The Hackers Who Tracked My Sleep Cycle

glama.ai

41 points by statements 3 days ago


statements - 3 days ago

One thing I excluded from the article was that we intentionally disabled several checks (like hCaptcha) to let them get to the stage of setting up the payment intents. This is not something I've done before, but basically I wanted to see what happens if in future an attacker is able to bypass all IP/captcha/altcaptcha, etc. restrictions and gets to something that actually does damage. This allowed to see how they are trying to bypass various rate limits/checks that we added specifically for that step. Somewhat an isolated experiment.

garciasn - 36 minutes ago

I argue the title of the article should be: "The Hackers Who Monitored My Discord Status"

cassonmars - 7 hours ago

It's insane to me that Stripe cancels accounts when they get used for card testing. I get that it's because the onus would be on them otherwise, but the problem is that the onus is on anyone but the card companies in the first place.

wolvoleo - an hour ago

That's pretty creepy that they found you (well, the author, not sure if this was a self-submit) on discord though. Oof.

s5300 - 5 hours ago

[dead]