Slashdot Mirror


User: Adrian+Lopez

Adrian+Lopez's activity in the archive.

Stories
0
Comments
1,026
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 1,026

  1. Re:Not MITM on Ask Slashdot: Does Your Employer Perform HTTPS MITM Attacks On Employees? · · Score: 1

    "If you are on a company computer, prove they don't have a keylogger on it?"

    Prove that your personal computer doesn't have one. Unless you've personally reviewed all the code and circuitry that could possibly be used for such a purpose, I shall not believe you.

    "When the end cert is presented by an unknown party, it's a MITM."

    It's a MITM when it's done by any party, known or unknown. If the data is being decrypted and captured as it flows between the endpoints of an HTTPS connection, the party doing so is a Man in the Middle.

    "When it's done by the computer owner, under explicit ToS you agreed to, what's the complaint?"

    Whatever the complaint, it involves the fact that "agree to" and "agree with" are different concepts.

  2. Re: Not MITM on Ask Slashdot: Does Your Employer Perform HTTPS MITM Attacks On Employees? · · Score: 1

    "Trusted by the people who own the computer."

    As opposed to those whose use it. Those whose information is being encrypted to supposedly protect against interception.

  3. Re:Not MITM on Ask Slashdot: Does Your Employer Perform HTTPS MITM Attacks On Employees? · · Score: 1

    "and most proxys have ssl passthrough for banking and health..."

    Except, of course, for websites not recognized by the proxy as containing "banking" or "health" information.

  4. Re:Not MITM on Ask Slashdot: Does Your Employer Perform HTTPS MITM Attacks On Employees? · · Score: 4, Informative

    A trusted proxy is a "Man in the Middle", so I presume your objection is to the word "attack"? Whatever you choose to call it, the fact is that SSL certificates are transparently being rewritten in order to capture data each website's SSL certificate was meant to stop from being captured. "Trusted proxy" is just a friendly euphemism which attempts to justify what may or may not be a legitimate practice, depending on what's being collected and whether or not the users are, in fact, specifically aware of it.

  5. Re:not in use? on Woman Attacked In San Francisco Bar For Wearing Google Glass · · Score: 3, Insightful

    Sadly, the law in most areas says no expectation of privacy in public places which includes at a bar.

    Why "sadly"? You're out where anyone can see you. This includes artificial eyes like camera lenses and sensors. The "reasonable expectation of privacy" doctrine is a strength, not a fault.

  6. Re:Not quite Jesper. on German Court Forbids Resale of Valve Games · · Score: 1

    "Yes and no. I am pretty sure the only reason BD/DVD/CDs can be transferred us because local law grants consumers that right."

    It's the other way around: I can transfer BD/DVD/CDs because local law does not prevent me from doing so.

    "The fact that physical media and manuals accompany the product is not sufficient to grant you the right to transfer the license UNLESS laws specifically grant you that right."

    Again, it's the other way around: Attaching a license to a product does not in any way restrict my actions unless the law recognizes that license as valid and binding.

  7. Re:Bad ruling on German Court Forbids Resale of Valve Games · · Score: 1

    "It is buying a non-transferable digital copy, subject to the terms of the license."

    That's your interpretation. Whether or not the courts agree is a different matter.

  8. Re:Bad ruling on German Court Forbids Resale of Valve Games · · Score: 2

    In this sense Valve does not engage in "fraudulent advertising" because it is well understood that they sell licenses, not complete copyrights for software products. Or in other words: You buy a right to use the software in a limited way, you do not buy the complete copyright and full intellectual property. And giving your license to someone is really noting more than handing them proof that you are the rightful user of said license. The license itself is not transferred.

    You are operating under the false assumption that buying software means either buying a license to the software or buying the right to make copies and derivatives of that software. There is actually a third choice: buying copies of the software. When you buy a disc for a game console you are free to play, lend, and resell it without permission (see the "first sale doctrine"). You are buying a copy, and the right to use that copy is implied; it requires no explicit license.

    So... is buying a game on Steam like paying for a license, or is it more like buying a copy? Valve wants us to think it's a license, but it sure does feel a lot like purchasing a copy at the point of sale.

  9. Re:First amendment on DOJ Announces New Methods For Reporting National Security Requests · · Score: 1

    ... fire in a crowded theater and all that. That's not just an expression, it was actually used by a justice in a Supreme Court ruling.

    And a very bad ruling, at that. Find out why.

  10. Re:First amendment on DOJ Announces New Methods For Reporting National Security Requests · · Score: 1

    This has baffled me. I know you can be held accountable for yelling fire in a crowded theater. But even then, the act of yelling fire in a crowded theater is not illegal itself. Just the deaths as a result of yelling fire can be attributed to the yeller.

    Anytime someone mentions fire in a crowded theater, I think of this:

    http://www.youtube.com/watch?v...

    "Fire, fire, fire, fire. Now you’ve heard it. Not shouted in a crowded theatre, admittedly, as I seem now to have shouted it in the Hogwarts dining hall. But the point is made. Everyone knows the fatuous verdict of the greatly over-praised Justice Oliver Wendell Holmes, who, when asked for an actual example of when it would be proper to limit speech or define it as an action, gave that of shouting “fire” in a crowded theatre.

    It’s very often forgotten what he was doing in that case was sending to prison a group of Yiddish speaking socialists, whose literature was printed in a language most Americans couldn’t read, opposing Mr. Wilson’s participation in the First World War, and the dragging of the United States into that sanguinary conflict, which the Yiddish speaking socialists had fled from Russia to escape. In fact it could be just as plausible argued that the Yiddish speaking socialists who were jailed by the excellent and greatly over-praised Judge Oliver Wendell Holmes were the real fire fighters, were the ones shouting fire when there really was a fire in a very crowded theatre indeed."

    People offer it as an example of the limits of free speech, all the while completely unaware of the saying's origin.

  11. Re:Cry me a fucking river... on Man Jailed For Refusing To Reveal USB Password · · Score: 1

    They also accounted for warranted searches. It's not self-incrimination to surrender your shed keys when you've got a naked co-ed chained inside.

    A key is a thing I have, not a thing I know. That may be enough to make the difference. Actual knowledge of the co-ed's presence can also make the difference.

  12. Re:Cry me a fucking river... on Man Jailed For Refusing To Reveal USB Password · · Score: 1

    "He knew the password, the police had probable cause, and he intentionally impeded an investigation. I can't speak to British legal procedure, but in America that'd almost certainly be enough to be charged with obstruction of justice."

    You're wrong about America. The law is far from settled, but in some jurisdictions probable cause is hardly enough to compel a suspect to reveal an encryption password. Actual knowledge of the drive's contents may be necessary to compel a person to decrypt it, as otherwise it would violate the suspect's right against self incrimination.

  13. Re:Misleading title on Court Rules Against Online Anonymity · · Score: 1

    Yelp's terms of service are irrelevant. Public statements against public figures aren't libelous unless they are false. Factual statements made by non customers are factual by definition. False statements made by customers are likewise necessarily false. The libel is in claiming something happened that never did. It doesn't matter whether the person who wrote it was a customer.

  14. Re:Why so much butthurt? on Justine Sacco, Internet Justice, and the Dangers of a Righteous Mob · · Score: 2

    Humans get a dopamine boostfrom being outraged and feeling morally superior.

    I bet it's good to know you are better than all those people.

  15. Re:Why so much butthurt? on Justine Sacco, Internet Justice, and the Dangers of a Righteous Mob · · Score: 1

    Well there is this thing in legal theory called "standing".

    It's a good thing we don't need standing to express ourselves in public.

  16. Re:Jurisdiction on Hotfile Settles With MPAA, Drops Countersuit Against Warner Bros · · Score: 1

    [International agreements], exactly, is what gives.

    OK, but aren't such agreements usually limited to those specific terms which signatories agree to incorporate into local law?

    Do these agreements instead create a situation where US copyright holders can sue in the United States without regard to what the law says in the defendant's place of residence?

  17. Jurisdiction on Hotfile Settles With MPAA, Drops Countersuit Against Warner Bros · · Score: 5, Interesting

    How does a US federal court gain jurisdiction over a company located in Panama?

    A ruling prior to this settlement held that Hotfile could be subject to vicarious liability for failing to comply with the DMCA (they allegedly ignored a bunch of DMCA takedown requests and failed to shut down a bunch of accounts despite repeat infringements), but the DMCA is US law, not Panama law. Unless copyright is somehow a special case (due to, say, international agreements), I fail to see why Hotfile should be subject to US copyright law anymore than US companies should be subject to Chinese or Iranian censorship laws.

    What gives?

  18. Brief time window? on Intelligence Officials Fear Snowden's 'Doomsday' Cache · · Score: 1, Interesting

    "The passwords ... are valid for only a brief time window each day, they said."

    How does that work?

  19. Stealing math from the public on Jury Finds Newegg Infringed Patent, Owes $2.3 Million · · Score: 1

    Something's rotten in the state of Texas.

  20. Re:Video only? on Legislation Would Prohibit ISPs From Throttling Online Video Services · · Score: 1

    "In the real world if I walked into a jewelry store and stole a $3,000 Rolex and offered the owner $100 for the watch, I would be guilty of shoplifting."

    Thank you, Captain Obvious, for letting us know that if you stole a watch you'd be guilty of shoplifting.

  21. Re:Video only? on Legislation Would Prohibit ISPs From Throttling Online Video Services · · Score: 1

    "If you want a dedicated connection with a 1:1 contention ratio you're going to have to pony up more than $50/mo."

    There's a difference between the natural degradation of signal due to demand and the intentional throttling of bandwidth according to content, IP address, or protocol. The problem is not contention, but neutrality.

  22. Re:Video only? on Legislation Would Prohibit ISPs From Throttling Online Video Services · · Score: 1

    No rational person would claim the coffee shop has to provide more than 300 gallons of coffee to a single customer.

    No rational person would think a person can drink 300 gallons of coffee in a single visit. However much a person might drink outside your silly imaginary world, however, the coffee shop damn well better deliver.

  23. Re:Video only? on Legislation Would Prohibit ISPs From Throttling Online Video Services · · Score: 2

    "With the ISP I work for currently, 0.1% of our customers cost us 50% of the bandwidth. It isn't right that a few punks think they can try to destroy service for everyone else with what looks like an attack."

    It isn't right to advertise high speeds only to cripple people's connections for making full use of the advertised bandwidth. If you can't deliver on what you promise, stick to promising 28.8 kbps and see how that works out for you.

  24. Re: Fine. on French Court Orders Google To Block Pictures of Ex-F1 Chief Mosley · · Score: 1

    Google not in France Not obligated to do shit for the Frogs Court orders, Just ignore them.

    Google does have a French subsidiary, which places them under French jurisdiction. A bigger problem is the fact that Google has been ordered to block the images worldwide. Whether France has the authority to do that or not, I have no idea.

  25. Re:How about the old design? on Come Try Out Slashdot's New Design (In Beta) · · Score: 1

    "Anyway we can go back to 2001 or so with the design?"

    Here you go. There's also 1998?