Slashdot Mirror


User: jimpop

jimpop's activity in the archive.

Stories
0
Comments
184
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 184

  1. > You need to know the application domain and all parts of it.

    I agree with that, 100%! I'm not doubting some of your statements, but you seem to be missing my main point. Forget fuzzing, type casting, tool sets, etc., I'm just arguing for purity in code as a better long term solution than post-processing object code.

  2. I believe you are misconstruing what I've been saying. Tools are great, but they are no replacement for good solid code. Complex systems, or not, shouldn't contain the coding errors (they aren't bugs) that this and other fuzzing tools do find. Having, and awarding for such tools, leads, I believe, to an ecosystem of acceptability for poor coding. The correct avenue is to audit code and correct bad habits....but that takes deep knowledge of C/C++.

  3. There is a vast difference between buggy code and poorly written code. The article and subject are about finding faults in poorly written code, which is something good programmers (and ones who are aware of a language's pitfalls and nuances) rarely produce. Testing is for finding bugs, rarely does testing involve analyzing code for purity.

  4. Many a tool builder has come along to build tools to overcome failures. Fuzzing, or whatever you call it, is just a poor man's method of finding errors (the real problem) in some code. Glorified greps.

  5. OMFG! on Facebook Awards Researchers $100k For Detecting Emerging Class of C++ Bugs · · Score: 1, Informative

    1) learn something that older people learned decades ago

    2) write document warning people, who ignored history..., of the dangers!!

    3) profit!

  6. Nobody.... on RNC Calls For Halt To Unconstitutional Surveillance · · Score: 0

    Nobody believes them anymore.... they just seem to do knee-jerk reactions to any and everything. Next thing you know the RNC will favor marijuana and homosexuality.

  7. Re:Just eastablish a new fork on Nagios-Plugins Web Site Taken Over By Nagios · · Score: 1

    > Nagios is a stupid name

    I Agreed, I always preferred NetSaint

  8. Re: True fact: on Why a Cure For Cancer Is So Elusive · · Score: 1

    Nope. It's sad, but modern medicine is more about the mercedes than the miracles.

  9. Re:True fact: on Why a Cure For Cancer Is So Elusive · · Score: 1

    > Appendicitis

      I'm not so convinced that that's a disease, although I imagine it's quite painful.

  10. True fact: on Why a Cure For Cancer Is So Elusive · · Score: -1

    It's more lucrative to treat a disease than it is to cure it.

  11. Re:That is the guy.... on Former Head of NSA Calls For Obama To Reject NSA Commission Recommendations · · Score: 1

    > Intelligence reports on a possible attack were made and not followed up on

    That pretty much sums it all up. I say prosecute *everyone* involved who failed to "follow up", as you say. If we're not going to prosecute them, at least do pay them "talking head" money, nor give credence to their words.

  12. That is the guy.... on Former Head of NSA Calls For Obama To Reject NSA Commission Recommendations · · Score: 5, Insightful

    ..who was on guard duty before 9/11.... why should anyone listen to him?

  13. Straws... on NSA Says It Foiled Plot To Destroy US Economy Through Malware · · Score: 1

    ...grasping for straws.

  14. Connectivity... on Google Opens Asian Data Centers But Shuns China and India · · Score: 1

    Singapore has EXCELLENT coverage to all of Asia (sans West Asia). From Singapore you can easily serve content to both India and China (with http://cablemap.info/ to see the pipes going into and out of Singapore. In 2015, Singapore will gain improved connectivity to Australia (APX West). Taiwan is similarly situated, albeit further from India/Pakistan/etc.

  15. Re: Hey look at us, we are still relevant! on Wikileaks Releases A Massive "Insurance" File That No One Can Open · · Score: 4, Informative

    Wikileaks has always stated they desire responsible disclosure.

  16. Who? on IAB Urges People To Stop "Mozilla From Hijacking the Internet" · · Score: 1

    Reality check: Who cares about companies hiding behind 3 letter names? AAF, ANA, DMA, IAB, NAI..... The internet was nicer before they came along.

  17. Re:Needs work on Experience the New Slashdot Mobile Site · · Score: 3, Insightful

    Dude, Thanks for fixing this. Awesome effort!

  18. Needs work on Experience the New Slashdot Mobile Site · · Score: 5, Informative

    When following a link to /., if I answer Yes to the pop-up prompt, i get redirected to http://m.slashdot.org/ and NOT the story I was linking to

  19. won't on Will Microsoft Sell Off Its Entertainment Division? · · Score: 0

    won't won't

  20. Still.... on Linus Chews Up Kernel Maintainer For Introducing Userspace Bug · · Score: 4, Funny

    ...a better love story than Twilight.

  21. Re:Flip side.... on Ask Slashdot: Dealing With Anti-Spam Service Extortion? · · Score: 1

    Rarely a FP, perhaps one a year. Like I said, I don't use them (or any RBL) to block, I do use them to aid in scoring.

  22. Flip side.... on Ask Slashdot: Dealing With Anti-Spam Service Extortion? · · Score: 2

    I'm a receiver, I use UCEProtect to score emails, they help to block a LOT of recent and bleeding edge spam. I don't have to pay them anything for their assistance.

  23. same... on Real World Code Sucks · · Score: 2, Insightful

    It's no different than business school examples vs real world practice.

  24. Re:Thanks Prez! on Ask Slashdot: Will You Shop Local Like President Obama, Or Online? · · Score: 4, Insightful

    ...like mandatory auto insurance regulations of the 80s....

  25. Re:He REALLY pissed off governments.... on UK Authorities Threaten To Storm Ecuadorian Embassy To Arrest Julian Assange · · Score: 1

    The UK could simply revoke the embassy permit, even for 30 mins.