zlacker

[return to "Leaked Amazon memo details plan to smear fired warehouse organizer"]
1. chowar+M6[view] [source] 2020-04-02 20:38:13
>>minima+(OP)
All I wanted to do was read the memo and I couldn't find the link. I'm not sure if I missed it or what but this is a common problem I run into on "news" sites. They quote (often out of context) parts of something but give no links to the actual source.
◧◩
2. anigbr+Hf[view] [source] 2020-04-02 21:24:23
>>chowar+M6
Probably because it was forwarded by email and the leaker's identity and job would be at risk.
◧◩◪
3. daenz+Th[view] [source] 2020-04-02 21:38:48
>>anigbr+Hf
Redacting is a long accepted practice when revealing information but preserving secrets.
◧◩◪◨
4. nitrog+qj[view] [source] 2020-04-02 21:49:29
>>daenz+Th
Supposedly so is the practice of using subtle variations in spelling, word choice, word order, spacing, typography, etc. to identify recipients of documents.
◧◩◪◨⬒
5. oh_sig+rm[view] [source] 2020-04-02 22:12:52
>>nitrog+qj
This is exactly what I worked on ~10 years ago at amazon, embedding steganographic information into a certain internal app that reported confidential sales numbers. Ended up catching the person who leaked this: https://techcrunch.com/2011/10/04/leaked-sales-data-puts-kin...
◧◩◪◨⬒⬓
6. JorgeG+1s[view] [source] 2020-04-02 23:05:32
>>oh_sig+rm
Out of curiosity, can you share a ballpark of how many different variations can you generate per, say, paragraph of text?
◧◩◪◨⬒⬓⬔
7. oh_sig+ov[view] [source] 2020-04-02 23:38:45
>>JorgeG+1s
What I worked on was more like a spreadsheet, so I didn't use any of the text-oriented steganographic techniques like replacing words with synonyms, etc.

I was able to develop enough variations that vastly outnumbered our users though, so even with just a portion of a screenshot, you could fairly easily figure out where it came from.

Just looking at possible CSS rules and you can see where the variations come into play - cell width, border width and styles, font color(e.g. the specific green or red that represents gain/loss), kerning, column placement , etc.

On top of that, I only fudged with display elements - the numbers were never changed. However, the numbers were updated on a near-continuous basis by ingesting various logs, so any column that was live(year/month-to-date, etc) would have only a very small time range where that number could have been displayed to the user.

[go to top]