Pelican Parts
Parts Catalog Accessories Catalog How To Articles Tech Forums
Call Pelican Parts at 888-280-7799
Shopping Cart Cart | Project List | Order Status | Help



Go Back   Pelican Parts Forums > Miscellaneous and Off Topic Forums > Off Topic Discussions


Reply
 
LinkBack Thread Tools Rating: Thread Rating: 1 votes, 1.00 average.
Author
Thread Post New Thread    Reply
Senior Advisor
 
James Brown's Avatar
 
Join Date: Apr 2007
Location: Bellingham, WA
Posts: 5,479
Garage
Send a message via Yahoo to James Brown
Pelican Parts is NOT a secure site

lots of juicy info ripe for the picking, wonder why it's not secure or encrypted? Or does it matter.

__________________
08 Cayenne Turbo
Old 04-05-2019, 12:57 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #1 (permalink)
White and Nerdy
 
Tervuren's Avatar
 
Join Date: Jun 2004
Location: South of Charlotte N.C.
Posts: 14,923
Garage
It is publicly searchable.

Logic dictates that even with secure protocols that the nature of being public makes taking time for security a pointless effort.
Old 04-05-2019, 01:17 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #2 (permalink)
Registered
 
Join Date: Sep 2015
Location: NY
Posts: 7,019
Quote:
Originally Posted by James Brown View Post
lots of juicy info ripe for the picking, wonder why it's not secure or encrypted? Or does it matter.
You need a little more aluminium sheet in that hat methinks.
It’s a forum. Most forums are public.
Old 04-05-2019, 01:36 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #3 (permalink)
Administrator
 
Dmitry at Pelican Parts's Avatar
 
Join Date: Aug 2016
Location: Los Angeles, CA
Posts: 6,087
We're still working on switching our forum to the 'secure' https:// version (but as others have mentioned, the security risk here is fairly low.. this isn't tied to our e-commerce system at all)
Old 04-05-2019, 02:25 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #4 (permalink)
The Unsettler
 
stomachmonkey's Avatar
 
Join Date: Dec 2002
Location: Lantanna TX
Posts: 23,885
Send a message via AIM to stomachmonkey
Quote:
Originally Posted by James Brown View Post
lots of juicy info ripe for the picking, wonder why it's not secure or encrypted? Or does it matter.
I can find out more about virtually anyone here with a quick google search than can be gleaned from the data passed on this site.

Hint, ya'll are creatures of habit.
__________________
"I want my two dollars"
"Goodbye and thanks for the fish"
"Proud Member and Supporter of the YWL"
"Brandon Won"
Old 04-05-2019, 02:29 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #5 (permalink)
Brew Master
 
cabmandone's Avatar
 
Join Date: Jul 2013
Location: Delphos OH
Posts: 32,202
Garage
__________________
Nick
Old 04-05-2019, 02:38 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #6 (permalink)
 
Hilbilly Deluxe
 
emcon5's Avatar
 
Join Date: Nov 2000
Location: Reno
Posts: 6,492
Garage
Quote:
Originally Posted by stomachmonkey View Post
Hint, ya'll are creatures of habit.
Which is the problem. The only real vulnerability is the login, because the credentials are sent plain text.

The whole "creatures of habit" thing is when lazy people use the same username and password for multiple different things.
__________________
82 911SC Coupe
GTI Cup #43
Old 04-06-2019, 04:21 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #7 (permalink)
least common denominator
 
scottmandue's Avatar
 
Join Date: Aug 2001
Location: San Pedro,CA
Posts: 22,506
Quote:
Originally Posted by stomachmonkey View Post
I can find out more about virtually anyone here with a quick google search than can be gleaned from the data passed on this site.

Hint, ya'll are creatures of habit.
I hacked into your blink... and those slippers do NOT go with that robe... just sayin!
__________________
Gary Fisher 29er
2019 Kia Stinger 2.0t gone
1995 Miata Sold
1984 944 Sold
I am not lost for I know where I am, however where I am is lost. - Winnie the poo.

Last edited by scottmandue; 04-06-2019 at 04:45 PM..
Old 04-06-2019, 04:42 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #8 (permalink)
The Unsettler
 
stomachmonkey's Avatar
 
Join Date: Dec 2002
Location: Lantanna TX
Posts: 23,885
Send a message via AIM to stomachmonkey
Quote:
Originally Posted by emcon5 View Post
Which is the problem. The only real vulnerability is the login, because the credentials are sent plain text.

The whole "creatures of habit" thing is when lazy people use the same username and password for multiple different things.

What I meant by “the data passed here” is people drop breadcrumbs about themselves in their posts. They drop some of the same breadcrumbs all over the internet. You just need to have a knack for spotting them.

I don’t even know my passwords.

I went to a password manager a while back.

Let it gereate random passwords every time I create a new account.

Opt in for two factor whenever it’s offered.

Use a security token app on any site that supports it.

Pelican not secure? Meh.
__________________
"I want my two dollars"
"Goodbye and thanks for the fish"
"Proud Member and Supporter of the YWL"
"Brandon Won"

Last edited by stomachmonkey; 04-06-2019 at 05:26 PM..
Old 04-06-2019, 05:23 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #9 (permalink)
Senior Advisor
 
James Brown's Avatar
 
Join Date: Apr 2007
Location: Bellingham, WA
Posts: 5,479
Garage
Send a message via Yahoo to James Brown
well i get an alert from apple every time i sign in warning me my info is not secure on this site. little things like city, state, date of birth, friends/family names. The same things the DOD warn us about in cyber classes. thanks for working the security upgrades.

"We're still working on switching our forum to the 'secure' https:// version (but as others have mentioned, the security risk here is fairly low.. this isn't tied to our e-commerce system at all)"
__________________
08 Cayenne Turbo
Old 04-06-2019, 06:01 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #10 (permalink)
Super Moderator
 
cstreit's Avatar
 
Join Date: Feb 2000
Location: Naperville, IL USA
Posts: 14,971
Garage
Quote:
Originally Posted by James Brown View Post
well i get an alert from apple every time i sign in warning me my info is not secure on this site. little things like city, state, date of birth, friends/family names.
They're not secure anyway if you use any social media... Thats much easier to socially engineer then intercepting routed data traffic through a car forum.
__________________
Chris
----------------------------------------------

1996 993 RS Replica
2023 KTM 890 Adventure R
1971 Norton 750 Commando
Alcon Brake Kits
Old 04-06-2019, 06:51 PM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #11 (permalink)
?
 
Join Date: Apr 2002
Posts: 30,610
Apple....security? ...LOL
Old 04-07-2019, 05:37 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #12 (permalink)
 
Registered
 
Join Date: Sep 2015
Location: NY
Posts: 7,019
Quote:
Originally Posted by James Brown View Post
well i get an alert from apple every time i sign in warning me my info is not secure on this site. little things like city, state, date of birth, friends/family names. The same things the DOD warn us about in cyber classes. thanks for working the security upgrades.

"We're still working on switching our forum to the 'secure' https:// version (but as others have mentioned, the security risk here is fairly low.. this isn't tied to our e-commerce system at all)"
That’s just a scam to sell certificates to web sites.
All it means is that TLS isn’t enabled. If anyone’s tapped into your connection or performing an MITM attack there’s more pressing issues than the thought that your posts or *gasp* your password could in theory be intercepted.

Old 04-07-2019, 05:45 AM
  Pelican Parts Catalog | Tech Articles | Promos & Specials    Reply With Quote #13 (permalink)
Reply


 


All times are GMT -8. The time now is 05:04 AM.


 
Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2025, vBulletin Solutions, Inc.
Search Engine Optimization by vBSEO 3.6.0
Copyright 2025 Pelican Parts, LLC - Posts may be archived for display on the Pelican Parts Website -    DMCA Registered Agent Contact Page
 

DTO Garage Plus vBulletin Plugins by Drive Thru Online, Inc.