made to download spotify songs with a web interface

2016-09-14 01:30:06 UTC  

The input for the url is directly pipped into command line as root

2016-09-14 01:30:11 UTC  

without input santization

2016-09-14 01:30:23 UTC  

It's not pwned yet!

2016-09-14 01:32:11 UTC  

there's a laundry list of stuff you watch out for but yeah i mean, your rinkydink app probabilistically isn't an attractive target to anyone besides folks hunting for trophies right

2016-09-14 01:32:38 UTC  

there's xss stuff in addition to input sql / stack smash attacks or whatever

2016-09-14 01:32:57 UTC  

but i was actually referring to devs who push out malperforming code

2016-09-14 01:33:42 UTC  

it happens way too often, stupid race conditions esp with front end js these days, which is really frustrating because that's tough to run a test for; it's the halting problem etc

2016-09-14 01:34:09 UTC  

but yeah sometimes the old dumb use of ORM knocks down a DB and whoops there goes our weekend

2016-09-14 01:34:25 UTC  

oh so

2016-09-14 01:34:43 UTC  

with AWS there's a cheat code there in the form of being able to feed more horsepower to dynamoDB and such

2016-09-14 01:35:02 UTC  

and that's basically where people fuck themselves

2016-09-14 01:37:32 UTC  

it's enough to make someone want to stop doing tech stuff and go into ... marketing or something. :/

2016-09-14 01:37:42 UTC  

too many incompetents

2016-09-14 01:38:41 UTC  

where you from?

2016-09-14 01:38:51 UTC  

Temping to assume US

2016-09-14 01:38:58 UTC  

nyc

2016-09-14 01:39:11 UTC  

so my experience is likely colored

2016-09-14 01:39:11 UTC  

I keep hearing they got good devs in general in the US

2016-09-14 01:39:18 UTC  

hell no

2016-09-14 01:39:50 UTC  

we have a large sample space is all

2016-09-14 01:40:53 UTC  

there's a toxic work culture thing in tech the past few years where everyone wants their teams to work like it's a startup and put in 60 hours a week to push inane projects out

2016-09-14 01:41:12 UTC  

likely not going away

2016-09-14 01:41:29 UTC  

btw sorry to interrupt

2016-09-14 01:41:35 UTC  

but where tf is the php.ini file

2016-09-14 01:41:49 UTC  

which os? usually /etc/php/php.ini no

2016-09-14 01:41:54 UTC  

linux yea

2016-09-14 01:41:55 UTC  

ubuntu

2016-09-14 01:41:58 UTC  

it's not there

2016-09-14 01:42:04 UTC  

It was there like a month ago

2016-09-14 01:42:06 UTC  

find . | grep php