logoalt Hacker News

someoneeestistoday at 12:06 PM2 repliesview on HN

I was thinking about exactly that and then I found this comment.

One spoofs an email domain and then is able to get trust from a "modern global fintech"? Absolutely ridiculous. Having worked for several global scale tech companies, I've seen first hand how security is at the absolutely bottom of the list. It does not translate to $$$ so it is uncared for.

Revolut keeps pestering me with requests for interviews and I keep running away from it. One more con (pun intended) to the list.


Replies

Maxiontoday at 12:35 PM

In the countries you are licensed in you are legally required to reply to law enforcement requests. In most places there is no official channel for this. It is literally stuff like [email protected]. Emails come from all over and random domains that appear official-ish. Most official domains do not have DKIM or SPIF setup, very easy to spoof. LE by and large do not take security seriously, they do not take data transfer seriously.

Most requests are digitally signed PDFs that come via email, require a response sent to another email.

throw-the-toweltoday at 12:10 PM

They also pay peanuts, and the culture is toxic.