Get yourself a one-way ticket to Federal Prison!

George W. Bush needs to hire better folks to work on his campaign site. Not only is it running Windows 2000/IIS (which is never a good thing), Microsoft Exchange Webmail appears to be installed and wide open to public view. Guess the password, and off to prison you go! Thanks to waxy.org (who goes into more detail about problems with the site) for the link.

Comments

Andy Baio says:

Not to be a stickler, but I never said there were any problems with the site. I mean, I wouldn’t run Windows/IIS in a server environment, but lots of people do. On the contrary, the site seems well designed and very thorough. And the webmaster of the site has stated that a weblog is coming soon.
And their Exchange server isn’t “wide open to public view.” It’s password protected.

’tis all right. Being a stickler is fine. I guess I read your comments about the lack of RSS feeds or weblog or your comments about it’s claim on being a grassroots site as problems you had with the site. My mistake.

I also consider the fact that we know what kind of e-mail server they’re running is a bit of a problem. If a password prompt would’ve popped up at http://www.georgewbush.com/webmail, we’d have no idea what kind of Web-based e-mail it is. But given that it’s found at webmail.georgewbush.com/exchange, we know it’s exchange, and opens it up to a potential hack that’s inherant in most MS products.

I’m not saying MS Products are bad by any means. I run IIS on a couple machines here (against my will, mind you ;-), and it works fine, but I wouldn’t rely on it for a site like this, especially one of a political nature that will undoubtedly anger somebody. Just hope that somebody isn’t some script kiddie with too much time on his hands.

カジノ says:

Enjoyed reading your posts.

カジノ