Slashdot Mirror


User: cortana

cortana's activity in the archive.

Stories
0
Comments
2,628
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 2,628

  1. Re:ircd's and security on Freenode Network Hijacked, Passwords Compromised? · · Score: 1

    Fine, fine, XMPP rather than Japper. You might want to clear your pedantry bit, it seems to be stuck high. :)

    I don't buy that it's harder to adminstrate XMPP servers. I do it myself. IRC seems like a mass of horrible complexity to me. I suspect it is merely different.

  2. Re:My thoughts.. on Freenode Network Hijacked, Passwords Compromised? · · Score: 2, Interesting

    Forgive me, I don't know anything about IRC on the server side. But this would have been prevented if the server-to-server links used SSL, right?

  3. Re:ircd's and security on Freenode Network Hijacked, Passwords Compromised? · · Score: 1

    I think the most important point to be made is that IRC is shite, and we should all have moved to Jabber years ago. :)

  4. Re:spam on Freenode Network Hijacked, Passwords Compromised? · · Score: 1

    What are these messages everyone complains about? I have never recieved one.

  5. Re:one problem... on Freenode Network Hijacked, Passwords Compromised? · · Score: 1

    Without a signed communication instructing that these changes be made?

  6. Re:If you use PHP.... on PHP and Perl in One Script? · · Score: 1

    The worm has already written the file and called perl to interpret it long before you noticed and got there with your text editor.

  7. Re:If you use PHP.... on PHP and Perl in One Script? · · Score: 1

    The worm can unlink not_a_worm.pl after it executes perl.

  8. A tip for you on Updating the Computer, Circa 1969 · · Score: 1

    If you're going to drop ancient Greek into your posts to sound like an intellectual then you should make sure your grammar is correct. ;)

    Your use of the definate article is ugly and redundant. What you wrote translates into English as "... than the point-and-grunt interface of today's the people".

  9. Re:If you use PHP.... on PHP and Perl in One Script? · · Score: 1

    Erm, a non-conversation? If you want something that your host won't provide then take your money elsewhere!

  10. Re:If you use PHP.... on PHP and Perl in One Script? · · Score: 1

    An out of date practice. If a subverted process can write a file anywhere then it can save some perl/php/shell/python/scheme/etc code to a file and call the relevant script interpreter to run it.

  11. Re:OpenOffice and GNOME use CORBA. on The Rise and Fall of Corba · · Score: 1

    FYI, dbus 0.9 should be available soon. Ideally the API will be frozen at this point.

  12. Re:Watch out for CVE-2006-2193 on Google Earth v4 Released - Linux Support at Last · · Score: 1

    Hey, I didn't say distributing software was easy. Why do they distribute libtiff, libcurl, libjpeg and so on, though? They are fairly prolific libraries.

    I am waiting eagerly for the release of an updated version that fixes the security holes present in this version of Google Earth. ;)

  13. Re:Linux morons on Google Earth v4 Released - Linux Support at Last · · Score: 1
    DON'T BLOODY USE IT!
    Well, the people using architectures other than i386 don't really have a choice now, do they?

    I'm getting really sick and tired of the attitude of people like you. Of course it is Google's choice to release Google Earth in the form they have; but are those who want something else to be forbidden to ask for it?

    Some days this place gets almost as bad as Fox News. "If you don't agree with what the President does then you're at traitor who should get the hell out of my country!"
  14. Re:Its true, it is a binary. What should I do now? on Google Earth v4 Released - Linux Support at Last · · Score: 1

    FYI, it also installs two files outside of the installation directory: ~/.local/share/applications/googleearth.desktop and ~/.local/share/mime/packages/googleearth-mimetypes .xml. There might be more, I too trusted it and didn't bother using checkinstall or installwatch.

  15. Securid on Password Complexity in the Enterprise? · · Score: 1

    Get a bloody SecurID token (or similar) already.

  16. Watch out for CVE-2006-2193 on Google Earth v4 Released - Linux Support at Last · · Score: 3, Insightful
    $ strings ~/Apps/google-earth/libtiff.so.3 | grep Version
    LIBTIFF, Version 3.7.3


    From CVE-2006-2193:
    Buffer overflow in the t2p_write_pdf_string function in tiff2pdf in libtiff 3.8.2 and earlier allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a TIFF file with a DocumentName tag that contains UTF-8 characters, which triggers the overflow when a character is sign extended to an integer that produces more digits than expected in an sprintf call.
    While I doubt Google Earth will be calling this function, this goes to show the danger that users place themselves in when they run software that takes it upon itself to bundle together the libraries that it depends on.
  17. Re:Native? on Google Earth v4 Released - Linux Support at Last · · Score: 1
    I have heard that the system Qt crashes Google Earth for some other KDE developers
    I guess this is the magic of C++. :)

    Some day there will be a stable, final ABI for C++ applications. Until that day, vendors have to ship all the C++ libraries they depend upon themselves. :(
  18. Re:Its true, it is a binary. What should I do now? on Google Earth v4 Released - Linux Support at Last · · Score: 1

    Yes, it can crap all over your filesystem. You can use checkinstall to keep track of exactly what it changes though.

    Also, run the installer as a regular installer and you can be sure it's not touching anything outside of your $HOME.

    Even better, extract the files by hand and run them. :)

  19. Re:Big Daddy on Verizon to Launch Mobile 'Chaperone' Service · · Score: 1

    The Corps is mother, the Corps is father!

  20. Re:Ethereal anyone? on Microsoft Talks Daily With Your Computer · · Score: 1

    Some of us have more than one computer... :)

  21. Re:Ethereal anyone? on Microsoft Talks Daily With Your Computer · · Score: 1

    Kindly explain?

  22. Re:Ethereal anyone? on Microsoft Talks Daily With Your Computer · · Score: 1

    It could fall back to a hardcoded list of first hops including 192.168.0.1, 10.0.0.1, etc.

    Of course, MS could just silently update the software in the next security patch to make it use a covert channel, such as piggybacking the requests in the traffic to Windows Update.

  23. Re:Ethereal anyone? on Microsoft Talks Daily With Your Computer · · Score: 1

    iptables --table filter --append OUTPUT -d 207.46.0.0/16 -j DROP

  24. Re:Ethereal anyone? on Microsoft Talks Daily With Your Computer · · Score: 1

    Interesting, I don't remember DOS having a route command. Or any form of IP networking. But then, the last DOS I used was 3.3.

  25. Re:WTF? on Debian DPL Threatens to Leave SPI Over Sun Java · · Score: 1

    $ whois ubuntu.com ...
    Registrant:
      Canonical Ltd.
      One Circular Road
      Douglas, Isle Of Man IM1 1AF
      UK

    Looks like the Ubuntu guys to me.