TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Did I just win?

950 pointsby davidtgoldblattabout 9 years ago

23 comments

dredmorbiusabout 9 years ago
This reminds me of an old folk tale of the trickster and the rich man.<p>A king passing through a town finds a man about to be punished for fraud. He intercedes and asks what the matter is. The trickster says in his defence, &quot;I ask people for things, and they give then to me&quot;. The king is incredulous but poses a challenge: &quot;You must ask and receive money from the richest man in town.&quot; The trickster agrees, but being short on assets, requests a loan. The king obliges, and the trickster arranges (eliding details) to induce the town&#x27;s richest resident to provide him with a wealth of goods. He returns to the king two days later with evidence in tow. The king is impressed by this demonstration, at which the trickster notes that he&#x27;d actually met the conditions 48 hours earlier when the king, wealthier than the town&#x27;s richest resident, had offered him a loan.<p>There&#x27;s something to those old stories.<p>(I&#x27;m not positive of the source but believe it&#x27;s included in Idries Shah&#x27;s <i>World Tales</i>.)
评论 #11694570 未加载
评论 #11694351 未加载
评论 #11694469 未加载
tstrimpleabout 9 years ago
1. Create issues for items I need fixed on my github repos.<p>2. Offer a $100 bounty to people who can trick me into getting some string into my projects. The easiest way to &quot;trick&quot; me of course is to hide it inside of a PR which fixes a real issue.<p>3. Find and remove the string before merging the PR. I&#x27;ve had one of my issues fixed for free. Rinse and repeat!<p>Bonus Round: Stage an announcement on twitter and have someone cleverly trick me into including the string on my website (which I was totally going to do anyway). Post clever trick to code geek social media and reap the sweet free viral marketing and hackers trying to earn a Benjamin.
评论 #11694015 未加载
评论 #11695149 未加载
评论 #11693399 未加载
评论 #11694073 未加载
评论 #11694247 未加载
评论 #11694103 未加载
评论 #11693904 未加载
daxfohlabout 9 years ago
What exactly happened here? All I see is a highlighted line that seems to have already been there.
评论 #11692165 未加载
评论 #11692191 未加载
j79about 9 years ago
An acknowledgement of the win: <a href="https:&#x2F;&#x2F;twitter.com&#x2F;DefuseSec&#x2F;status&#x2F;730903547747819520" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;DefuseSec&#x2F;status&#x2F;730903547747819520</a><p>The offer still stands though, if you&#x27;d like to try: <a href="https:&#x2F;&#x2F;twitter.com&#x2F;DefuseSec&#x2F;status&#x2F;730904219419443200" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;DefuseSec&#x2F;status&#x2F;730904219419443200</a>
infogulchabout 9 years ago
The offending commit: <a href="https:&#x2F;&#x2F;github.com&#x2F;defuse&#x2F;defuse.ca&#x2F;commit&#x2F;4770ad5c9d4851d40811c77b944f391aedbcf5d9" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;defuse&#x2F;defuse.ca&#x2F;commit&#x2F;4770ad5c9d4851d40...</a>
nkristoffersenabout 9 years ago
Took me a second to understand what happened. But yes, earned his $100.
joemiabout 9 years ago
Can someone link to context? Without it, I don&#x27;t see why this is even posted here.
评论 #11692219 未加载
评论 #11692235 未加载
评论 #11693578 未加载
评论 #11695068 未加载
delibesabout 9 years ago
Asked a question, won a beer token. It counts.
goatherdersabout 9 years ago
Are some of you actually arguing over whether or not the website qualifies as a &quot;software project?&quot; Goodness, maybe stop taking the world so literally&#x2F;seriously.
pnathanabout 9 years ago
That is a gem of cleverness.
Jeremy1026about 9 years ago
Troll level = 100%
satysinabout 9 years ago
Just beautiful :)
drudru11about 9 years ago
&quot;Mostly drunk ramblings of a programmer and crypto enthusiast.&quot;<p>Maybe we shouldn&#x27;t drink and &quot;crypto&quot;? :-)
anaolykarpovabout 9 years ago
Would you pay 100 usd to get on the front page of HN and who knows what other popular sites?<p>Maybe it&#x27;s just a marketing stunt
评论 #11692903 未加载
评论 #11692968 未加载
评论 #11692807 未加载
shadykillerabout 9 years ago
But wait, how did it happen ?
评论 #11692275 未加载
clapintonabout 9 years ago
This just made my day.
Aelinsaarabout 9 years ago
It&#x27;s not clever to hack something that you can socially engineer, and that should be hacking 101. Clever win.
评论 #11692216 未加载
评论 #11693011 未加载
评论 #11692250 未加载
评论 #11692268 未加载
russellurestiabout 9 years ago
slow clap.
aaroninsfabout 9 years ago
[[ obligatory reference to Betteridge&#x27;s law ]]
评论 #11692077 未加载
kauegimenesabout 9 years ago
Another way to win this bounty would be to share some code with the string BackdoorPoCTwitter with the same color as the page background. If he copy and paste the code it could work. ^^
评论 #11692217 未加载
dragontamerabout 9 years ago
I guess a webpage is a software project...
评论 #11692314 未加载
评论 #11692271 未加载
评论 #11692089 未加载
评论 #11692534 未加载
msoadabout 9 years ago
Social Engineering is not accepted in most hacking contests.
评论 #11692039 未加载
评论 #11692026 未加载
评论 #11692011 未加载
eridiusabout 9 years ago
Calling a website that happens to host static content in the same repo as its PHP source a &quot;release of a software project&quot; really seems like a stretch.
评论 #11693852 未加载
评论 #11694481 未加载