Slashdot Mirror


User: Jeremiah+Cornelius

Jeremiah+Cornelius's activity in the archive.

Stories
0
Comments
6,917
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 6,917

  1. Re:sshh! on Why San Francisco Is the New Renaissance Florence · · Score: 1

    Depends where. I live in SF most of most years. London is wonderful, if you got a bit of dosh, and I'm there a few months, pretty regularly. Back in Portobello area...

    Paris is just a train ride away. Two tubes and a Eurostar? Downtown Paris, from your Kensington door step. Freakin' great town, if you've French friends. I don't think it would be livable, unless you spoke very good French, 'tho.

  2. Ozymandias on Why San Francisco Is the New Renaissance Florence · · Score: 4, Interesting

    I met a traveller from an antique land
    Who said: "Two vast and trunkless legs of stone
    Stand in the desert. Near them on the sand,
    Half sunk, a shattered visage lies, whose frown
    And wrinkled lip and sneer of cold command
    Tell that its sculptor well those passions read
    Which yet survive, stamped on these lifeless things,
    The hand that mocked them and the heart that fed.
    And on the pedestal these words appear:
    'My name is Ozymandias, King of Kings:
    Look on my works, ye mighty, and despair!'
    Nothing beside remains. Round the decay
    Of that colossal wreck, boundless and bare,
    The lone and level sands stretch far away.

  3. Re:Why do we have all these custom PRNGs? on Weak Apple PRNG Threatens iOS Exploit Mitigations · · Score: 1

    Whoops! NIST is an "Untrusted Organization"!

  4. It was. Read on. on Weak Apple PRNG Threatens iOS Exploit Mitigations · · Score: 1

    Now, was this a gift to the NSA, or to the Jailbreakers?

  5. Re:Laugh on Weak Apple PRNG Threatens iOS Exploit Mitigations · · Score: 1

    Right, Smitty.

  6. Re:Becuz on Is the New "Common Core SAT" Bill Gates' Doing? · · Score: 1

    English is the best language.

  7. Re:Don't they have to fly that thing around? on What If the Next Presidential Limo Was a Tesla? · · Score: 1

    Think BIG!

    What if the next presidential limo was 3000 mics of LSD, Donald Sutherland reading "The Cat In the Hat" and a disco ball?

  8. Re:The danger of commonality on Is the New "Common Core SAT" Bill Gates' Doing? · · Score: 3, Funny

    Monoculture.

    It worked for Windows security! Why not for American education?

  9. Re:Becuz on Is the New "Common Core SAT" Bill Gates' Doing? · · Score: 2

    I want Bill Gates to do for American Education just exactly what he did for design of computer operating systems and for compound document management formats.

    Because everybody knows that dollars are a surefire benchmark of brain power, so we have proof that Gates is an uncanny supergenius, who should now direct that dollar stream to blast any obstacle for his genius vision of how we should live, and be educated.

    Public policy? Twaddle! Smart people with money. That's the cure for what ails society!

  10. Re:Title on Neil Young's "Righteous" Pono Music Startup Raises $1 Million With Kickstarter · · Score: 1, Funny

    "Old man, take a look at my life..."

  11. Re:"How Can I Prepare For the Theft of My Android? on Ask Slashdot: How Can I Prepare For the Theft of My Android Phone? · · Score: 1

    Hey. It's "Gamification" of the comment hierarchy.

  12. "How Can I Prepare For the Theft of My Android?" on Ask Slashdot: How Can I Prepare For the Theft of My Android Phone? · · Score: 3, Funny

    Save us both some time, and just send it to me...

  13. Re: Autodesk has 3 Animation packages on Autodesk Says It's Killing Softimage Development, Support · · Score: 1

    Right you are. Being on the SoftImage side, that chronology is fuzzier to me.

    Still have an Indigo R4400 Elan here, under the desk...

  14. Re:Longtime Softimage Users Are Stunned By The New on Autodesk Says It's Killing Softimage Development, Support · · Score: 1

    Interesting, your take on SoftImage as related to the games world. XSI was after my folks were all driven away by the 3.x taper...

  15. Re:Autodesk has 3 Animation packages on Autodesk Says It's Killing Softimage Development, Support · · Score: 1

    SoftImage was king. Alias Wavefront was a powerful contender, with different strengths and weaknesses.

    Microsoft bought SoftImage, as a part of the effort to displace high-end Unix workstations with PC's running NT. It was all over, but the shouting. Alias transformed Wavefront into Maya in roughly this timeframe, while MS starved out "dot release" life support on SoftImage...

  16. Re:which he at first found "abominable", on Einstein's Lost Model of the Universe Discovered 'Hiding In Plain Sight' · · Score: 2, Insightful

    He also abhorred the violent creation of the Israeli nation, and was actively anti-Zionist.

    Yet his work has been captured by the Hebrew University, and is used to glorify a nation who's creation he saw as tragic, and who's establishment he repudiated.

    http://dissidentvoice.org/2010/01/einstein-on-palestine-and-zionism/
     

  17. Re:Kurzweil is an idiot with Super Powers on Why Robots Will Not Be Smarter Than Humans By 2029 · · Score: 1

    Kurzweil is Lex Luthor.

  18. Re:Mind = Blown on It's True: Some People Just Don't Like Music · · Score: 1

    I Score...

    69. Make your own joke.

  19. Re:Yes they did. on Ask Slashdot: Does Your Employer Perform HTTPS MITM Attacks On Employees? · · Score: 1

    CA?

    You mean "certificate".

  20. Re:stupid question on Ask Slashdot: Does Your Employer Perform HTTPS MITM Attacks On Employees? · · Score: 1

    Probably, they are not.

    NSA has been doing hash collisions in MD5 space to get past this niggle. Your company, probably not. Yet. :-)

  21. Re:Yes they did. on Ask Slashdot: Does Your Employer Perform HTTPS MITM Attacks On Employees? · · Score: 1

    Tough to detect with MOST browsers. They don't report cert chaining in a way that's useful for this. You COULD check the trust chain everytime you HTTPS. Firefox has the Lock icon to click. Same for Safari.

    There are plugins for Firefox that alleviate this:

    An indicator of changes in chain-of-trust, etc.
    https://addons.mozilla.org/en-US/firefox/addon/certificate-patrol/

    https://addons.mozilla.org/en-US/firefox/addon/perspectives/ Way cool "web-of-trust" validation infrastructure, with more info here:
    http://perspectives-project.org/
    http://perspectives-project.org/firefox/

    People STILL ask me why I don't use Chrome or Surfari...

    Additionally? Modify your workstations settings to use an authoritative external DNS server. OpenDNS is good... enough. Or your ISP servers from home. Then? Use TOR to browse. Be careful with your bank! They may close web-access to your account if TOR has it appear that you log in from Switzerland and Iceland!

    These are not the best counter measures, and don't handle every case. TOR relies on SSL - but on a proxy-port, not 80, so usually outside the scope of these gateways. Depending how your company has it's CA published, they may still look "right" when using external DNS lookups, too.

  22. Re:Yes they did. on Ask Slashdot: Does Your Employer Perform HTTPS MITM Attacks On Employees? · · Score: 5, Informative

    This is very common

    Very.

    Your employer probably does little with this - it is usually a part of the configuration for Microsoft Forefront TMG (Formerly ISA Server). I f you have Outlook Web Access, and do any spend on MS recommended practices, then you have a TMG, and 9 out of 10 times, the "Inspection Proxy for SSL" feature.

    The intent is to scrub the stream for malware attachments and malicious XML, etc. Most are set-and-forget, with little competence to exploit or understand what they have done.

    Bigger corporations, or those aware of data sensitivity issues are another matter. Outbound traffic may be subject to this inspection, for DLP with something like Vontu Network Prevent. These controls are managed by folks who spend 25K on netsec, not 25 C's. :-) Then? Clever operators may be logging and trapping all kinds of info. Reports are very "compliance centric" 'tho. The DLP operator team usually has a fair amount of audit scrutiny. Usually...

    Any way, TLS is irrevocably broken. It is reasonable security, trivially implemented and nearly as easily defeated. You own DNS and the path? You own the world.

    I am involved in defining a new transport security mechanism for my company's products, because TLS/SSL of handwaving, and IPsec brittleness.

  23. Re:asshole on Steve Ballmer Blew Up At the Microsoft Board Before Retiring · · Score: 2, Funny

    I'm sorry... is there a better word to describe this self-absorbed troll?

    Consistent.

    Fat.

    Shall I go on? :-)

  24. Re: The year of the Linux Tablet on Android Beats iOS As the Top Tablet OS · · Score: 1

    I'm quoting a "pro".

  25. "Error" is Plausable Deniability on Bug In the GnuTLS Library Leaves Many OSs and Apps At Risk · · Score: 5, Interesting

    Hot on the heels of Apple's SSL/TLS implementation "flaw" across all stacks, and the Snowden revelations of NSA infiltration for weakening crypto?

    You don't have to be wearing Tin Foil, just to become a little suspicious...