Hacker News new | ask | show | jobs
by knodi123 4187 days ago
I've seen dumber. In my second real job, I was a book editor, but I noticed our web master literally had a file called accounts.js which held a static array of usernames, passwords, and billing information for all of our customers. I told him this was terrible security, and he said, literally, "You'd have to view source to even know passwords.js exists, and our source is pretty hard to read. I'm not worried."

I took all the info to our CEO and got him demoted to server maintenance guy, on the spot, and I took over his job.

He later gloated that my store was much slower than his, since he downloaded our entire database as JS flat files and did absolutely everything client-side except payment processing and order fulfillment. I pointed out that my store didn't require 10 megabytes of download for the first page view, plus I had industry-standard security.

He was in even more trouble a couple of weeks after that, because some russian hackers pwned our server so bad that we had to drive to the colo and replace it with a new piece of hardware. I've got a dozen stories about this guy, he's a hoot.

Okay, last story, I promise; he's allergic to electronics power supplies, so he was the only employee who got to work from home (where he kept his CPU in a separate room from his keyboard and monitor).

2 comments

Ha ha. The real WTF is moving him to a job where security is even more critical.
"I took all the info to our CEO and got him demoted to server maintenance guy, on the spot, and I took over his job"

WOW. You are a terrible human being.

No, I'm really not. This guy was an arrogant ass who ignored me because I was 22 and he was 51 and he "was doing this stuff when I was still pooping my pants". He refused to follow best practices, and he refused to take advice.

I told our CEO what this guy was doing, why it was bad, why nobody else does that, and how it ought to be done instead. I honestly thought our boss would just force him to follow my recommendations. But instead he told me to just re-do it the right way myself. Boss made the best decision for the company.

You could have presented your objections in a more tactful manner, but you didn't, because you're a judgmental asshole.

> WOW. You are a terrible human being.

Yes, heaven forbid someone qualified run their IT dept. What's he supposed to do? Sit around, idly hoping that someone else notices the incompetence?

I think OP made the right move. To me it sounds like the guy should have been fired rather than demoted.

really David ? Come on. How many times you made mistake ? Were you demoted and/or fired for mistake ? Now, let's not argue that you or all of us has not fucked up. In my 7 yrs. as engineer I have seen worse. However, that's not excuse to run to boss/CEO to demote someone and take over their job. Think about their family,kids before you do such act.

If you defend such behavior for taking over job/demotion I seriously think there lies greater problem in tech community.

Edit: HN is getting fucked up day by day. Any simple disagreement is greeted with downvotes. Carry on.

"you are a terrible human being" is not really a simple disagreement.

"That seems like a rude thing to do" would be.

What you said was a personal attack, and a quite rude one at that.

> What you said was a personal attack, and a quite rude one at that.

That's correct, and no doubt the reason for the downvotes.

The downvotes here have grown way out of control. Simple disagreement with the majority opinion results in massive downvoting.

I've even seen numerous posts that contain nothing but factual information that displeases the audience here be voted down into the gray. The post can be in the flattest, most neutral tone possible, and if it's not what people want to hear, down it goes.

It's discouraging, and it's to a point where I no longer feel a desire to participate in this community. Frankly, I'm finding a number of subreddits to be more inviting and more interesting these days.

I don't really see what can be done about it, if you even agree it's an issue, but I did want to make a point of letting you know about a problem I've seen grow worse over recent months.

Everyone has made mistakes. But it takes a certain special person to stick their head in the sand when their mistakes are pointed out.

Make your mistake, take responsibility, learn and continue on.

I'd be willing to bet the customers would disagree. And he did give the guy a chance to change this ways.