• LastYearsIrritant@sopuli.xyz
    link
    fedilink
    English
    arrow-up
    95
    arrow-down
    1
    ·
    2 days ago

    Never report vulnerabilities yourself to an organization, always use a neutral, trusted third party to report it.

      • Wolf314159@startrek.website
        link
        fedilink
        arrow-up
        24
        arrow-down
        1
        ·
        1 day ago

        If you were in highschool at the time, really the only ethical thing to do for someone in your position is to delete all the files and shine a light on their bad security practices, but don’t say anything about it to anyone. It’s that last bit that always gets you in trouble. Absolute candor is something adults almost never want to hear from children.

        • michaelmrose@lemmy.world
          link
          fedilink
          English
          arrow-up
          13
          ·
          1 day ago

          Couldn’t you just rename it to something obvious so as to make people think it was gone whilst leaving all the valuable data intact. mv valuableData.whatever valuableData.thiswholethingisvulnerablefixit

          • Wolf314159@startrek.website
            link
            fedilink
            arrow-up
            4
            ·
            23 hours ago

            My teacher one year gave me an F because he didn’t bother to grade anything in a timely fashion, also didn’t store (or organize) any student assignments that had been handed in, and when the end of the year came made me go digging through a giant stack of everyone’s assignments to find mine to prove I deserved a reasonable grade AFTER I had already been sent home with an F. I eventually got the grade I deserved, but I shouldn’t have had to fight for it like that. Apparently this was a common routine for this teacher, but lots of students didn’t bother to fight it. It didn’t get fixed until that cabinet was physically emptied and I handed all the assignments back to their authors.

            I am thinking of the teachers. And I think OPs situation is remarkably similar. But kids, being kids, will not be heard by adults when they shout warnings, like “Why haven’t you graded and returned any of my assignments yet this term?” or “This valuable/dangerous thing should be secured, who responsibility is that?” It may not be moral advice, but like the song says, sometimes you have to be cruel to be kind.

            • prole@lemmy.blahaj.zone
              link
              fedilink
              arrow-up
              2
              ·
              19 hours ago

              Your response to “think of the teachers” is to talk about the one time you had a bad teacher? Bruh, what?

            • Aatube@kbin.melroy.org
              link
              fedilink
              arrow-up
              1
              ·
              19 hours ago

              “Why haven’t you graded and returned any of my assignments yet this term?”

              This is not that situation. The database includes everything including graded assignments. It HELPS teachers find the relevant materials because you don’t have to dig through a giant stack instead of doing a Ctrl+F. In fact, you’ll cause a ton of students need to leaf through their chunks of old files and gather their past submissions to repeat exactly what you went through for every single class. What you propose is not at all kind or ethical.

      • Natanael@infosec.pub
        link
        fedilink
        arrow-up
        2
        ·
        18 hours ago

        Depending on where you are, either the regional / national school system administration, or some random local journalist

      • Gustephan@lemmy.world
        link
        fedilink
        arrow-up
        22
        arrow-down
        1
        ·
        1 day ago

        None. Just cheat. It will prepare you for the real world better than pretending to respect the authority of morons.