Slashdot Mirror


User: neo00

neo00's activity in the archive.

Stories
0
Comments
40
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 40

  1. I don't think Web developers necessarily learned the lesson very well. Javascript-heavy (client-side JS) web apps with insecure RESTful backend also suffer from the same issues. I'm seeing a lot of those recently.

    Hasn't Panera Bread just recently suffer from a similar issue?

  2. Re:Where's the evidence? on Pentagon Reports 2000% Increase in Russia Trolls Since Friday (axios.com) · · Score: 1

    I've literally provided a video from the press conference by the Pentagon's spokesperson, Dana White, with this exact statement quoted by those news sources. How on Earth is this news still possibly fake?

    Now if you're questioning the truthfulness of the Pentagon's statement, that's fine. But then that's a completely different problem, not a fake news issue. The news outlets are merely quoting the Pentagon in this case.

    I'm all for skepticism and critical thinking. That's great. But let's just not throw "fake news" right and left before at least some research.

  3. Re:Where's the evidence? on Pentagon Reports 2000% Increase in Russia Trolls Since Friday (axios.com) · · Score: 1

    Some source after quick googling:
    Source 1
    Source 2
    Source 3 (video clip from the briefing)

    People, before calling fake news, try googling first.

  4. This is a perfect example why a median should be used vs the average. Few extreme outliers significantly skew the average when most people make really small amount of money.

    From the article:

    * About 12% of hackers on HackerOne make $20,000 or more annually from bug bounties.
    * Over 3% o bug hunters are making more than $100,000 per year.
    * 1.1% are making over $350,000 annually.

  5. Meltdown only impacts Intel processors. Meltdown can be thought to be a special case of Spectre that exploits an Intel-specific flaw that makes it simpler to execute the exploit.

    Spectre, which is more of a generalized class of attacks, but more difficult to implement, impacts Intel, AMD, and ARM as per the original spectre paper. https://spectreattack.com/spec..., from which I quote:

    Hardware. We have empirically verified the vulnerability of several Intel processors to Spectre attacks, including Ivy Bridge, Haswell and Skylake based processors. We have also verified the attack’s applicability to AMD Ryzen CPUs. Finally, we have also successfully mounted Spectre attacks on several Samsung and Qualcomm processors (which use an ARM architecture) found in popular mobile phones.

    and

    Unlike Meltdown, the Spectre attack works on non-Intel processors, including AMD and ARM processors. Furthermore, the KAISER patch [19], which has been widely applied as a mitigation to the Meltdown attack, does not protect against Spectre.

    References:
    Spectre https://spectreattack.com/spec...
    Meltdown https://meltdownattack.com/mel...

  6. Re:Do the right thing - stand against Trump's bigo on Trump's Executive Order Eliminates Privacy Act Protections For Foreigners (whitehouse.gov) · · Score: 1

    35% of Syrians [in the US] 25 years and older have a Bachelor's degree or more, compared to 24.4% of all Americans. *

    Median Syrian-American family income is 58k/year, significantly higher than national median of 50k (2000 census numbers). *

    Number of Syrian doctors: "A study published in Health Policy in 2007 analyzed the dynamics of international immigration patterns of physicians to the United States and found that Syria has a higher-than-expected physicians immigration rates. [4] In fact, Syria was the sixth country among the top eight countries which have a higher-than-expected rate and the second Arab country after Lebanon when adjusting for the population size". **

    Sources:
    * http://www.census.gov/prod/200...
    ** http://www.avicennajmed.com/ar...

  7. Re:Slashdot is clamping down on Facebook Is Clamping Down On Fake News, Partners With Fact Checkers To Flag Stories (slate.com) · · Score: 1

    This article is another example of this: it's a forum for people to wail about how awful Trump will be, because they can see the future with perfect clarity.

    This article did NOT mention anything about Trump. This is at least the third time I've see this comment copy-pasted on /., and the claims have been refuted by other commentators. At this point, you don't have anything new and this is just pure trolling. Go back to r/T_D or 4chan or wherever troll-land you came from.

  8. ... he doesn't realize that the world also has it's hands on the US's balls. Trade doesn't exist in a vacuum and playing chicken with the economy is not something to look forward to.

    I wonder to what extent this is true, in context of this story. Given the fact that this money seems to be coming primarily from Saudi Arabia and, potentially, other unknown sources.

    The money would come from a $100 billion investment fund that SoftBank Chief Executive Masayoshi Son is setting up with Saudi Arabia's sovereign-wealth fund and other potential partners, according to the Wall Street Journal.

    Src: http://www.foxbusiness.com/pol...

  9. Re:Softbank - Sprint & T-Mobile merger failure on Apple's Top Assembler Foxconn Confirms Plans for US Investment, To Create 50,000 Jobs (bloomberg.com) · · Score: 4, Insightful
    You're probably right. The de-regulation that Trump has been advocating for would potentially let the merger pass this time.

    “We were talking about it, and then I said I’d like to celebrate his presidential job” because Trump will advocate deregulation, Son told reporters according to Bloomberg News.

    There was a lot of speculation about that since the day after the election.

  10. Unemployment numbers are a bit worse off today than they were when Obama took office, regardless of which measure you look at.

    http://www.cnbc.com/2016/12/02...

    What are you talking about?

    Using your own reference, let's look at the numbers. Obama inauguration was on January 20, 2009. Here are the unemployment rates then and now:

    Jan 09: (U1..U6) = 3.1%, 4.8%, 7.8%, 8.3%, 9.1%, 14.2%
    Nov 16: (U1..U6) = 1.8%, 2.2%, 4.6%, 5.0%, 5.8%, 9.3%

    So every one of the unemployment measures shows a significant decline since the day Obama took office.

  11. Re:Not who... but what should we blame? on Who Should We Blame For Friday's DDOS Attack? (fortune.com) · · Score: 2

    If the device is already hacked, you're absolutely right that NAT won't add any security. However, GP's point was that NAT could make it a little more difficult to get the device hacked in the first place.

  12. Re: Jesus fucking lord christ!!! on Ask Slashdot: Share Your Experiences With Windows 10 · · Score: 2

    This article is relevant to Linux and the FOSS/FLOSS community.
    Whether you love or hate MS, and whether or not you're exclusively interested in FOSS and Linux, Windows is the still biggest competitor to Linux in desktop and enterprise markets. Your position regarding Linux or Windows shouldn't stop you from looking at other competing software products.
    Bashing Windows maybe fun and all and we all enjoy that every once int while, but constantly bashing for the purpose of bashing is simply unproductive. What I'm saying is that we should probably learn from others' successes or failures. Isolating ourselves from the rest of the technology world doesn't help advancing the FOSS technology and community.

  13. Re:Just one quick trick ... on Facebook's New Anti-Clickbait Algorithm Buries Bogus Headlines (techcrunch.com) · · Score: 2

    Yes, but they'll probably just switch to click-bate images rather than click-bate headlines.. It is significantly more difficult to recognize click-bait images with computer algorithms...

  14. 6800 / 1.5 is 4533. .625 inch pipe. = 2833.33333333 inches expanded to ratio.

    Actually a 4533 ratio of hose cross-section area is equivalent to sqrt(4533) = 67.3 of diameter ratio. Therefore the 6.8Gbps hose would be 67.3 * 0.625 =~ 42 inches wide. Not very far from GP's estimate.

  15. RESOURCE!

    I agree with the article on that one. A word that is often used to dehumanize people.

    If a project is late, we can just "throw in more resources"!

    One of my co-workers was once told by the business product owner to get her application finished in unreasonable time. When he expressed his concerns, she basically told him that she would replace him any time with a bunch of "developers from the street" who would get the job done faster than him.

  16. Re: Double Standard on Syrian Government Hacked, 43GB of Data Spilled Online By Hacktivists (softpedia.com) · · Score: 1

    Please mod parent up.. I was born and raised in Syria, and lived there most of my life. Like parent, I'm tired of hearing misinformtion about Syria. Assad couldn't be any farther from being called Islamist. Not sure where GP got his information from. Assad regime is a secular repressive dictatorship. To portray the war in Syria as mostly religion motivated is a big distortion of the complex multidimensional situation. Many people who stood against the Assad regime are secular. Many of them ended up being in prison or even killed by that regime. I myself am an atheist and I'm against that regime. I do have a lot of muslim, christian, and athiest friends there who are equally opposed to that regime, and are calling for a secular democracy. Did the Islamist groups manage to get all the attention in the media? I think so. However, talking about the islamists as if there were all that exists there is a big distortion that only empowers the Assad and ISIL, while marginalizing the role of the moderate and secular groups that are calling for a secular democracy.

  17. Re:Misleading Headline on Microsoft's First Azure Hosted Service Is Powered By Linux · · Score: 2

    Right. Or something like: "The first Azure-hosted service to run Linux is powered by Ubuntu".. etc.

  18. Serious IE 11 Vulnerability is left out on Microsoft Fixes Critical Remotely Exploitable Windows Root-Level Design Bug · · Score: 1

    Apparently the update left out a serious universal XSS vulnerability in IE11 unpatched. Source
    Vulnerability Full Disclosure - 31 Jan 2015

  19. Re:A Simple Retort on WSJ Refused To Publish Lawrence Krauss' Response To "Science Proves Religion" · · Score: 1

    The nature of God is such that it cannot be proven. Otherwise, we lose the choice to believe.

    Belief is not a choice.

    For example, you don't have the choice to believe that you exist. You either believe that, or don't.

    If I wake up one day and say today I'm choosing to believe in the Flying Spaghetti Monster, I'd be just pretending to believe in Him. Of course if I actually truly believed in His Noodly Appendage, then I wouldn't have the choice to simply un-blieve in Him anytime I like. Otherwise I would just be pretending.

  20. First on Ashton Kutcher To Play Steve Jobs In Upcoming Film · · Score: 5, Funny

    of April?

  21. Re:Free market for the win on Will Firefox Lose Google Funding? · · Score: 4, Informative

    "There still isn't a fully functional equivalent of AdBlock Plus even"
    Yes there is... https://adblockplus.org/en/chrome

    From the same page you referred to:

    We are currently working on providing the same experience for Google Chrome as what you are used to from Firefox. Please keep in mind that we are not there yet and much work still needs to be done. There are also known Google Chrome bugs and limitations that need to be resolved.

  22. Re:They have to on Apple Threatens Bistro Over "AppleADay" Name · · Score: 3, Informative

    Applebee's logo is an apple, too. Their name contains an "apple". And they sell food just like AppleADay. Under the same logic, they have to threaten Applebee's too?!

  23. Re:Easy to remedy on MS Removes HTTPS From Hotmail For Troubled Nations · · Score: 5, Insightful

    Now explain to my grandmother, who just got her first email last week, how and why she needs to do that.

    On the other hand, the oppressive governments over there will LOVE that. It's probably even better than insecure FB or Twitter since everything ultimately goes to the people's emails.
    As someone from one the mentioned countries, I'd like to ask Microsoft, do you realize now you might be very well putting many people at a greater risk of being arrested or killed. People are being KILLED for expressing some of their opinions in some of these places these days.

    SHAME ON YOU MICROSOFT

  24. Re:But there's no status bar on Firefox 4 Beta 12 Released; Fixes Over 650 Bugs · · Score: 1

    OK, correcting myself in one point. My claim that the url popup was transparent turned out to so because of KDE Oxigen them I'm using with FF. Reverting to the default FF4b12 theme, the URL popup does hide the contents behind it.
    However, the other scenario I raised about fake links is still very plausible IMHO.

  25. Re:But there's no status bar on Firefox 4 Beta 12 Released; Fixes Over 650 Bugs · · Score: 1
    A malicious page can have a fake link - text that looks like a link, shows the URL on the bottom of the page using JS when mouse is over the fake link. FF won't hide that with its own popup since it's not a real link.
    I can also give more complex scenarios based on the fact that FF shows the URL transparently. (Think about floating

    with transparent or no background color). In other words it doesn't hide the page contents in the back.