(no title)
bpchaps | 6 years ago
That said.
The method of encoding production database credentials was rot-13. No joke. In the Quartz interface, you could double click on a starred-out set of credentials, and it would run rot-13 on it and display the password. This was for FX, rates, credit card, mortgage, etc etc etc. Having access to this cloud system gave effective access into all of Bank of America and Merrill Lynch.
They probably save a lot of their money by using very, very bad practices.
Still only the second worst security fail I've seen.
Scramblejams|6 years ago
qorrect|6 years ago
pouta|6 years ago
betherebel|6 years ago
[deleted]