Slashdot Mirror


User: CableModemSniper

CableModemSniper's activity in the archive.

Stories
0
Comments
1,528
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 1,528

  1. Re:Read the pdf again. on Hardware Virtualization Slower Than Software? · · Score: 1
    Graphics cards and hardware virtualization are not analogous. A software based VT can scan the binary for trapping instructions before it is run and change them to non-trapping instructions. This means that the slowdown from trapping instructions is proportional to the total number of actual trapping instructions in the image. (Pure) Hardware virtualization traps everytime it executes a trapping instruction.
    label:
    TRAP ; TRAP is transformed once at load time by software virtualization. It's transformed and trapped _every_ time it's called with pure hardware virt.
    ...
    GOTO label
    Remember this is virtualization, most of the instructions will run unchanged directly on the processor anyway.
  2. Re:Patch details on Major Security Hole Found In Rails · · Score: 1
    It's doubtful Rails would have a '../../etc/passwd' type bug since very few of the urls have any direct correspondence to the filesystem. (e.g. mail/send/1 executes the send method of an instance of the MailController class).
    But... the default setup for Rails (or at least, last time I played with it) is to map /controller/action/-style URLs for you, so if you managed to upload a Ruby file which just happens to contain your malicious subclass of ActionController, well, you'd pretty much own the site.
    Yes. But I was addressing the specific example of "reading file X". Anyway, the bug specifically involves the execution of ruby code in places like the script/ directory (e.g. script/profiler could cause a DoS). There is also apparently some way to cause dataloss. Link:http://weblog.rubyonrails.com/2006/8/10/rails -1-1-6-backports-and-full-disclosure
  3. Re:Patch details on Major Security Hole Found In Rails · · Score: 1

    Nope. $LOAD_PATH contains the directories Ruby searches for libraries (@INC in perl, I don't know the equivalent in Python). So I imagine it invovles executing some arbitrary ruby code, since Rails likes to automagically load stuff. (I always thought that was a bad idea, from a readability/understanding standpoint, now I see it's also a bad idea from a security standpoint).

    It's doubtful Rails would have a '../../etc/passwd' type bug since very few of the urls have any direct correspondence to the filesystem. (e.g. mail/send/1 executes the send method of an instance of the MailController class).

  4. Re:How few? on Major Security Hole Found In Rails · · Score: 1
  5. Re:Except.. on The Next Three Days are the x86 Days · · Score: 1

    Jesus died when he was 6 / 7 years old? Really? (Yes I know Jesus wasn't born 1 AD, but neither did he die as early as 6 AD or even 6 BC.)

  6. Re:Windows needs better acronyms on OSS on Windows the Next Big Thing? · · Score: 5, Funny

    PHP IIS SQL Server ?

  7. Fantasy is "Older" on Fantasy Trumps Sci-Fi For MMOs · · Score: 1

    The concept of a RPG has more "practice" with fantasy. What PnP RPG dominated when RPGs were first created? D&D (Note I'm not making any comments on the *quality* of said RPGs, D&D was the most popular). This led a ton of CRPGs based on fantasy concepts (yes there exist sci-fi CRPGs, but not nearly as many as the fantasy oriented ones), and when MMORPGs (and MUDs) were created these were the settings that people were familiar with. The industry has more practice solving "setting problems" in fantasy settings. There are a lot more precedents and examples in fantasy on how to solve these issues that MMORPGs can build upon. That is why it's easier.

  8. Re:Once you have X11 installed you can add ... on Best Developer Tools for OS X · · Score: 1

    Apparently the mods didn't read the article either. That's cool.

  9. Re:Once you have X11 installed you can add ... on Best Developer Tools for OS X · · Score: 1, Informative

    Did you RTFA? They mentioned Eclipse.

  10. Re:Negative Proof already... on Virtual Reality Gaming System Tests for Telepathy · · Score: 1

    Aha! You figured it out! Telepathy is being surpressed by the phone industry, so they can continue making money. Just like how the oil industry is surpressing alternative fuel sources, only the phone industry is much better at it.

  11. Re:Fad on Ruby For Rails · · Score: 1

    I'm pretty sure he was complaining about the "tight coupling" part, not the relational database part. You can't really use an AR oriented DB for anything but an AR app. Which is ok if you think of the DB as "magic persitance layer land" for my web app.

  12. Re:Good ideas, but not for all. on The Short Memory of Game Design · · Score: 1

    "Ernest was most recently employed as a lead designer at Bullfrog Productions, and for several years before that he was the audio/video producer on the Madden NFL Football product line. " ... Hmmmm I'll leave on that note. You can decide yourself on his opinions validity, oh and that's ALL the specific industry experience he gives.

    It's all the industry experience he gives?

  13. Re:Casual doesn't make as much money on Casual Gaming the Real Next Gen? · · Score: 1

    I would not consider you to be a casual gamer, rather I see you as a person who games occasionally. "Casual" doesn't mean "not often" (well it does, but I don't think that's the sense it's used with in the phrase "casual gamer") it means you don't go through a whole song and dance to play a game nor do you take it very seriously.

  14. Re:A standard tab length would be easier on Elastic Tabstops — An End to Tabs vs. Spaces? · · Score: 1
  15. Re:What a strange thing from IBM on Java Static Analysis And Custom Bug Detectors · · Score: 1

    One would think that out of all people, IBM staff would be familiar with the ATM or the Halting Problem.

    Just use a language that isn't Turing complete, and therefore can be guaranteed to terminate. http://www.e-pig.org/.

  16. Re:What is with that movie? on IBM using Napoleon Dynamite Quote to Encrypt Data · · Score: 1

    I saw the movie and recognized the quote. The movie was "totally retarded." The sad thing is that the "trendy" thing to do is like that piece of crap film.

  17. Re:What is with that movie? on IBM using Napoleon Dynamite Quote to Encrypt Data · · Score: 0, Troll

    Exactly. No one should be a fan of that movie.

  18. Must plug friends software on Good Software for Editorial Management? · · Score: 1

    I hear iWebpress has extensive features for managing assignments, deadlines, etc. http://www.iwebpress.com/

  19. Gamecube on The Story of the RedBerry · · Score: 1

    Does this mean I can submit my friends and mine gamecube to slashdot? It's got a two tone paint job and the controller ports have hotrod flames. We also changed the power led's color.

  20. Re:Ok, I was interested before but now.... on Wii-mote In Action · · Score: 1

    Nooo! Do it! Forget the monitor!

  21. Re:My question is... on Prototype System Blocks Digital Cameras · · Score: 1

    2. definitely exists. I've seen phones with this capability.

  22. Re:New technique? on A New Technique to Quickly Erase Hard Drives · · Score: 1

    RTFA. It is wiping hard drives using magnets.

  23. Re:GTAIV?!? on GTAIV to use Engine from Table Tennis · · Score: 1

    Rockstar did not invent this. Final Fantasy Tactics, Final Fantasy Crystal Chronicles, Final Fantasy Mystic Quest, Final Fantasy X-2. (Note to mention the american numbering, 1, 2, 3, 7 ...).

  24. Re:Shows what you know. on GNOME Reaches Out to Women · · Score: 0, Flamebait

    Karma Whore. The only woman in computing on this page (http://en.wikipedia.org/wiki/Women_in_computing) he didn't list was the one without an entry devoted to her. Also he spelled "Ada" incorrectly, which is totally unacceptable as it is both a woman and a programming language. Shows what you know indeed.

  25. Re:If they can do this... on Python-to-C++ Compiler · · Score: 1

    Python -> C++ is easier?