The new forums will be named Coin Return (based on the most recent vote)! You can check on the status and timeline of the transition to the new forums here.
The Guiding Principles and New Rules document is now in effect.

Patreon just fired it's entire security team

Magic PinkMagic Pink Tur-Boner-FedRegistered User regular
So I dunno you may wanna delete your accounts there.

«1

Posts

  • tynictynic PICNIC BADASS Registered User, ClubPA regular
  • Munkus BeaverMunkus Beaver You don't have to attend every argument you are invited to. Philosophy: Stoicism. Politics: Democratic SocialistRegistered User, ClubPA regular
    Oh that is an ill portent

    Humor can be dissected as a frog can, but dies in the process.
  • DepressperadoDepressperado I just wanted to see you laughing in the pizza rainRegistered User regular
    Oh that is an ill portent

    this explains the carefully sculpted screaming faces in my tea leaves this morning

  • mcpmcp Registered User regular
    Happy to hear they finished their security

    Good work team

  • CoinageCoinage Heaviside LayerRegistered User regular
    Uh...I was subscribing to those artists ironically

    Happiness is within reach!
  • PreacherPreacher Registered User regular
    Coinage wrote: »
    Uh...I was subscribing to those artists ironically

    You just liked them for their articles.

    I would like some money because these are artisanal nuggets of wisdom philistine.

    pleasepaypreacher.net
  • Magic PinkMagic Pink Tur-Boner-Fed Registered User regular
    Oh that is an ill portent

    this explains the carefully sculpted screaming faces in my tea leaves this morning

    that was a mirror, we were out of tea

  • BroloBrolo Broseidon Lord of the BroceanRegistered User regular
    this seems like a strange department to put on the chopping block

  • NaphtaliNaphtali Hazy + Flow SeaRegistered User regular
    edited September 2022
    I suppose it all depends* on what the security team was doing over there; if they were actually doing security day to day stuff or if they were the 1000 ft view overseeing everything and choosing directions and now patreon is just rolling their tasks/roles into existing departments (supposedly their team was 4 people out of 300 employees, from what I can tell from other sources out there if accurate). Still sucks for the people getting let go, hopefully they can find other work quickly.

    * the depends being "is the sky falling" in terms of is everyone who has patreon accounts currently being compromised or not, I mean

    Naphtali on
    Steam | Nintendo ID: Naphtali | Wish List
  • ShadowfireShadowfire Vermont, in the middle of nowhereRegistered User regular
    No big deal, it's not like they're dealing with any PCI related compliance stuff right?

  • JedocJedoc In the scuppers with the staggers and jagsRegistered User regular
    *carefully pencils "every remaining creative loses their entire livelihood* into the bonus space of 2020s bingo*

    GDdCWMm.jpg
  • KalTorakKalTorak One way or another, they all end up in the Undercity.Registered User regular
    are they trying to slim down for a merger in the dumbest possible way or what

  • HefflingHeffling No Pic EverRegistered User regular
    The AI Art has successfully taken over Patreon!

  • DouglasDangerDouglasDanger PennsylvaniaRegistered User regular
    What the hell

  • Munkus BeaverMunkus Beaver You don't have to attend every argument you are invited to. Philosophy: Stoicism. Politics: Democratic SocialistRegistered User, ClubPA regular
    KalTorak wrote: »
    are they trying to slim down for a merger in the dumbest possible way or what

    if I had to guess there's something big about to come down the pipe regarding security vulnerabilities

    Humor can be dissected as a frog can, but dies in the process.
  • MatevMatev Cero Miedo Registered User regular
    Yah, this smells like "We got cracked wide open" and they're trying to damage control before the news story hits.

    "Go down, kick ass, and set yourselves up as gods, that's our Prime Directive!"
    Hail Hydra
  • InquisitorInquisitor Registered User regular
    Firing your security team is like the opposite of damage control though.

  • MadicanMadican No face Registered User regular
    Jedoc wrote: »
    *carefully pencils "every remaining creative loses their entire livelihood* into the bonus space of 2020s bingo*

    There's always Fanbox if they're willing to learn Pixiv. Patreon was also notoriously hostile to the NSFW creatives so they're already using alternative services

  • MatevMatev Cero Miedo Registered User regular
    Inquisitor wrote: »
    Firing your security team is like the opposite of damage control though.

    Sure, when you're stupid and do it all at once.

    "Go down, kick ass, and set yourselves up as gods, that's our Prime Directive!"
    Hail Hydra
  • Munkus BeaverMunkus Beaver You don't have to attend every argument you are invited to. Philosophy: Stoicism. Politics: Democratic SocialistRegistered User, ClubPA regular
    Inquisitor wrote: »
    Firing your security team is like the opposite of damage control though.

    Unless you're afraid of a whistleblower about something that your security team was unaware of.

    Humor can be dissected as a frog can, but dies in the process.
  • ZonugalZonugal (He/Him) The Holiday Armadillo I'm Santa's representative for all the southern states. And Mexico!Registered User, Transition Team regular
    So, do I gotta delete my Patreon account now?

    Give it to me, doc.

    Ross-Geller-Prime-Sig-A.jpg
  • A duck!A duck! Moderator, ClubPA Mod Emeritus
    Based on this news we should have deleted them weeks ago.

  • SiliconStewSiliconStew Registered User regular
    Naphtali wrote: »
    I suppose it all depends* on what the security team was doing over there; if they were actually doing security day to day stuff or if they were the 1000 ft view overseeing everything and choosing directions and now patreon is just rolling their tasks/roles into existing departments (supposedly their team was 4 people out of 300 employees, from what I can tell from other sources out there if accurate). Still sucks for the people getting let go, hopefully they can find other work quickly.

    * the depends being "is the sky falling" in terms of is everyone who has patreon accounts currently being compromised or not, I mean

    What you do at Patreon is you take the security issues from the customer and bring them down to the software engineers?
    Yes, yes that's right.
    Well then, I just have to ask, why can't the customers take them directly to the software people?
    Well, I'll tell you why...because...engineers are not good at dealing with customers.
    So you physically take the reports from the customer?
    Well... No. Our support portal does that, or they're emailed.
    So then you must physically bring them to the software people?
    Well. No. Yeah. I mean, sometimes.
    What...what would you say you do here?
    Well...well look. I already told you, I deal with the god damn customers so the engineers don't have to. I have people skills. I am good at dealing with people! Can't you understand that!? WHAT THE HELL IS WRONG WITH YOU PEOPLE!?

    Just remember that half the people you meet are below average intelligence.
  • jungleroomxjungleroomx It's never too many graves, it's always not enough shovels Registered User regular
    Of course they make you call a Privacy Center and it can take up to 30 days to get your account deleted

    I would at least consider removing your pledges and clearing all payment methods, but if the breach is bad enough that information is probably already compromised

  • Raijin QuickfootRaijin Quickfoot I'm your Huckleberry YOU'RE NO DAISYRegistered User, ClubPA regular
    Jokes on them. I never HAD a Patreon

  • 3cl1ps33cl1ps3 I will build a labyrinth to house the cheese Registered User regular
    This seems extremely bad!

  • King RiptorKing Riptor Registered User regular
    I mean thankfully I use my bank card and that's usually never got money in it plus my bank issues new cards if there's a hint of security issues so I'm good.

    I have a podcast now. It's about video games and anime!Find it here.
  • 3cl1ps33cl1ps3 I will build a labyrinth to house the cheese Registered User regular
  • 3cl1ps33cl1ps3 I will build a labyrinth to house the cheese Registered User regular
    5 people for an operation with that much transaction volume seems

    insufficient

  • ElaroElaro Apologetic Registered User regular
    Um, does anyone know if paying patreon through paypal is safe?

    Children's rights are human rights.
  • FencingsaxFencingsax It is difficult to get a man to understand, when his salary depends upon his not understanding GNU Terry PratchettRegistered User regular
    Yeah, we need to know exactly what is going on, I think

  • ShadowfireShadowfire Vermont, in the middle of nowhereRegistered User regular
    Jokes on them. I never HAD a Patreon

    Nobody wants to pay me for anything anyway! Capitalism, baby!

  • GvzbgulGvzbgul Registered User regular
    3cl1ps3 wrote: »
    5 people for an operation with that much transaction volume seems

    insufficient
    Apparently the "external organisations" we're doing most of the work already? Is that normal?

  • NaphtaliNaphtali Hazy + Flow SeaRegistered User regular
    The other reasons (besides trying to save a buck/outsource/general dumb corporate shit) you'd remove an entire team is if there's reason to believe someone in the department has intentionally compromised something to perform some sort of inside job and it isn't clear who did it/was involved, or rank incompetence. I'm more inclined to believe its the save a buck/dumb stuff reasoning as the others are probably a bit more of a stretch (or really worrisome if the last case)
    Gvzbgul wrote: »
    3cl1ps3 wrote: »
    5 people for an operation with that much transaction volume seems

    insufficient
    Apparently the "external organisations" we're doing most of the work already? Is that normal?

    if the internal security team was mostly guiding the outside contractors on what they should be doing, yes, for an org that size it could very well be

    Steam | Nintendo ID: Naphtali | Wish List
  • CelloCello Registered User regular
    Well, submitted my Patreon for deletion

    See you guys in 30 days

    Steam
    3DS Friend Code: 0216-0898-6512
    Switch Friend Code: SW-7437-1538-7786
  • zepherinzepherin Russian warship, go fuck yourself Registered User regular
    edited September 2022
    Naphtali wrote: »
    The other reasons (besides trying to save a buck/outsource/general dumb corporate shit) you'd remove an entire team is if there's reason to believe someone in the department has intentionally compromised something to perform some sort of inside job and it isn't clear who did it/was involved, or rank incompetence. I'm more inclined to believe its the save a buck/dumb stuff reasoning as the others are probably a bit more of a stretch (or really worrisome if the last case)
    Gvzbgul wrote: »
    3cl1ps3 wrote: »
    5 people for an operation with that much transaction volume seems

    insufficient
    Apparently the "external organisations" we're doing most of the work already? Is that normal?

    if the internal security team was mostly guiding the outside contractors on what they should be doing, yes, for an org that size it could very well be
    It does read like someone was compromised, or some type of financial Tom foolery from the security team and they didn’t know who the culprit was.

    Could also be they subcontracted security and gave oversight to a mid level manager to “manage the program.”

    Could also be someone loaded a crypto miner on their servers. That’s been an ongoing problem for orgs.

    zepherin on
  • PolaritiePolaritie Sleepy Registered User regular
    Gvzbgul wrote: »
    3cl1ps3 wrote: »
    5 people for an operation with that much transaction volume seems

    insufficient
    Apparently the "external organisations" we're doing most of the work already? Is that normal?

    Why the fuck would you outsource security?

    Steam: Polaritie
    3DS: 0473-8507-2652
    Switch: SW-5185-4991-5118
    PSN: AbEntropy
  • InquisitorInquisitor Registered User regular
    Polaritie wrote: »
    Gvzbgul wrote: »
    3cl1ps3 wrote: »
    5 people for an operation with that much transaction volume seems

    insufficient
    Apparently the "external organisations" we're doing most of the work already? Is that normal?

    Why the fuck would you outsource security?

    Because you don’t have in-house security specialists.

  • Kane Red RobeKane Red Robe Master of Magic ArcanusRegistered User regular
    Polaritie wrote: »
    Gvzbgul wrote: »
    3cl1ps3 wrote: »
    5 people for an operation with that much transaction volume seems

    insufficient
    Apparently the "external organisations" we're doing most of the work already? Is that normal?

    Why the fuck would you outsource security?

    So you can hire a company that's good at it instead of trying to hire a handful of folks to do it when you have no way of auditing whether they're doing a good job or not because security isn't your knowledge base.

  • PolaritiePolaritie Sleepy Registered User regular
    Inquisitor wrote: »
    Polaritie wrote: »
    Gvzbgul wrote: »
    3cl1ps3 wrote: »
    5 people for an operation with that much transaction volume seems

    insufficient
    Apparently the "external organisations" we're doing most of the work already? Is that normal?

    Why the fuck would you outsource security?

    Because you don’t have in-house security specialists.

    To be clear - that's what I mean. I understand why your standard empty suits might do it, but it's madness.

    Steam: Polaritie
    3DS: 0473-8507-2652
    Switch: SW-5185-4991-5118
    PSN: AbEntropy
Sign In or Register to comment.