Zotac's Big Mistake | Consumer Warranty & Business Data Exposure

Поделиться
HTML-код
  • Опубликовано: 13 июл 2024
  • Sponsor: NZXT C1500 Platinum PSU on Amazon geni.us/KvKlUi
    Zotac was hosting customer RMA files, business-to-business transactions, invoices, bill of lading memos, credit memos, customer Amazon order history, chat logs, email logs, and addresses and phone numbers in a way which was publicly discoverable through Google. In fact, a Google search simply of "Zotac RMA" (without even using a site flag) would surface private customer emails and contact information within 1 page, sometimes 2. We notified Zotac urgently and withheld reporting until the company removed access to as many of these files as possible. The rest remains cached, but there are tools to try and get it removed for affected users. Zotac has fixed the basics, so we felt comfortable to publish.
    SUPPORT OUR REPORTING DIRECTLY! Grab a GN CyberSkeleton V2 T-shirt: store.gamersnexus.net/product...
    Like our content? Please consider becoming our Patron to support us: / gamersnexus
    TIMESTAMPS
    00:00 - Zotac Issues
    01:31 - Wrong Server Setup
    03:14 - How Bad Was It?
    05:55 - A Viewer's Discovery
    09:02 - What YOU Should Do
    10:24 - Public Service Announcement
    12:42 - Zotac's Response
    ** Please like, comment, and subscribe for more! **
    Links to Amazon and Newegg are typically monetized on our channel (affiliate links) and may return a commission of sales to us from the retailer. This is unrelated to the product manufacturer. Any advertisements or sponsorships are disclosed within the video ("this video is brought to you by") and above the fold in the description. We do not ever produce paid content or "sponsored content" (meaning that the content is our idea and is not funded externally aside from whatever ad placement is in the beginning) and we do not ever charge manufacturers for coverage.
    Follow us in these locations for more gaming and hardware updates:
    t: / gamersnexus
    f: / gamersnexus
    w: www.gamersnexus.net/
    Steve Burke: Host, Writing, Video Editing
    Tim Phetdara: Pre-Cut Editing
  • ИгрыИгры

Комментарии • 1 тыс.

  • @GamersNexus
    @GamersNexus  7 дней назад +125

    Grab a GN shirt to support our work! store.gamersnexus.net/products/limited-edition-foil-cyberskeleton2-cotton-tshirt
    If you haven't seen it, go check out our Noctua NH-D15 G2 review! Super in-depth/technical benchmarking, tons of fun: ruclips.net/video/heriTDWIU2g/видео.html
    Or our positive review of the Antec C8 ARGB case: ruclips.net/video/yJAq2H52A2A/видео.html

    • @dertythegrower
      @dertythegrower 7 дней назад

      The digital rib shirt idea... genius genius. Coolest tech merch shop

    • @dianaalyssa8726
      @dianaalyssa8726 7 дней назад

      Thanks for the hard work!

    • @user-cr1vd8ig8r
      @user-cr1vd8ig8r 7 дней назад

      new here. What shampoo do you use? 100%

    • @JohnSmith-xi9nd
      @JohnSmith-xi9nd 7 дней назад

      What happened with the EK story.

    • @XIIISerpents
      @XIIISerpents 7 дней назад

      Are the per-ordered shirts still going to wait until mid September to ship?

  • @Jigglenomicon
    @Jigglenomicon 7 дней назад +2195

    if googles bots have crawled the pages... other bots have too, this wil be impossible to scrub/remove from the internet.... good job Zotac

    • @volvo09
      @volvo09 7 дней назад +101

      Yep, just like any leak, it's out there somewhere.

    •  7 дней назад +125

      The files are still accessible by prepending "cache:" to the URL.

    • @StephenMcGregor1986
      @StephenMcGregor1986 7 дней назад

      I have a bunch of Web Archives available for getting around certain things, Google cache is only 1

    • @sethjohnson1944
      @sethjohnson1944 7 дней назад +48

      I was still able to find two URLs. They were dead, granted, but the customers' emails still shows up in the stub under the link. All popped up before this video

    • @ManuFortis
      @ManuFortis 7 дней назад +31

      Funny, I was going to say something similar in the original community post earlier.
      If the scrapers can see it, it's wide open to anyone. Meaning others might already have chanced upon it in the past as well, and just kept mum.
      Zotac 💩🛌

  • @LanceThumping
    @LanceThumping 7 дней назад +1517

    Ironic that this is the first time in a decade that Google search results have actually given something relevant.

    • @dark_matt3r_
      @dark_matt3r_ 7 дней назад +73

    • @Gobeman
      @Gobeman 7 дней назад +23

      Honestly at one point I remember during Tests in my Youth
      If i had a 'Fix the grammatical error in this online test' (not exams. Just practice ones)
      I litereally could google half the sentence and find the official Word Document on google that held the complete lines and correct answers
      and '100% Be accurate'
      I did tell my teachers that

    • @thomast4315
      @thomast4315 7 дней назад +6

      Torched. Absolutely crispified.

    • @YTKeepsDeletingAllMyComments
      @YTKeepsDeletingAllMyComments 7 дней назад

      Google and RUclips are Garbage.

    • @BRUXXUS
      @BRUXXUS 7 дней назад +1

      Savage.

  • @CptJistuce
    @CptJistuce 7 дней назад +855

    Zotac's Big Mistake.
    Rejected titles: Zotac's Terrible, Horrible, No-Good, Very Bad Day

    • @JasonMendoza-hd3ce
      @JasonMendoza-hd3ce 7 дней назад +13

      i doubt they'll face any consequences for this

    • @ShellStruckOne
      @ShellStruckOne 7 дней назад +20

      Zotac's oopsie poopsie

    • @michael5654
      @michael5654 7 дней назад +2

      @@JasonMendoza-hd3ce Yeah, just a finger wag from consumers will be the worst of it

    • @TheGuruTech
      @TheGuruTech 6 дней назад +2

      “Zotac: Mistakes Were Made” ~MVG

    • @Game4Lord
      @Game4Lord 6 дней назад

      @@michael5654CEOs. Consumers ain't the ones that are in the wrong here.

  • @davekelloway3337
    @davekelloway3337 7 дней назад +652

    We're at a point where companies receiving a message from GN should just respond with:
    "Sh!t, what did we do? We'll fix it immediately."

    • @kenabi
      @kenabi 7 дней назад +25

      it only matters to most of them when the people paying them start threatening legal action/major loss of revenue.
      which is sad.

    • @spyker_aileron
      @spyker_aileron 6 дней назад +3

      this is a great. this is what all inveestigative journalism should aspire to be. i consider GN to be the gold standard.

    • @mazz85-
      @mazz85- 6 дней назад +2

      GN should just send out fake email for them all to say they been cought, and see how they react.
      Classic fishin trick.

    • @dead-claudia
      @dead-claudia 21 час назад

      ⁠@@kenabithis is a case that could result in legal action or a loss of potential future revenue if they didn't act quickly

  • @EastyyBlogspot
    @EastyyBlogspot 7 дней назад +493

    Well they cannot say they were not warned

    • @GamersNexus
      @GamersNexus  7 дней назад +289

      The warning is why it got somewhat fixed so fast! Glad to see that at least.

    • @EastyyBlogspot
      @EastyyBlogspot 7 дней назад +41

      @@GamersNexus True but like you said ...still needed more than a customer pointing it out and even yourselves having to get some companies involved lol

    • @VADemon
      @VADemon 7 дней назад +5

      @@EastyyBlogspot exactly. the security@ email address should always work. And we know for a fact: at Asus it doesn't. Zotac is apparently so-so, I can readily believe ordinary support employees to not care to redirect such questions to level 2.

  • @Kubose
    @Kubose 7 дней назад +527

    I was a bit worried when I saw the OG post about this issue, get to breathe a little sigh of relief finding out that it's a company I literally have not even once interacted with. It's a good day.

    • @radicalindividual7774
      @radicalindividual7774 7 дней назад +22

      I...
      I always thought they were a knockoff company. Lucky me.

    • @giggiity
      @giggiity 7 дней назад +8

      I bought their 3070 when GPUs were hard to come by. ended up getting an Aorus Master same week and sold the 3070. I feel lucky for once.

    • @craig9365
      @craig9365 7 дней назад

      Same anytime someone said get a zotac I laughed and said if I can't afford an EVGA I can't afford this GPU​@@radicalindividual7774

    • @Skobeloff...
      @Skobeloff... 7 дней назад +21

      I have a zotac graphics card, and have had no issues with it at all, so this does not affect me personally. But since the world does not revolve around me personally, this is not a good day for the company, or for anyone potentially affected by this.

    • @Noname-km3zx
      @Noname-km3zx 7 дней назад +8

      @@radicalindividual7774 WTF, knockoff company that sells GPUs. That's kind of dumb statement. Like, what would they do ? Give you a RTX 3060 die in a RTX 4080.

  • @dark_matt3r_
    @dark_matt3r_ 7 дней назад +368

    Thanks for looking out as always, dudes. So much blatant carelessness and irresponsibility smh. It’s a million wonders there’s not more id theft and fraud than there already is.

    • @RATTL3R186
      @RATTL3R186 7 дней назад +2

      Yep. No one gives a fuck anymore.

    • @dark_matt3r_
      @dark_matt3r_ 7 дней назад +1

      @@RATTL3R186 they really don’t, man. It’s almost depressing when you think about how all of this is just basically the new normal.

    • @dark_matt3r_
      @dark_matt3r_ 7 дней назад

      I’ve said it before and I’ll say it again, from toilet paper manufacturers to PC hardware manufacturers and everything in between, all companies should strive to be as great as Chewy pet supplies 😂

    • @canaconn2388
      @canaconn2388 7 дней назад

      ​@@dark_matt3r_new? hahaha

    • @BraveAbandon
      @BraveAbandon 7 дней назад +1

      They cant steal our money if we dont have any

  • @zadrik1337
    @zadrik1337 7 дней назад +115

    This type of thing happened on the State of Missouri's web site. The idiot governor tried to prosecute the reporter who wrote about it, claiming he was a hacker. This is a basic web/server design and management problem. Don't "upskirt" yourself when setting up your site.

    • @alexatkin
      @alexatkin 7 дней назад +13

      It should be basic step 1, assume anything in the path the server uses CAN be accessed by anyone. Absolutely mental to store sensitive information inside the path the web server can serve, its usually called public_html for a reason.

    • @scimbrelo
      @scimbrelo 7 дней назад

      naturally the governor of a stink hole wants to prosecute the press for revealing government ineptitude

    • @arthurmoore9488
      @arthurmoore9488 7 дней назад +1

      If you can, link please.

    • @mattmanyam
      @mattmanyam 7 дней назад +14

      ​@@arthurmoore9488 it was widely reported. Pick a couple search terms from the op's comment, and you'll find everything you need.

    • @itisabird
      @itisabird 7 дней назад +10

      It happened in Spain last month too. The traffic administration had all the information about every driver in the country open in the web, and it was scrapped at least twice in six months. And the worst thing is that they knew it because months before it got public due to the second breach, they were prosecuting the teen that scrapped it first.

  • @wingflex5367
    @wingflex5367 7 дней назад +260

    Steve Lehto mentioned you briefly today about warranty void stickers. Always cool when the channels I sub to somehow come together. :)

    • @GamersNexus
      @GamersNexus  7 дней назад +115

      That's awesome! I'll check it out. The FTC has been aggressive lately on warranties and consumer rights with them.

    • @samiraperi467
      @samiraperi467 7 дней назад +22

      The Steve Cabal!

    • @POVwithRC
      @POVwithRC 7 дней назад +3

      Ah good!

    • @addictedtofigbiscuits
      @addictedtofigbiscuits 7 дней назад

      ahh I used to watch that dude, abit out of my lane these days though. I bet he still totally loves Mobile homes ;P

    • @LastofAvari
      @LastofAvari 7 дней назад

      ​@@samiraperi467 or multisteverse

  • @killzone866
    @killzone866 7 дней назад +110

    The B2B stuff could lead to so many easy scams. Baffling.

  • @Zefram0911
    @Zefram0911 7 дней назад +94

    gamers nexus is basically the better business bureau of the tech industry now

    • @arthurmoore9488
      @arthurmoore9488 7 дней назад +14

      Hard disagree. GN isn't a shakedown scheme. The BBB will remove negative reviews if the company pays them. Same as Yelp. Those reviews are still important, since it costs the company money, but know what they really are doing.

    • @russell2952
      @russell2952 Час назад

      Why would you accuse GN of running a scam?

  • @2.Plus.2.Equals.5
    @2.Plus.2.Equals.5 7 дней назад +169

    Misconfigured settings are a pretty big deal. Especially when mishandling customers PII. Possibly a potential lawsuit, but at minimum they should just admit they f*cked up. You'd be surprised what you can find on search engines with the right dorks.

    • @arthurmoore9488
      @arthurmoore9488 7 дней назад +18

      Agreed. The SolarWinds hack was a default password. This is that level of negligent, or possibly worse. For a web crawler to find the individual PDFs there had to be an index it could crawl.

    • @giglioflex
      @giglioflex 6 дней назад +3

      True but it was multiple security lapses that caused this. The first was a permissions issue, the second is that they were storing the individual files individually and unencrypted. Even if they had encrypted said files, because they are storing them individually it means hackers would still be able to glean information from the file names / existence of said files on servers. They need to further obfuscate the files themselves in addition to encrypting any user submitted data.

    • @nomore6167
      @nomore6167 4 дня назад +1

      "You'd be surprised what you can find on search engines with the right dorks." - Additionally, you'd be surprised at how forgiving people can be when you admit you messed up and show that you're trying to do better. If you refuse to admit that you messed up, though, the backlash can be immensely more powerful.

    • @nomore6167
      @nomore6167 4 дня назад +1

      @@giglioflex "True but it was multiple security lapses that caused this" - Even more important than what you mentioned, the ultimate issue is lack of authentication to access that data. Also, lack of (or misconfigured) robots.txt file.

    • @An4lAvenger
      @An4lAvenger 3 дня назад

      Unfortunately if they publicly admit to it they would open themselves up to a a guaranteed lawsuit. Even if they're sued this way there's at least some way out of it, but not if they admit the mistake.

  • @iamhumanOWO
    @iamhumanOWO 7 дней назад +111

    At least they fixed it in less than 15 hours after GN posted it lol

    • @arthurmoore9488
      @arthurmoore9488 7 дней назад +43

      From a cyber security standpoint, literally pulling the plug on the server is better than this level of data breach. The more difficult part is getting Google and other search engines to take down copies, while knowing they'd never get them all.
      Also, reminder that GN said they contacted Zotac's partners too. They lost major corporate customers from this.

    • @benisrood
      @benisrood 7 дней назад

      ​​@@arthurmoore9488 that or Zotac might have had to make very painful promises to those clients which would have cost them a lot. The people responsible for this in SRE/DevOps (what used to collectively be called "IT") likely are facing termination.

    • @kesamek8537
      @kesamek8537 7 дней назад +2

      It was too late days ago.

  • @purplepothos5794
    @purplepothos5794 7 дней назад +75

    I kinda feel left out that I never got attempted scams from a Russian oil refineries and only ever used to get boring old Nigerian princes.

    • @lucidnonsense942
      @lucidnonsense942 7 дней назад +2

      They get sent to business addresses constantly, not so much to private individuals.

    • @BeardyBaldyBob
      @BeardyBaldyBob 7 дней назад +3

      I had one from the Secretary General of the United Nations once 😂

  • @nugzmedallion8929
    @nugzmedallion8929 7 дней назад +167

    8:18 "On the upside for consumers, is *because BUSINESSES were involved,* people cared A LOT, REAL fast; like, as SOON as I started contacting business, it was done and fixed *in 4 hours!* "
    It's absolutely DISGUSTING that the only reason that potentially THOUSANDS of files containing sensitive customer information are gone from GOOGLE SEARCHES, is because Steve brought to their (and other affected parties') attention that sensitive BUSINESS information was available in those searches as well. Truly disgusting.

    • @nossiej
      @nossiej 7 дней назад +13

      the truth is, people is stupid, they don't understand the gravity of this issue and they will forget in a couble days. Business are not stupid, they don't forget, and they move A LOT of money.
      That's the difference.

    • @anonony9081
      @anonony9081 7 дней назад +4

      It is bad, but when you think about it, it makes sense since a business partner is buying in volume and a single customer is just a single purchase. I know it's not an excuse but I think situations like this are always going to be handled differently when it's business-to-business considering the volume of orders versus an any individual customer.
      Another factor is that businesses will often have contracts with them and have the means to sue them so legal action is significantly more likely when this happens to a business versus an individual.

    • @strayling1
      @strayling1 7 дней назад +6

      Companies are people too! (And some people are more equal than others.)

    • @maxpower7504
      @maxpower7504 7 дней назад +3

      business partners also typically have direct communication lines with the people that have the power to make shit happen fast, whereas retail customers would have to go through the call center food chain

    • @bingus549
      @bingus549 7 дней назад

      Don't blame customers for business' lack of morals​@@nossiej

  • @ZinoAmare
    @ZinoAmare 7 дней назад +178

    "How can we get coverage from GN?" "I Know sir, let's leak all our data!" "PERFECT YOU GET A RAISE BARRY!"

  • @vxvicky
    @vxvicky 7 дней назад +84

    Back in the day, Zotac denied me an RMA of a GTS 250 "For not having registered it in the first XX days". I haven't bought anything from them since... so I'm glad to see them suffering.

    • @arthurmoore9488
      @arthurmoore9488 7 дней назад +12

      Depending on the warranty and your country/state that's illegal. Of course, nothing happens... :(

    • @dakai4992
      @dakai4992 7 дней назад +9

      Eh, registration probably wouldn't have helped. They refused my RMA on a 1070, because they couldn't "find" my registration or something. After 3 mails I gave up. It felt like shit during the mining craze.

    • @LarsV62
      @LarsV62 7 дней назад +9

      Here in Norway, it's not mandatory to send in registrations for equipment you buy, but you do need to provide proof of purchase in case of dispute. A copy of the original sales receipt with sufficient details to identify the item, seller, date of purchase and amount paid (and preferably also customer name) is enough to file a claim against dealership or importer. The law gives us certain rights to repair or replace an item if it has defects listed in the law.
      The minimum period you are entitled to for claims for defects under the law is 2 years, but extended to 5 years for items that are commonly expected to last more than 2 years, such as phones.

    • @vxvicky
      @vxvicky 5 дней назад +1

      @@LarsV62 obviously I provided them the proof of purchase, but "it was not enough" you know?

    • @LarsV62
      @LarsV62 5 дней назад

      @@vxvicky Damn stubborn paper pushers... 🙄

  • @WalrusWithBenefits
    @WalrusWithBenefits 7 дней назад +108

    It's amazing how fast companies move when someone further up the ladder's ass is on the line.

    • @arthurmoore9488
      @arthurmoore9488 7 дней назад +26

      Consequences I can think of:
      * Customer lawsuit.
      * EU fines.
      * Possible US fine. (it's that egregious)
      * Probably fines from individual US states with privacy laws.
      * Loosing major business customers.
      * Possible lawsuit for NDA violations from some of those businesses.
      * Massive discounts to those businesses who remain.
      The question isn't so much if someone is getting fired, but who.

    • @Grandwigg
      @Grandwigg 5 дней назад +2

      ​@@arthurmoore9488the company is big enough that responsibility can be distributed wide enough nobody feels the pinch.
      If anyone is fired, its just as likely to sometime just following direct orders, and when little to no authority.

  • @DouglasShulby
    @DouglasShulby 7 дней назад +217

    We need to get Steve a Grim Reaper costume with how many companies he looms over like the specter of death at this point.

    • @user-xq1of7ei4q
      @user-xq1of7ei4q 7 дней назад +6

      Hah. My head now mixed Terry Pratchett's Death and Steve together as an anthropomorphized Death of Companies. Didn't know I needed that image in my life. Thanks!

    • @FlyTimeRC
      @FlyTimeRC 7 дней назад

      Yes, this is what we need for companies to act right

    • @tyiu5629
      @tyiu5629 7 дней назад +10

      Nah. The more appropriate costume is a white robe with a halo. Instead of being Tech Jesus, Steve is turning out to be the Patron Saint and Protector of tech consumers.

    • @krmulliger
      @krmulliger 7 дней назад +6

      Steve needs a referee outfit, and should start a new channel called “Consumer Ref”. Use the split between content types to help maintain GN’s original identity, allocate more resources to the cause, and even drive up profit for both channels’ content.

    • @TheSickness
      @TheSickness 7 дней назад +3

      Or a "I don't trust you bro" shirt

  • @TonyChan-eh3nz
    @TonyChan-eh3nz 7 дней назад +422

    Time to bust out the popcorn.

    • @imakuniaw
      @imakuniaw 7 дней назад +4

      I was just about to comment that...

    • @socaldayve6684
      @socaldayve6684 7 дней назад +4

    • @Violet-ui
      @Violet-ui 7 дней назад +1

      Or something else

    • @syeddanishanwer
      @syeddanishanwer 7 дней назад +1

      Great detective work as always. The concerning point is that the meta data of invoices is still online. There are emails and some other information of of customers like Natasha. Nawaf Alsarrani etc. visible in the meta data that could be used by scammers. You know what's even worse. You can still open cache pages using "cache:URL" on google. That's just incompetence of the highest level by this brand.

    • @ateoate3270
      @ateoate3270 7 дней назад +1

      @@Violet-ui💯

  • @Drazil100
    @Drazil100 7 дней назад +49

    Just a general reminder: The cloud is just someone else's computer. Even if you trust them not to be malicious with the data you give them, incompetence can have just as serious if not worse consequences.

    • @1centimetre
      @1centimetre 7 дней назад +7

      And that the cloud isn't here to stay. Companies come and go and so do their temporary "cloud" infrastructure. Just look at video game servers for example.

  • @smoketinytom
    @smoketinytom 7 дней назад +135

    And it’s time to complain to the EU for GDPR…

    • @hi-friaudioman
      @hi-friaudioman 7 дней назад +3

      Yup. For real.

    • @VADemon
      @VADemon 7 дней назад

      "ZotacUSA" domain...

    • @greenlake_3465
      @greenlake_3465 7 дней назад +13

      @@VADemon the domain does not matter

    • @VADemon
      @VADemon 7 дней назад +1

      @@greenlake_3465 proof that this affected european operations too?

    • @greenlake_3465
      @greenlake_3465 7 дней назад +20

      ​@@VADemon if your website can be accessed from EU countries and you process personal data of individuals within the EU.

  • @cup_of_joe
    @cup_of_joe 7 дней назад +141

    Just got my new GN magnets in and this notification popped up. I can't believe you guys put GPS chips in the magnets just so you could pander to me, thank you Steve!

    • @Apollo-Computers
      @Apollo-Computers 7 дней назад

      So tempted to get those.

    • @cup_of_joe
      @cup_of_joe 7 дней назад

      @@Apollo-Computers They're really nice actually! I'm more of a pin-guy so I glued the magnet to a carpet tack. Now they're sitting in my pin board looking pretty

  • @recoilman24
    @recoilman24 7 дней назад +19

    I just noticed gray in Steve's beard. Fighting big corps ages you fast.

  • @TooMuchMiddle
    @TooMuchMiddle 7 дней назад +29

    This reminds me of what Google search was like in the early years after it went online. It was just mind boggling what you could find, if you knew how to ask. It seemed like no one had secure servers. My friends and I would get drunk and just see what we could find. Stuff like this Zotac situation were commonplace.

  • @NoGodsJustMetal
    @NoGodsJustMetal 7 дней назад +21

    In this day of constant security breaches the incompetence demonstrated by Zotac is astonishing.

  • @VoiDukkha
    @VoiDukkha 7 дней назад +82

    In the EU: they should have a privacy@ mail address posted on their website - report it there. This case would be a privacy incident which they (as data controller in the sense of GDPR) have to report to their local (/national) data protection authority (within ~72 hours from the moment you notified them). You could also notify the national data protection authority yourself, claiming violation of article 32 GDPR, which is the data controller's obligation to have sufficient technical and organizational (=security) measures in place to prevent such things from happening.

    • @bastiannenke9613
      @bastiannenke9613 7 дней назад +16

      Those 72h are already over, since the viewer that contacted GN already contacted zotac in advance. They also removed their document without fixing everything else, so I'm pretty sure of there is European data in the leaked stuff zotac will have a few really bad weeks upcoming.

    • @VoiDukkha
      @VoiDukkha 7 дней назад +6

      @@bastiannenke9613 i meant this informatively for if/when this happens to someone at some future point. Also i doubt Zotac would be fined (unless they are already repeat offenders).

    • @bastiannenke9613
      @bastiannenke9613 7 дней назад +6

      @@VoiDukkha I mean they REALLY fucked that one up on multiple levels and GN basically has proof they tried to ignore the issue. I wouldn't be surprised if there will be a decent fine.

    • @VoiDukkha
      @VoiDukkha 7 дней назад

      @@bastiannenke9613 nah, that shit happens the time

    • @arthurmoore9488
      @arthurmoore9488 7 дней назад +5

      @@VoiDukkha Not this level. Private files if you know the URI, sure. People have this weird belief that obscurity == security. But it being on Google is a whole other level of f*** up.

  • @LordAtrocities
    @LordAtrocities 7 дней назад +18

    Every single time I have redacted any information from an invoice to any company over any RMA, the RMA was rejected. To get the RMA's processed, I had to provide unredacted documents. Now I just weigh the value of the product against the hassle of getting it RMA'd.

  • @backseatpolitician
    @backseatpolitician 7 дней назад +32

    Issues about pricing also violate NDA's because wholesalers/warehouses get access to pricing direct from the companies themselves before official release dates. In this case Zotac, but it could be anyone from Nvidia to AMD.

  • @Hell4Gamers
    @Hell4Gamers 7 дней назад +73

    WAN show last night had a passing comment that ZOTAC is probably the biggest they have ever been and "appeared" to have better consumer confidence than ever. 🤦‍♂️
    This after a commenter made a statement suggesting ZOTAC didn't exist anymore.

    • @Daisudori
      @Daisudori 7 дней назад +8

      The company behind Zotac is pretty big anyway. Bigger gpu market share then ie Asus etc.

    • @N3v3r_S3ttl3
      @N3v3r_S3ttl3 7 дней назад

      PC Partner (the company behind Zotac) is big. They have several brands like Inno3D, Manli and Zotac. They also do

    • @elecman748
      @elecman748 7 дней назад +32

      Common Linus L

    • @Skobeloff...
      @Skobeloff... 7 дней назад +19

      @@elecman748 The real L is people watching it at all, let alone mentioning it here...

    • @viking9442
      @viking9442 7 дней назад

      ​@@Skobeloff...that shit has become one big advert 😂

  • @zedvids
    @zedvids 7 дней назад +28

    Wow, a bad actor could mask their email using these business emails and fraud zotac. Major privacy issue.

    • @vasileiospgr
      @vasileiospgr 7 дней назад +3

      "Helo, we are from mikrosopht souport" 😂

  • @elvendragonhammer5433
    @elvendragonhammer5433 7 дней назад +7

    The FTC also just sent letters to Zotac, Asrock & Gigabyte telling them to stop putting "warranty void if removed" stickers on products sold in the US because it's illegal, & to change their warranty policies to reflect that.

    • @CodeXCDM
      @CodeXCDM 6 дней назад

      Just them? Aren't tons of electronics littered with these stamps?

  • @LanceThumping
    @LanceThumping 7 дней назад +39

    Schematics? Now I hope to hell someone found this and archived them before they got taken down.
    (excluding customer data of course)

    • @Kamtar34
      @Kamtar34 7 дней назад

      Schematics aren't really anything special. When it comes to PC HW you can reverse engineer most stuff in a day or two.

    • @arthurmoore9488
      @arthurmoore9488 7 дней назад +24

      @@Kamtar34 Unfortunately, not. Especially with multi-layer boards. There's a reason Louis Rossmann mentions schematics so much. Even when the boards are simple, sometimes tracing requires removing components, and you can't be sure if a trace is broken or shorted when dealing with a faulty board. Time is money too.

    • @SianaGearz
      @SianaGearz 6 дней назад +2

      @@Kamtar34 Please if i need to repair something, i'd rather not sacrifice a board or two to taking off everything and sanding through the board for 100 hours and stitching together a lot of pictures, measuring unmarked components, matching topmarks with datasheets, guessing when there isn't a topmark in the datasheet... like it's manageable if you're a cloning operation that counterfeits hardware, or if you're a company who wants to know how your competitor's device works, but for the common usecase it's untenable.

    • @trophosphere
      @trophosphere 6 дней назад

      Looks like they use Orcad Capture to draw their schematics.

  • @TTM1895
    @TTM1895 7 дней назад +125

    I think they need to hire wendall at level 1 tech to go over their server.

    • @GamersNexus
      @GamersNexus  7 дней назад +104

      Wendell can be summoned via telecom rack!

    • @egnatius79
      @egnatius79 7 дней назад +9

      I was totally expecting Wendell's head to pop up at 6:52

    • @alexatkin
      @alexatkin 7 дней назад +5

      Its not really bad server configuration that is the problem here, it just exposed that their whole file upload system was written poorly. It should never have been storing the files inside the path the web server can access, in order to completely avoid this possibility. Its very basic stuff.

    • @DougguoD
      @DougguoD 7 дней назад

      Or Stanley Tweedle 😇

  • @acuteaura
    @acuteaura 7 дней назад +4

    When I worked as platform engineer at a large retailer we had a bucket for uploading public data, mostly product shots that was used by business people; it was literally called "-public". One day we audit the thing because we heard a rumor business people have started using it as some sort of data exchange drive, and found a bunch of internal financial data. Fortunately these people weren't handling customer data directly; this was just after GDPR took effect. We walked over to the divisions office and found out that no, naming a bucket "public" doesn't communicate that it's the ENTIRE public and not just people in the office. We took away access from most people that day and told regular old IT that these people needed some sort of sharepoint access... which they didn't have.

  • @alexatkin
    @alexatkin 7 дней назад +18

    Its not just improper configuration of the server, its not taking any precautions at all.
    These files should never have been stored in a location the web server can serve from directly, avoiding the problem of bad server configuration exposing them. The files should have been stored either in the database or in a folder only a specific script on the server can access, which will only do so if a user is logged in with permissions to do so.
    This has NOT been solved, they have merely reinstated security by obscurity again, as solving it would require implementing an actual authentication system so they are not served by the web server directly. The scary thing is, we have no way to know how many businesses are doing exactly this, where merely forgetting to disable indexing on a folder can expose everyones data. Its not good enough, as a bad actor spending enough time may be able to guess filenames and still get some access, it should never be accessible to the web server directly.

    • @georgehill3087
      @georgehill3087 7 дней назад +1

      Yeah, this is clearly an issue of having no authentication nor authorization systems. Zotac really cheaped out on their website development, or their developer maliciously did this to get customer information to sell.

  • @Slambear
    @Slambear 7 дней назад +6

    i like the advice on redacting anything that's not required. it reminded me of times when im at the store, buying something or returning something, and they need information about me, and things that aren't related to what I need are requested. In the past i've folded and just shared the information that was asked, but from now on, I'll make up some random nonsense if i feel like it's not required for what i need of the business or company.

  • @Axtasium
    @Axtasium 7 дней назад +13

    I sent my card in for 3 RMAs to them, and they all kept dying. Finally, I got a different model of card, and it has a wack fan on it, and im now out of warranty... but now ig my name and information have been put out there multiple times now as well...

  • @blakes8901
    @blakes8901 7 дней назад +6

    You and your team are actually what I would consider to be modern heroes. Honestly, thank you so much for looking out for all of us and helping to keep us informed and safe.

  • @EJaDav
    @EJaDav 7 дней назад +35

    I was expecting ASUS ngl, surprising.

  • @Lowkeh
    @Lowkeh 7 дней назад +6

    14:15 - That rep's reaction was absolutely glorious!
    Thank you. I'm glad you got that down and shared it with us.
    __
    (⚠: Some military history nerdery below)
    Kinda reminds me of WW2 US Navy's "head honcho" Fleet Admiral Ernest J. King (of infamous temper and having little-to-no patience for pencil pushing bureaucrats) once he found out about Bureau of Ordnance's mind-boggling 2-year-long negligence/incompetence regarding the Mark 14 torpedo.
    Sufficed to say, Mr. Perpetually Angry NavyBoss-guy went to have a little chat with BuOrd, and thus-like Steve aptly put it: "shortly after that conversation, things, uh, got set into gear...", finally.
    It's incredibly unfortunate that the actual "talk" wasn't transcripted/recorded, because, oh boy-now, there's a boss encounter I'd love to see a VoD of.

  • @singlsrvngfrnd
    @singlsrvngfrnd 7 дней назад +179

    Didn't expect it to be Zotac. Dang.

    • @severdnerv
      @severdnerv 7 дней назад +21

      Thats like saying Didn't expect a company to make a boo boo. All Companies make mistakes

    • @parsa475
      @parsa475 7 дней назад +11

      Why, exactly? It's literally just another company like all the other ones.

    • @RedOneM
      @RedOneM 7 дней назад +17

      Their coolers are crappy and they sound like jet engines, stay far away form that brand.

    • @delayeedbms
      @delayeedbms 7 дней назад +15

      zotac is literally the worst and i own a 3080 ti by them

    • @fuhrerhosty
      @fuhrerhosty 7 дней назад

      Why would you not expect it? They're usually a tier below most of the GPU manufacturers cooler quality wise.

  • @GigAnonymous
    @GigAnonymous 7 дней назад +22

    Haha, and shop clerks look at me weird when I refuse to give them *any* personal information besides my name when I buy a product :') "Don't you trust us?" Well NO...

    • @viking9442
      @viking9442 7 дней назад +2

      They ask you for information 😨

    • @GigAnonymous
      @GigAnonymous 6 дней назад

      @@viking9442 "But we need your full name, address and phone number so we can register you for the warranty!"
      ... no, you need my name, you need to print a receipt, and then you are LEGALLY REQUIRED to accept any valid RMA with that receipt.
      But well, those poor shop clerks are only doing what they've been ordered to do. Every so often I'll find one who'll nod, reply "yup, you're right, I don't" and be done with it.

  • @MysteicVoltronus
    @MysteicVoltronus 7 дней назад +10

    I have lost track of how many Industry issues GN has fixed or put a massive spotlight on at this point. When are you going to do a secret buyer review of LTT's "Just trust me bro" warranty?

  • @tonytiger6874
    @tonytiger6874 7 дней назад +36

    Babe wake up, Gamers Nexus is merkin another corporation

  • @edwinduisburg8138
    @edwinduisburg8138 7 дней назад +91

    Bethesda level of incompetence.

    • @LiveType
      @LiveType 7 дней назад

      If this happened on my watch, people would be fired 100%. This is gross negligence and not that difficult to prevent. Lots of guides you can find on how to configure nginx. I have tons of publicly accessible web servers that aren't crawled by indexers. Incompetence on multiple levels going almost all the way up.

    • @Kiyuja
      @Kiyuja 7 дней назад +1

      So true

    • @Table_JFK
      @Table_JFK 7 дней назад

      For those out of the loop: Bethesda got in trouble for something very similar to what's described in this video. If you pre-ordered the Power Edition of Fallout 76, you got a canvas bag that wasn't actually made of canvas. Bethesda was called out on this, and they eventually started making canvas bags after enough public pressure. However, the "claim" tickets for the canvas bag were unsecured and open to public visibility on Bethesda's website, very much like these RMA tickets on Zotac being visible via Google search.
      TL;DR - If you requested your canvas bag from Bethesda, you, like the unfortunate Zotac users today, have unintentionally doxxed yourself due to a security issue on the company website.

    • @elecman748
      @elecman748 7 дней назад

      So Zotac

    • @blendded6248
      @blendded6248 7 дней назад +1

      Duffel Kerfuffle, never forget

  • @Str4yshot
    @Str4yshot 7 дней назад +7

    As a software developer this is actually wild. You would think that putting stuff like rma data behind authentication would be obvious.

    • @dead-claudia
      @dead-claudia 20 часов назад

      as someone who's done software dev for years and knows basic it sysadmin stuff as well, it's extremely negligent and could've been prevented with maybe 1-2 hours of work. any competent intern with an a+ cert even could've fixed this in a day or two.

  • @RagingDork
    @RagingDork 7 дней назад +4

    There needs to be something similar to the HIPAA law with companies that store consumer information

  • @Shantara11
    @Shantara11 7 дней назад +67

    Aw shit, here we go again! 😂

  • @myownalias
    @myownalias 7 дней назад +6

    Thanks, Steve, for highlighting the lack of precautions taken to protect customers' data. It is important to publicly hold companies accountable; if they are not publicly shamed, nothing will ever change. I know this for a fact. I send an email to a company; crickets. I put them on blast on Twitter, and I get an instant reply.

  • @Nextrix
    @Nextrix 7 дней назад +28

    Also if you are going to redact anything on a visible document, DO NOT BLUR IT OUT, only use a black box covering the private information. It is very possible to reverse blur to readable quality.

    • @GamersNexus
      @GamersNexus  7 дней назад +28

      We did for important information. They are black bars. For the rest, that's why we used mosaics in most instances. Anything blurred was just product names out of an abundance of caution.

    • @cpMetis
      @cpMetis 7 дней назад +6

      @@GamersNexus I might be misunderstanding him, but I think they meant that comment as an addendum directed towards other viewers on how to go about redacting information when providing documents to companies. As the PSA portion of the video was addressing - not a criticism of your use of it in the video's examples.

    • @Nextrix
      @Nextrix 7 дней назад +11

      @@cpMetis Yes it was to inform the public more, but I can totally understand how that statement might have been misunderstood. They did it properly in the documents shown in their video.

    • @eric.is.online
      @eric.is.online 7 дней назад +3

      @@Nextrix the GN reply will help this cut through the noise in the comments at least

  • @JasonSpears
    @JasonSpears 7 дней назад +4

    As far as I can tell, the general definition of "data breach" covers this situation. Usually it's as simple as "if unauthorized access occurrred." This doesn't have to be due to a hardware or software intrusion, and no bad actors need be involved. Depending on who you ask, the definition may even be broader, e.g. "if unauthorized access *may* have occurred" you have had a data breach.

  • @noenken
    @noenken 7 дней назад +5

    This is one of those things that would make Wendell laugh in depression.

  • @JustSomeDinosaurPerson
    @JustSomeDinosaurPerson 7 дней назад +7

    Honestly, seeing a lot of these leaked business to business exchange documents for myself, I have gained a LOT of sympathy for prebuild providers. The markups AIBs like Zotac have put on them is genuinely insane to me. Normally you expect business to business exchanges to have some kind of bulk discount or markdown. It makes me wonder if this is how the AIBs themselves are being treated by Nvidia and now it is just going downstream. I am just completely flabbergasted because this is not how we would pay for servers at my workplace. We would never pay for a markup.

    • @BigFatCone
      @BigFatCone 6 дней назад

      Ask EVGA how nVIDIA treats them.

  • @jameswubbolt7787
    @jameswubbolt7787 7 дней назад +15

    So sick of all companies leaking information.

    • @arthurmoore9488
      @arthurmoore9488 7 дней назад +4

      Fun fact, in the US companies are allowed to keep your bank account info **forever.**
      Not having mandatory data destruction policies for PII is why this happens.

    • @markn866
      @markn866 7 дней назад +6

      And some in government want websites to have to take in ID data to verify age before accessing social media. Ooof

  • @Reckless150681
    @Reckless150681 7 дней назад +8

    Time to set up a "PC companies with bad warranty practices" bingo card

  • @R1NR4N
    @R1NR4N 7 дней назад +3

    Ironically this might be the only time I can actually google myself and get a hit back. I'll be looking forward to my $2 from the inevitable class action suit.

  • @seanbingham6923
    @seanbingham6923 7 дней назад +1

    Not all heroes wear capes. GN, the true heroes of the Internet. Love you guys!

  • @wojtek-33
    @wojtek-33 7 дней назад +16

    Well Zotac is just a step above Temu and just below Gigabyte, so not surprised.

  • @EfrainMan
    @EfrainMan 7 дней назад +20

    I haven't trusted Zotac since GN themselves exposed a flaw in their 980ti's way back in the day, that they never fixed. I considered them again in the 40 series, but I guess it's back into the NO pile.

    • @micobugija6284
      @micobugija6284 7 дней назад

      Their 3000 series has shit fans like all previous gens. There was a batch of 3070 or 3080 that had just horrible mem temps. Don't know much about 4000 series. It should be fine. Their fans are still shit probably.

    • @viking9442
      @viking9442 7 дней назад

      What do you think of Palit

    • @arek314
      @arek314 7 дней назад +1

      I have their 4090, it's a quality product. I had their 2080 before that, also no issues.

    • @micobugija6284
      @micobugija6284 7 дней назад

      @@viking9442 Im a small pc shop so don't get weird on me. I've sold a lot of GPU that were used on mining farms and most of them were cheap pny, gainward, palit. I don't remember if I've had to RMA any of them unlike the bigger brands. Namely zotac, asus and gigabyte. Not many MSI either. Keep in mind that mostly whatever the cheapest was sold the most.

    • @BigFatCone
      @BigFatCone 6 дней назад

      My Zotac 3060 just keeps on giving.

  • @annieworroll4373
    @annieworroll4373 7 дней назад +4

    Damn.
    Fucking up and having internal policy documents set to be too visible is one thing. Not necessarily a good thing, but whatever. You need those accessible to large numbers of employees, and getting a little too generous happens.
    But customer information? That is a disaster.

  • @BRC_Del
    @BRC_Del 3 дня назад

    I'm happy with how Zotac is handling the fallout, but this never should've happened at all.
    Thank you for helping hold companies accountable!

  • @Joel-st5uw
    @Joel-st5uw 7 дней назад +2

    Their incompetence was doubly confirmed when they fixed it for JUST ONE CUSTOMER after learning about it 🤦‍♂️

  • @richardfarmer6570
    @richardfarmer6570 7 дней назад +3

    I bought a 2080 Super from the Zotac store, glad I never had to RMA it.

  • @chibbyylol
    @chibbyylol 7 дней назад +22

    Uh oh-tac

  • @rdoc
    @rdoc 7 дней назад +2

    Thanks Steve, This is a great help to All Zotac owners. I almost got an RMA for my 4080 Super just the other day. Now I won't need to worry about something I didn't even know I needed to worry about. Thanks again for your heads up program.

  • @evocatiproductions
    @evocatiproductions 7 дней назад +2

    LOL. So I just tested it, and the search results are still there, the links are just broken now, someone acted fast to fix their stupid mistake, lol! Great Job as always!

  • @electricindigoball1244
    @electricindigoball1244 7 дней назад +16

    I can't believe this is real. How can people in charge of a large company's IT and web infrastructure be this incompetent?

    • @5nowChain5
      @5nowChain5 7 дней назад +14

      Managers don't consider fully qualified experienced server administrators as a justifiable expense. They sack them and pass the Job onto juniour 2nd line techs who are out of their depth.

    • @alexatkin
      @alexatkin 7 дней назад +4

      Security by obscurity is always a bad idea as it allows this sort of thing to happen. The files were always open to the public, they just assumed nobody would know the filenames - then presumably forgot to disable server indexing so the whole directory listing became visible. They failed the most basic of security precautions, don't have sensitive information where the web server itself can serve directly from in the first place.

    • @electricindigoball1244
      @electricindigoball1244 7 дней назад +11

      @@alexatkin You can't really call it "security by obscurity" when the contents of the directory were found by Google's web crawlers.

    • @OhhCrapGuy
      @OhhCrapGuy 7 дней назад +4

      Because the decisions about what is *allowed* to be worked on is often made by PHBs that refuse to listen to the experts they themselves hired warning them of very severe issues, instead preferring to focus on meaningless tripe that doesn't help the consumer, partners, or the company.

    • @arthurmoore9488
      @arthurmoore9488 7 дней назад +3

      @@alexatkin The indexing thing is what makes it beyond the pale though. Most servers have directory browsing turned off by default.

  • @HuskyMoment
    @HuskyMoment 7 дней назад +3

    There's some routing and account numbers in these files too. Bank accounts and whatnot, unfortunately.

  • @SkateSoup
    @SkateSoup 7 дней назад

    Was looking forward to this. GN bringing the tea and the receipts again.

  • @FrantisekPicifuk
    @FrantisekPicifuk 7 дней назад +8

    Well this is a fucking nightmare.

  • @gammafilter
    @gammafilter 7 дней назад +3

    Us government will be very interested in this info... export controls violation bigtime.

  • @Yellowredstone
    @Yellowredstone 7 дней назад +5

    Even if Zotac fixes the issue after this video, they refused to fix it before the video, and we shouldn't have to tell them to do their job for them to get it done. Thank you GN!

  • @pirojfmifhghek566
    @pirojfmifhghek566 7 дней назад

    THANK YOU for doing your due-diligence and reporting this in an ethical way. If something like this went on blast before they took any steps to fix it, that information would've been immediately scraped by so many bad actors before the rest of us could even finish watching the video.

  • @jeffjolicoeur3576
    @jeffjolicoeur3576 4 дня назад

    Back in the GTX 460 days, I bought a new one from Zotac. On the box it stated it had a lifetime warranty. 6 years later it failed and since the 460 was EOL, they gave me a 650Ti. Of course I had to show them the original box that clearly stated "Lifetime warranty" as they initially tried to get out of honoring the warranty. After I sent a pic of the box with the POP, they were quick to replace my dead 460. Only time I've dealt with them but it was over a positive one.

  • @ctrlcf
    @ctrlcf 7 дней назад +9

    Who ran chmod -r 777 on an unauthenticated account?

  • @lazerathhome
    @lazerathhome 7 дней назад +4

    Louis Rossman was discussing this too I believe. Crazy..

  • @wavytoad9983
    @wavytoad9983 7 дней назад

    Thank you so much Steve. You're providing a real service with real journalistic integrity

  • @LanceThumping
    @LanceThumping 7 дней назад +6

    I wonder how long it will take for Google to take down the cached links because at the moment you can still load cached versions of documents even if the site has taken them down.

  • @JimmyBoah
    @JimmyBoah 7 дней назад +3

    Anytime something like this happens, it makes me avoid whatever brand has done it. Even if they're fixing it now, they still let people's data get out due to incompetence.

    • @alexatkin
      @alexatkin 7 дней назад +2

      Especially not knowing what "fix" they implemented. Those files should never have been in a folder the web server could access to begin with, the fix may have just been to rename the folder and disable indexing - which still leaves it open to happening again. We need to know they fixed it properly, which would likely mean completely rewriting the system they are using to manage that folder.

    • @JimmyBoah
      @JimmyBoah 7 дней назад +3

      @alexatkin Yup, and the fact that they basically had to have their business threatened in order to "act" proves they don't care about customer safety and privacy really says everything about their practices.

  • @Laundry_Hamper
    @Laundry_Hamper 7 дней назад +2

    This is one of those situations that can be really helpful for people who struggle with imposter syndrome. Basically everybody's a moron, even people with very important jobs and loads of responsibility. Just do you.

  • @JB-jr3bm
    @JB-jr3bm 7 дней назад +1

    Gamers Nexus ... Freaking Hero work. Thanks Amigos.

  • @jeremyf1901
    @jeremyf1901 7 дней назад +5

    Dude, WTF is wrong with tech hardware companies. Not just Zotac but all of them at this point. Why does pressure have to be applied in situations like this?

    • @1centimetre
      @1centimetre 7 дней назад +1

      Many executives do not know how to protect customer data. And for the IT people who speak out, they are usually ignored for cost or laziness among other reasons.

  • @sepheul
    @sepheul 7 дней назад +3

    Gamers Nexus, my favorite information and entertainment source :)

  • @yzo0001
    @yzo0001 7 дней назад +1

    Being "open source" on a whole new level

  • @Artemicion
    @Artemicion 7 дней назад +1

    oh yikes, I have a zotac RMA from last year, too...
    Thanks as always, GN team!

  • @Lebon19
    @Lebon19 7 дней назад +2

    I did the search as I entered the video and clicked the first link and the following links... They all gave me 404's. So I guess they fixed it. Why did GN have to come out with these videos for companies to take responsability for their screw ups? (This message was written before I wacthed the ad spot)

  • @5scbasher17
    @5scbasher17 7 дней назад +2

    *Cracks open a Twisted Tea in this heat.

  • @francoemanuelbordon9487
    @francoemanuelbordon9487 7 дней назад +2

    Once their wallet is been touched, the problems are magically resolved in record time.

  • @nickvirgili2969
    @nickvirgili2969 7 дней назад

    This is why You Guys, and others, are so important, Thanx Guys👍👍

  • @ventilate4267
    @ventilate4267 7 дней назад +34

    Someone forgot to lock down their nginx server 😂

    • @n00dl3
      @n00dl3 7 дней назад +6

      Yep, ops team will be sweating

    • @rdoursenaud
      @rdoursenaud 7 дней назад +1

      Except it's Apache and they use cPanel. Proof they don't know what they're doing and that there's no ops team. Probably just a guy that knows a thing or two and does a totally unrelated job the rest of the time.

  • @xlr555usa
    @xlr555usa 7 дней назад +8

    Im not surprised Zotac screwed up like this. They are similar to PNY where they cut corners everywhere and dont see it as an issue that the consumer should be concerned about. Stay away from Zotac and PNY.

    • @arthurmoore9488
      @arthurmoore9488 7 дней назад +2

      What's interesting is Kingpin seems to be going with PNY. You may see them with actual high quality products.

    • @JustSomeDinosaurPerson
      @JustSomeDinosaurPerson 7 дней назад +5

      PNY is NOWHERE near as bad as Zotac. PNY incompetence heavily depends on region, and they are extremely competent in the professional area. Zotac has always been incompetent.

    • @viking9442
      @viking9442 7 дней назад

      What do you guys think about Palit

  • @EhNothing
    @EhNothing 5 дней назад +1

    thanks for the reporting.

  • @kongawain
    @kongawain 7 дней назад

    Great work Steve, you are making the interwebz a bit safer, and by doing so making tech compagnies rethink their actions, keep up the good work, Sir Steve Protector of the Enthusiasts

  • @sephondranzer
    @sephondranzer 7 дней назад +7

    Am I jaded for feeling like this was *RELATIVELY* a good response? It feels like this is the most good response we’ve gotten to stupid data leaks, not to say that it’s a good response of course!

    • @viking9442
      @viking9442 7 дней назад

      I feel like data leaks happen all the time but this time we actually get to see it happening 😢

    • @StrikeWarlock
      @StrikeWarlock 7 дней назад +3

      Yea, it's good to see that they didn't double down, but thats also probably because their business partners were also severely affected by this.

    • @nebufabu
      @nebufabu 6 дней назад

      The response was good. The leak itself was... About as bad as it could get.

  • @huzudra
    @huzudra 7 дней назад +3

    Looks like all the PDF's are 404 now but some PIA is still indexed on the Google search results like home addresses and names.

  • @MrAltairantares
    @MrAltairantares 7 дней назад +2

    There's a reason this is the one youtube channel I've bought merch from!

  • @jonkeau5155
    @jonkeau5155 7 дней назад +2

    That’s called skipping past the department manager trying to cover his ass and going straight to the board through their business partners. It gets done real quick when the top finds out what their underlings are hiding and money is involved.

  • @850DAB
    @850DAB 7 дней назад +3

    I have bought refurbished cards from Zotac and RMA 1 before.
    Lovely.