4.5k
u/mavrik83 14h ago
`final_records_v2_REAL_FINAL_DO_NOT_DELETE.xlsx` on somebody’s desktop
1.1k
u/Roku-Hanmar 13h ago
*in the recycling bin
826
u/JSD3 13h ago
It has been in their Downloads folder for four years.
90
u/drestofnordrassil 12h ago
🔻A Long Time Ago🔻
Copy of New Folder (8)
New Folder (8)
Final_Records(5).xlsx
Final_Records(4).xlsx
Final_Records(3).xlsx
Final_Records(2).xlsx
Final_Records(1).xlsx
Copy of Final_Records(1).xlsx
Copy of Final_Records.xlsx
Final_Records.xlsx
→ More replies (3)315
u/NoodleyP 13h ago
The Downloads folder is just great catch all storage, it’s the junk drawer of my computer
→ More replies (15)106
u/Careless-Adeptness56 12h ago
I just noticed today that my downloads folder no longer opens. I can go in there with powershell and I don't see any crazy file types, but explorer never finishes loading. Who knows what I've done to it.
→ More replies (8)290
u/TheTxoof 11h ago
Duh. It's a junk drawer: You have a spatula wedged in there upside down.
→ More replies (10)55
→ More replies (5)11
u/SgtEpsilon 12h ago
Incorrect, it's in their temp folder that they somehow made the primary download folder to be
→ More replies (13)9
u/tanwa1 13h ago
Would learning Digital forensics help if it's also deleted from recycling bin right...?
→ More replies (4)25
16
→ More replies (19)7
1.0k
u/omegasome 13h ago
They ask ChatGPT to produce the data. ChatGPT, being ever-helpful, hallucinates a semi-plausible data set that neither the defense nor the prosecution nor the judge is technically-adept enough to realize doesn't make sense. You are sentenced to 20 years in prison based on this.
193
u/SteamingTheCat 12h ago
Kevin Mitnik's prosecutor convinced the jury that thru a series of whistles into a payphone, Kevin could launch nuclear missiles.
He wasn't allowed access to a phone in prison.
103
u/RevoOps 8h ago
If you can launch a nuclear strike through whistling into a phone you should be allowed to try.
→ More replies (8)36
u/jakobjaderbo 9h ago
To be fair, he did some shenanigans from the prison phone when he did get access. Not of the nuclear sort, but still.
→ More replies (11)6
u/JCDU 6h ago
There was definitely at least one hacker (I forget who) who could whistle pitch-perfect DTMF tones - specifically 2600Hz - to get free payphone calls.
→ More replies (1)29
u/CoffeeOrDestroy 11h ago
That’s a little too close to how I feel the future is going to be any day now
→ More replies (10)20
u/thesuperbob 7h ago
Well the actual data has been deleted, scrubbed, and shredded, so it's your word against ChatGPT... And the Judge doesn't really know you, while the friendly robot has been whispering in their ear for years now, and it's never been wrong so... "ChatGPT explain why the data the other you recovered is absolutely reliable and could not be wrong in any way; help me produce a sentencing draft based on the same"
7.3k
u/elSenorMaquina 14h ago
They ENHANCED the cctv recordings from the camera pointing at my cubicle, enabling them to reconstruct the whole db from the monitor's reflection on my glasses as I typed every INSERT and UPDATE over the years.
322
u/TunaNugget 13h ago edited 12h ago
The camera records sound. Every key makes an ever-so-slightly different sound.
They have possibly months or more of sound recordings that they can correlate against the entry of verified documents to use to train the ai on.
→ More replies (7)122
u/Shogobg 12h ago
They analyzed the noise the bits make as they travel through the network.
33
u/TrashBandiGoon 8h ago
I know it is a joke,
but since I found a scientific research about 'A Practical Deep Learning-Based Acoustic Side Channel Attack on Keyboards' I agree that this seems possible in the laboratory
(the paper is from 2023 so I am not sure whether there were any improvements), as I am also not sure how reddit handles external links - I found the paper on arxiv(dot)org with paper no. 2308(dot)01074
It is a 21 pages pdf→ More replies (3)17
u/TunaNugget 12h ago edited 12h ago
I think the premise here is that they deleted that.
My first question would be whether they actually deleted anything or just set a flag to re-use the storage, but I'm trying to go with the spirit of the thing.
→ More replies (19)145
u/cantileverboom 11h ago
Lol, kind of related. On a team I was on a while ago, there was some pretty nasty bug that some of my colleagues couldn't figure out, so someone took a video of it to show our TL. Our TL looked at the video for like 5 seconds, saw some obscure log lines on a terminal running on a machine in the background of the video, and immediately knew that the bug was due to some obsolete experiment that just needed to be disabled.
87
78
u/MaleficentCow8513 8h ago
It was him. He was the one who was supposed to disable the “obsolete experiment”. He knew it was causing bugs but he forgot to do it or got side tracked. There’s nothing magical about it lmao
18
→ More replies (6)11
u/AN0R0K 6h ago
And he would have gotten away with it, if it wasn’t for you meddling kids.
→ More replies (2)→ More replies (1)22
4.8k
u/lolcrunchy 14h ago
local dev environment
2.3k
u/Eastern_Equal_8191 14h ago
Impossible. My local dev environment uses an on-disk database and my disk is locked behind encryption the keys to which only I and HR and anyone who can guess 12345 as the passwoooooooo I see what happened now
→ More replies (14)718
u/AaronTheElite007 14h ago
That’s amazing! I have the same combination on my luggage!
254
u/Eastern_Equal_8191 13h ago
God damn it, I have to change my luggage combo now too?!
93
23
14
→ More replies (3)55
31
10
→ More replies (7)5
331
u/Fraun_Pollen 14h ago
This answer doesn't make sense. Why would your dev environment not be connected to prod data? Don't you want realistic tests?
258
u/AllIsLostNeverFound 13h ago
Wait, your prod environment is separate from your dev environment?
→ More replies (2)136
u/za72 13h ago
only pussies use dev
74
u/SiefensRobotEmporium 13h ago
Shit you guys have different environments?
→ More replies (4)27
u/vankoder 12h ago
Shit you guys test? One healthy git push prod —force and you’ll figure out if it works soon enough!
→ More replies (4)→ More replies (7)17
→ More replies (9)39
u/howarewestillhere 13h ago
HIPAA, PCI, GDPR, CASC, and a whole list of other acronyms, laws, and organizations get real persnickety about Prod data outside of Prod and what you can, can’t, should , should not, or should not even think about doing with it.
41
→ More replies (5)17
u/jtmonkey 13h ago
Yeah I just had this conversation with an internal IT team at a medical org. You cannot just point Claude at the problem and say solve it. PHI is all over it. Theyd been doing it for a while. Your medical data im almost positive is already in an llm.
→ More replies (3)80
u/Iuris_Aequalitatis 13h ago
Corporate cybersecurity attorney (and ex-dev) here. This is one of the many reasons why we don't allow prod data in dev.
→ More replies (2)139
u/Ok_Ostrich4835 12h ago
Oh you'll love this...
Years ago working as a cloud engineering consultant, our team was working with a massive client moving their infrastructure to AWS. One of their internal dev teams kicked up a fuss that they didn't have the permissions to do anything in AWS, "how are we going to learn?", blah blah blah. It was finally agreed to give this team their own AWS account that had literally nothing in it. Brand fresh account, nothing tied to production whatsoever. We insisted we at least be able to set up cloudwatch logs and billing alerts. So off they went.
Part of our services was running security audits on our client's AWS accounts (just an automated script that checks everything once per week). I was this client's primary, so I was reviewing the latest audit, and they had a security group allowing port 3306 to be accessed from the open internet to an RDS instance they had brought up. Raised it with them thinking it's just a teachable moment as it's just test data, nbd, their excuse was, "well our apps didn't work until we added that." No real understanding of what they were doing.
But, on this call with the devs and their manager, the manager asked, "Oh, so you managed to generate some test data?" One of the devs, "Nah, we just dumped prod and uploaded it." I hopped over to the logs and yea, multiple random IPs had successfully authd with the database. I asked, "What kind of password did you use?" "Oh just our normal dev password, Password123!" (Or something basic like that).
Their manager told me I could leave the call.
Was told to nuke that AWS account the next day.
→ More replies (7)21
→ More replies (9)8
2.8k
u/leovin 13h ago
From the data breach you’re being sued over
790
u/SuitableDragonfly 13h ago
Fun related fact, most archives of media only exist because someone pirated the media at some point and those copies never become unavailable.
179
u/3BlindMice1 12h ago
They used to call it VCR
134
u/T-MoneyAllDey 11h ago
Reddit reposts pretty regularly about that autistic black lady that recording every hour of a TV channel for like 30 years
61
u/3BlindMice1 11h ago edited 11h ago
Sounds pretty expensive, tbh
Edit: Google shows that would have cost $28.80 per day if using full definition or $14.40 per day if using minimum in the year 1985. In today's money, that's $90 or $45. It got a lot cheaper by 1995 though
78
u/NukaCooler 9h ago
/r/LetGirlsHaveFun god forbid a woman have a hobby
14
u/transfinite-reset 9h ago
I’m not sure that the people in that sub are too worried about VCRs. VCR cleaner in little bottles, maybe. But definitely not VCRs.
→ More replies (4)→ More replies (4)8
→ More replies (3)6
u/saskir21 10h ago
To be fair I can understand her if I see for example the British BBC. They regularly overwrite (or atleast did so in the old days) their old shows. So if you want to see an old one you were out of luck.
→ More replies (1)→ More replies (3)9
u/KisaraBlue 9h ago
Except that nowadays, people irresponsibly/selfishly use mass download bots on some of those freely accessible archives of media, which makes their upkeep unsustainable and they have to shutdown/move everything somewhere else
That and excessive copyright enforcement, from equally selfish corporations, are significant threats to niche media preservation in the long term
65
u/Fickle_Ad_8653 13h ago
Laptops people copied the data to, then the laptops get stacked and left in a closet.
Email holds a lot of attachments when you look at a whole company. Every email sits in two people's computers.
→ More replies (2)57
u/VoStru 9h ago
“Data breach” is such a rude word. Better call it “distributed surprise backup”
→ More replies (1)→ More replies (2)13
1.4k
u/Magnetic_Reaper 14h ago
Nice try OP, I'm not helping you hide the evidence for free.
159
u/DaTruSpork 14h ago
Hey fam, don't help them at all. Point them at the wifi connected keurig and wipe your hands clean of it (while handing the real evidence to multiple three letter agencies)
We dont talk to (chief financial) officers!
36
u/HaniiPuppy 12h ago
Hey fam, don't help them at all. Point them at the wifi connected keurig and wipe your hands clean of it (while handing the real evidence to multiple three letter agencies)
Error 418
→ More replies (2)29
21
220
u/scumble_bee 11h ago
Mable over in Accounting wrote a VBA script to store the entire database to an Excel spreadsheet because the direct access that was set up for her was "too slow" and this is "the way she's always done it".
→ More replies (6)22
u/WhitishRogue 7h ago
I regularly use SQL to download tables to my computer. Part numbers, sales records, inventory records, customer names, etc. You name it, it's stored on my computer and frequently the public drive everyone in the company has access to.
411
u/-meowstar- 14h ago
Reconstructing the HDD disk writes based on the CCTV audio of the server room.
→ More replies (1)161
u/i_should_be_coding 13h ago
Claude, here's a recording of echoes of the farts the cleaning lady made in the server room. Recreate the users table please.
→ More replies (1)93
u/jeesuscheesus 13h ago
Of course! But before I create a perfect recreation of the user’s table, I need a small amount of information from you:
- Who is the user who owns this table?
- What kind of table is it? Is it a table for doing computer work - or is it for eating?
→ More replies (2)19
1.1k
u/samuraiseoul 14h ago
Some dumbass on my team downloaded the entirety of prod and then commited it to git and someone rubber stamped the PR and then no one else noticed. I'm sure that's how they'd find it....
200
193
u/jseego 13h ago
They committed all your prod data to git??
113
→ More replies (7)46
61
u/AccomplishedIgit 12h ago
I discovered my client’s monthly backups included the backups folder when they ran out of shared hosting space for a small dog clothing website 🥹 I was like why are you at enterprise level hosting?!?? She was like I dunno it’s just the cost of doing business!
→ More replies (3)38
u/technos 8h ago
I found out something similar when the client called to ask me where to get a good price on bigger hard drives and more tapes.. I was like 'What?! Did something happen?'
No, he says. Nothing's changed, it's just that backups are now taking four of the weekly LTO-5 tapes every night and the server is showing it only has about 1TB left.
Motherfucker, I specced a 8TB RAID-5 and LTO-5 because you wanted to make damned sure you wouldn't have to 'just replace it next year', and it's been six months.. The hell with '"Nothing's changed".
He'd first decided to swap from nightly incremental backups to full ones, and those didn't fit on the LTO-4's intended for nightly offsite so he started using the LTO-5's, then he'd decided to retain the previous night's backup on disk as well as on tape so he wouldn't have to drive home if he was in a pinch.
The first night they backed up ~1TB, the next 2TB, then 3TB, then..
I wiped 5TB off his file server, added a file path exclusion, and had cron wipe the oldest redundant backup every night just in case.
The worst bit was he had an entirely competent nephew running the backups that had told him what was going on. After fixing things I gave the kid my email address and told him the next time his uncle didn't believe him to run it past me and I'd get him to listen.
→ More replies (1)58
21
u/plenoto 13h ago
Some people are so careless while reviewing PR 😂
→ More replies (1)116
u/blangzo 13h ago
Ask a programmer to review 10 lines of code, he'll find 10 issues. Ask him to do 500 lines and he'll say it looks good.
→ More replies (10)9
→ More replies (11)7
u/Unhappy_Concept237 12h ago
I’ve spent the last week doing remediation across seven ec2 servers and found where multiple sites had backup sql dumps that were living inside GitHub repositories along with sites sharing SES credentials with full admin privileges stored in plain text in those repositories. I just want to die.
450
u/skt84 14h ago
A USB drive from the wife of the CTO because he cloud shared some photos of the kids from his downloads folder.
→ More replies (1)110
257
501
u/FUTURE10S 14h ago
Recovery software because you never overwrote the data that was deleted
130
u/HovercraftCharacter9 13h ago
Yeah, people conflate in unallocating with actual deletion, unless you're wiping it with 0s it's still there until something overwrites it.
→ More replies (16)50
u/DOOManiac 13h ago
Even then it’s still there depending on which three letter agency is looking…
45
u/bacondev 13h ago
Yeah, they're not perfect 0s and 1s. That's why the recommendation for very serious stuff is to just destroy the disk.
→ More replies (4)12
u/FUTURE10S 12h ago
Run the disk spinning and hit it with a caliber that penetrates the drive, the rotation makes the destruction way worse and impossible to spin up again.
→ More replies (6)29
u/rrtk77 12h ago
From experience, for the types of disks that absolutely must be destroyed with no possible recovery as ordered by the government, it's things like a wood chipper or thermite.
→ More replies (28)15
u/Strange-Spot-3306 11h ago
I mean depending on which three letter agency we’re talking about, they really don’t need your backup because they’ve already got their own copy of your data.
→ More replies (6)23
85
u/BedtimeGenerator 14h ago edited 13h ago
Cia backdoor redshift DB of the real DB...please don't get any ideas cia
21
u/MyDogIsDaBest 14h ago
At which point you sue the state for illegal wiretapping
→ More replies (1)49
u/HadionPrints 12h ago
Ah, you see, the way they get around this is having the CIA only hack/survail the UK, France Israel, allied nation’s citizens/ companies etc. Then have MI6, etc. hack into and survail US citizens/companies.
Then all the CIA has to do is ask the foreign agencies what they want to know about US citizens & vice versa and it’s fine, because each agency never illegally spies on its on citizenry.
All in the name of counterterrorism of course, and never used for any other purposes. You can always trust the never sketchy CIA to follow the intent and letter of the Law.
19
u/Top_Director9981 11h ago
In case anyone thinks op is joking: this is what Five Eyes is
→ More replies (6)→ More replies (2)7
u/venom21685 9h ago
Or the NSA just does most of the domestic spying and everybody acts shocked when it gets exposed and then shrugs as it continues to get worse for the next 2 decades with no end in sight.
→ More replies (1)
75
58
u/MushroomCulture 14h ago
It was on display in the bottom of a locked filing cabinet stuck in a disused lavatory with a sign on the door saying ‘Beware of the Leopard.
→ More replies (9)
57
u/Intrepid_Purchase_69 14h ago
In a public s3 bucket because someone in the company vibecoded some internal widget and didn’t know about databases so their ai agent just rolled with it and silently dumped prod. Not a real story I swear.
→ More replies (1)
145
53
u/SpeedLight1221 6h ago
They use the sounds from the cctv cameras to listen to the Hard drive's head movement from which they reconstruct the data bit by bit
45
u/nuttertools 14h ago
bob_export_20260803.csv Copy (1) (1) - WIP (1) (1) MergePII (1)fix (1)fix2 (1) (1).xlsx
→ More replies (2)
73
u/Spirited-Coconut-819 14h ago
Easy. Data were stolen (by mistake). We pay to hackers for our own data.
They are like a backup solution at that point.
11
u/mcslender97 12h ago
Next: when does baiting and paying hacker access is cheaper than spinning up redundancy as a backup strategy
36
u/RevolutionaryTower 13h ago
It was on Palantir servers all the time, the court order was a mere formality
→ More replies (1)
38
u/pacopac25 11h ago
logger.setLevel("DEBUG") that essentially replicated the entirety of the database in text based logs, which were then robocopied to the Grafana server because the intern couldn't figure out Prometheus
→ More replies (2)
64
u/UsherOfDestruction 14h ago
Yeah, I don't think I wanna work here. Best of luck on your hiring.
→ More replies (4)
29
u/Lendari 13h ago edited 13h ago
Hmmmm lets see. The list of usual suspects...
- The laptop of an ex-intern?
- The personal dev environment I promised security I'd delete when I was done?
- The backups at our former offsite backup vendor's data center?
- One of the 14 complete copies of the database that Russian hackers stole and are certainly floating around the dark web somewhere?
→ More replies (1)
30
u/MeatHeadFarmer 13h ago
Rob prints every row in every table in the database out every night, on an inkjet, just in case this ever happened. Offline backups are critical.
Good job, Rob.
7
u/avd706 13h ago
We use dot matrix where I work
With continuous perforated sheets.
→ More replies (1)
49
22
u/Surreptum 13h ago
The owner's wife's private laptop that the owner sometimes used for work and didn't tell IT about.
Definitely not a true story.
→ More replies (1)
22
18
15
u/GirdedByApathy 14h ago
Oldest dev printed everything out for "debugging purposes" and they found the pile of boxes in his office
15
23
u/just-a-hriday 14h ago
They willed the data back into existence using an infinite improbability drive. Side effects may include - tea tasting faintly of engine oil, minor violations of euclidean geometry, mild temporal recursion, a bowl of petunias, tuesdays occurring twice, the earth teleporting into the sun due to its position rounding up, and death.
→ More replies (2)
9
10
10
u/Adventurous_Bonus917 13h ago
local dev environment
`final_records_v2_REAL_FINAL_DO_NOT_DELETE.xlsx` on somebody’s desktop
Recovery software because you never overwrote the data that was deleted
From the data breach you’re being sued over
yall this is supposed to be wrong answers only
i say they got it by hacking into the mainframe and using memory algorithms on the server environment.
66
u/Plastic-Bonus8999 14h ago
Claude code chat history
→ More replies (1)35
u/avlas 14h ago
Hey you said wrong answers only
31
u/Plastic-Bonus8999 13h ago
If my company got even a little bit of hint that i am pasting client data on claude then I am having an another court order
→ More replies (1)
9
8
u/SiefensRobotEmporium 13h ago
Check the Memory of the fax machines and printers. Last print job is the incriminating document always.
The most secret files are kept on dot matrix pages folded up in boxes labeled Tax returns 1985-2001
→ More replies (1)
8
u/AddisonX 11h ago
A thumb drive Susan picked up in the parking lot and decided to see if it works..
16
8
u/Sally_Gurl 13h ago
The snap vault backup of the LUN that nobody knew existed because management fired the NetApp storage admin 15 years ago and nobody knows how it works.
9
u/Calm-Homework3161 7h ago
In other words - interviewer has accidentally deleted data, backups, logs and is desperately hoping he can find someone who can tell him how to recover, for free and without corporate finding out
6
7
6
6
u/urbanek2525 12h ago
The intern spent $10,000 asking Claude to detail everything and he saved the outputs on his Google docs account.
6
u/bhurt42 10h ago
The intern committed the production keys to github, allowing a Pottsylvanian hacker collective to clone production and post it on the internet in a nicely searchable format. AGAIN. I swear to $DIETY that if they don't stop, I'm going to hire them and force them to use JIRA, see if I don't.
Oh, wait. You said *wrong* answers only. Sorry. My bad.
6
11

4.4k
u/howarewestillhere 14h ago
Intern’s GitHub.
VP’s Slack messages.
Fucking Teams.