This is good news considering the current state of government run IT services in Nepal (that the page to schedule a passport renewal appointment requires you change your local timezone or override TZ to Asia/Kathmandu should tell you the state of some of these services).
In having to interact with Nepali government websites I've noticed things like endpoints not even doing basic input sanitization, letting your run arbitrary queries on biometric data. Asking around the tech industry on how to report this it seems like this is a common occurrence. Someone even found a vulnerability that was apparently purposefully unpatched to most likely aid in corruption.
Please make it possible to change email addresses, so I don't have to create a new account and verify all domains again. Thank you for the great free service.
Are you reading it as if the Nepalese government had a data breach? Given the positive connotation of 'welcoming', I read it differently but I can see the confusion indeed
I'm pretty certain that my data would be leaked regardless of him, so as far as objectionable businesses go, his is pretty low on my list of ones to be upset about
And police officers make a living off of crime; ambulance personnel wouldn't get paid if nobody got sick or injured. What's the point of that observation?
In having to interact with Nepali government websites I've noticed things like endpoints not even doing basic input sanitization, letting your run arbitrary queries on biometric data. Asking around the tech industry on how to report this it seems like this is a common occurrence. Someone even found a vulnerability that was apparently purposefully unpatched to most likely aid in corruption.
Being “welcomed” to HIBP sounds a lot like being “welcomed” to the Bronx by a mugging.
I admit I do not follow HIBP and was unaware of this kind of outreach they do.
It's a pattern that is used for new welcomes.