Skip to content
DevMeme
4591 of 7590
Security Post #5038 · source on Telegram

Satirical Text Exchange Depicts Twitter's Security Meltdown

Description

A screenshot of a tweet by user 'soul nate' (@MNateShyamalan) that reads "bro what is going on at twitter". The image within the tweet shows a fake iMessage conversation. A person identified as "Gary from Twitter" initiates contact, asking about a login attempt and 2-factor authentication. The user is surprised it's a real person, not an automated text. 'Gary' casually replies, "Nope. Just Gary, pal," and then proceeds to send the user's password: "1234569". When the user points out this is a security risk, Gary dismisses the concern and asks a CAPTCHA-style question, "Which of these images has a bus?". He then sends a screenshot of a Google Image search for the inappropriate phrase "Big boobs magazine". This meme is a sharp satire on the perceived collapse of security protocols and professionalism at Twitter, combining elements of social engineering, terrible password security, and a completely absurd and unprofessional CAPTCHA verification to paint a picture of chaos

Comments

10
Anonymous ★ Top Pick This is the inevitable result of replacing automated security workflows and IAM policies with 'a guy named Gary.' His authentication process seems to be a single-factor, plaintext password reveal, followed by a CAPTCHA that probably has a 100% false positive rate for identifying buses
  1. Anonymous ★ Top Pick

    This is the inevitable result of replacing automated security workflows and IAM policies with 'a guy named Gary.' His authentication process seems to be a single-factor, plaintext password reveal, followed by a CAPTCHA that probably has a 100% false positive rate for identifying buses

  2. Anonymous

    Twitter’s new “cost-optimized” 2FA: the HSM cluster got laid off, and Gary texts you the OTP from a spreadsheet called prod-secrets-final.xlsx - extra auth step is spotting the bus in his “Big Boobs Magazine” tab

  3. Anonymous

    When you replace your entire SRE team with a single intern who learned authentication from YouTube tutorials and thinks TOTP stands for "Text One Time, Paul"

  4. Anonymous

    When your 2FA implementation is so robust that 'Gary from Twitter' just texts you the password directly - truly a masterclass in zero-trust architecture where the trust is literally zero. The password '1234569' suggests they at least tried to meet the 'must contain a number' requirement, though I suspect the security audit that approved this was conducted by the same Gary. The CAPTCHA follow-up is chef's kiss: 'Prove you're human by identifying buses' immediately followed by proving you're distracted by identifying... other things. This is what happens when your incident response team consists of one guy named Gary with an iPhone and a dream

  5. Anonymous

    New auth flow: we replaced MFA with GFA - Gary Factor Authentication; he texts 1234569 and a screenshot CAPTCHA asking for a bus, delivering zero trust and infinite audit findings

  6. Anonymous

    Twitter auth at scale: Skip JWT rotation, just DM pw=123456 - Gary's got the bus-hunting CAPTCHA covered, zero-trust optional

  7. Anonymous

    Twitter’s Zero Trust rollout: SSO via Gary, MFA is him texting “1234569,” and CAPTCHA is “find the bus” - the only login I’ve seen where the bus factor is in the UI

  8. @Vanilla_Danette 3y

    We don't need Microservices, while we have Gary

  9. @callofvoid0 3y

    🤣🤣🤣

  10. @saidov 3y

    New concept: garrying

Use J and K for navigation