Slashdot Mirror


User: Kristopeit,MichaelDa

Kristopeit,MichaelDa's activity in the archive.

Stories
0
Comments
26
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 26

  1. Re:Obligatory xkcd on Twitter Suffers Web Interface Exploit · · Score: 1

    it's such an obvious misstep, i have to believe it was intentional to make all their twits feel relieved that "the good folks at twitter fixed the virus"... they'll never know it was the incompetence of those same folks that the exploit existed in the first place

  2. Re:Again? on Twitter Suffers Web Interface Exploit · · Score: 0, Flamebait
    yes, but NEW SERVICES UTILIZING "core HTML/JavaScript" have their own syntax and internal interfaces... such as the t.co service EXPLOITED IN THIS CASE.

    you are so dumb.

    emphasizing sanitizing output allows you to keep the users originally provided input for reference. if you've never needed such a reference i'd argue you probably don't do this for a living.

  3. Re:what happens... on Canonical Designer Demos Ubuntu Context-Aware UI · · Score: 0, Troll
    because i'm capable of designing test cases likely to drastically fail user interface tests?

    you're an idiot.

  4. Re:what happens... on Canonical Designer Demos Ubuntu Context-Aware UI · · Score: 1, Funny
    can't let it be, can you, coward?

    i never said anything about feces or bestiality. someone else, likely you, pathetically and cowardly registered a username in my given name's likeness and attempted to hijack my identity and disrespect my wife.

    you are a coward.

    if you present yourself, and admit to these actions, i will kill you. this is a simple fact i'm sure you're aware of. i'm not a gun nut... i'm a man with a gun and a disrespected wife, hunting a coward.

    is this still the guy i got expelled from college? bitter about that child porn i reported to the dean that was on your student file server account? you've moved on to fantasizing about bestiality?

    you are NOTHING

  5. Re:Hosts file on Twitter Suffers Web Interface Exploit · · Score: 1

    can you prove there isn't exploit potential in the m.twitter.com interface?

  6. Re:Again? on Twitter Suffers Web Interface Exploit · · Score: 0, Redundant
    because the raw input should be stored in case additional sanitation processing is required in the future. re-sanitizing might not be feasible as new special characters were introduced to replace old.

    this is about sanitizing OUTPUT... there is probably someone in the company like you that handles output sanitation by completely ignoring it and doing all sanitation on the input side... then they are switched to a different team or a new feature is thrown in the mix that doesn't comply with the standards used in different teams... boom. billion dollar company looks like chumps. children playing on daddy's computer. certainly not to be trusted.

  7. Re:Obligatory xkcd on Twitter Suffers Web Interface Exploit · · Score: 2, Informative
    obligatory you're an idiot...

    the issue was with sanitizing database OUTPUT.

    little bobby tables wouldn't even allow such a trivially basic error like this to make it's way onto production servers.

  8. pure shame. on Twitter Suffers Web Interface Exploit · · Score: 1
    a web application allowing users to output html that can alter layout, or javascript that can be executed is such a giant fail, that twitter should seriously consider firing the highest members of it's management staff responsible for code architecture review.

    as is always the case, they'll claim it passed regression testing, so there was nothing they could do... but the simple fact is they failed at creating viable regression tests.

    this is kindergarten CS stuff... these are the developers the big name outfits are hiring? do they work in the US? did anyone check their resumes?

    this is pathetic

  9. Re:what happens... on Canonical Designer Demos Ubuntu Context-Aware UI · · Score: 1

    what am i doing wrong? i'm curious if the UI will do something that you or i would think was wrong.

  10. what happens... on Canonical Designer Demos Ubuntu Context-Aware UI · · Score: 0

    when you lean forward then back then forward then back repeatedly while hiding an arm between your legs?

  11. Re:what about LATENCY? on Codec2 — an Open Source, Low-Bandwidth Voice Codec · · Score: 1
    he later said it took .06 sec to encode and .04 sec to decode the 3.75 sec sample.

    do those numbers mesh?

  12. Re:what about LATENCY? on Codec2 — an Open Source, Low-Bandwidth Voice Codec · · Score: 1
    i don't mean to be rude, but how about you just make an audio recording of you live streaming from one machine to another? a video maybe? do you have a digital camera that can take videos?

    1 picture... 1000 words, and such. i could have made a video of this comment and uploaded it to youtube faster than i could type and post it.

    i understand latency might not be an issue for the intended application, but developers choosing which codec is best for their own applications will certainly require initial response delay and continued latency numbers to make informed decisions.

  13. Re:what about LATENCY? on Codec2 — an Open Source, Low-Bandwidth Voice Codec · · Score: 1
    i agree latency SHOULD NOT be an issue. my issue was determining IF latency IS an issue.

    bruce has stated a .1 second total codec processing time on the 3.75 sec audio sample. i don't know what that means for response times, or how they change with longer or shorter or streaming audio samples. what happens if a stream is interrupted? how many frames are lost? is there a noticeable audible byproduct of lost or damaged data?

  14. Re:what about LATENCY? on Codec2 — an Open Source, Low-Bandwidth Voice Codec · · Score: 0, Flamebait

    i was never worried. you're an idiot.

  15. Re:The last 25% on BP Permanently Seals Gulf Oil Well · · Score: 1

    heavy or not at all

  16. Re:security is built in the application, not platf on Security a Concern As HTML5 Advances · · Score: 1
    the policy of a computer letting a user do EXACTLY what they want to do CAN NEVER BE "WRONG".

    you're a presumptuous IDIOT.

  17. Re:security is built in the application, not platf on Security a Concern As HTML5 Advances · · Score: 1
    [citation needed]

    you're an ignorant hypocrite.

    until you provide a SINGLE PROVABLE FACT, you are NOTHING

  18. Re:Cool on PostgreSQL 9.0 Released · · Score: 0, Flamebait
    coward.

    you are NOTHING

  19. Re:Really early latency figures on Codec2 — an Open Source, Low-Bandwidth Voice Codec · · Score: 1
    yeah, this is what i'm trying to figure out... sally says "hi"... how long until bob hears her.

    .1 seconds does bode well for an eventual lower level implementation. 3.85 seconds and you might as well trash it, but i'm almost certain that isn't the case as the phrase "real-time" was thrown out a few times.

  20. Re:The last 25% on BP Permanently Seals Gulf Oil Well · · Score: 1

    ur mum's face amuse me

  21. Re:security is built in the application, not platf on Security a Concern As HTML5 Advances · · Score: 1

    if the spec says USER A can choose to allow HOST A to interact with HOST B using USER A's secure credentials... and your only argument is that such a policy is not a "valid security policy"

    Which is why it's an issue with BOTH the spec and the implementation.

    NO, you gimpy idiot. it's why YOU BELIEVE there is an issue.

    there is no implicit exploitable security flaw in allowing a user to have a system do what they wish of it. the max OS X interface allows me to enter a "Speak Text" dialog... i could put my password in and everyone in earshot would know it. does that mean it's an issue with the OS?

    NO. it means you're an idiot.

    SUCK MY TOES.

  22. Re:what about LATENCY? on Codec2 — an Open Source, Low-Bandwidth Voice Codec · · Score: 2, Interesting
    yes, of course... but "refining" a codec for hardware implementation is doing the exact opposite to the quality of the signal.

    why not refine the a DSP chip architecture until it works well with the original codec? i know masks are expensive... but why not do it all the way?

  23. Re:The last 25% on BP Permanently Seals Gulf Oil Well · · Score: 1
    perhaps your mother prefers when i post using fresh accounts with my given name to make apparent the flaws of building systems of control that limit the potential of 1 user, but don't limit the ability of 1 person to create and function as multiple users.

    you are NOTHING

  24. Re:security is built in the application, not platf on Security a Concern As HTML5 Advances · · Score: 1
    not a SINGLE fact.

    you are NOTHING

  25. Re:what about LATENCY? on Codec2 — an Open Source, Low-Bandwidth Voice Codec · · Score: 2, Interesting
    it could take 16MB/s and still function in real time over the internet for me... my problem isn't that the latency wasn't shown, it was that the bitrate WAS shown BUT the latency wasn't shown.

    also, considering the advantages of using lower bitrate voice codecs, the ability to implement the encoder and decoder algorithms directly in very low transistor count custom hardware would appeal to the same crowd... so not just latency in terms of x86 instructions per second, but the ability to implement those instructions in hardware.

    i am concerned about bruce's use of the term "real time"... either he is implying there is no noticeable latency to him, (which is irrelevant to me as numerous others claim skype video chat is "real time", and also impossible given the implicit time consuming process of encoding), or he's cleverly stating that the time it takes to encode is the real time it takes to encode. it's not the fake time. it's real time.

    again, i assume, and it seems i'm correct to do so, that the codec is "very usable"... i won't be trying it as i have no need for it.