Slashdot Mirror


User: lindi

lindi's activity in the archive.

Stories
0
Comments
147
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 147

  1. Re:The hashes are salted (BUT NOT PROPERLY) on Ubuntu Forum Security Breach · · Score: 1

    Btw, the article you linked says it's actually md5(md5(password)+salt).

  2. Re:There is something wrong with EVERY browser on Backdoor Targeting Apache Servers Spreads To Nginx, Lighttpd · · Score: 4, Interesting

    From Debian 7 release notes:

    "Therefore, browsers built upon the webkit, qtwebkit and khtml engines are included in Wheezy, but not covered by security support. These browsers should not be used against untrusted websites. For general web browser use we recommend browsers building on the Mozilla xulrunner engine (Iceweasel and Iceape) or Chromium."

    -- http://www.debian.org/releases/stable/amd64/release-notes/ch-information.en.html#browser-security

  3. Re:BS Summary on Recovering Data From Broken Hard Drives and SSDs (Video) · · Score: 1

    Maybe they are selling 2 TB drives as 1 TB drives that keep a history of old data and then profit from the recovery services? ;)

  4. Re:Fork!!! on Java 8 Delayed To Fix Security · · Score: 2

    Openjdk has its own browser plugin.

  5. Are there any open source facebook clients? on Facebook's Android App Can Now Retrieve Data About What Apps You Use · · Score: 1

    Are there any open source facebook clients? Pidgin uses XMPP for facebook chat but it doesn't support "multi chat" and more importantly it does not let me read messages that I missed when I was offline.

  6. pagekite.net on Home Server On IPv6-only Internet Connection? · · Score: 1

    https://pagekite.net/ seems to be 36 EUR for one year.

  7. Re:What about Save As PDF on Firefox 19 Launches With Built-In PDF Viewer · · Score: 1

    CUPS-PDF is a hack. It requires the print server to be able to write files to your home directory.

  8. Re:What about Save As PDF on Firefox 19 Launches With Built-In PDF Viewer · · Score: 2

    At least in Debian the "print to file" option has offered PDF support for ages.

  9. Re:Administrators group on SSH Password Gropers Are Now Trying High Ports · · Score: 1

    The largest practical advantage is auditing in the case where you have multiple administrators.

  10. Re:Uh.. bandwidth? on Home Server Or VPS? One Family's Math · · Score: 1

    At least here (sonera.fi) the contract explicitly allows servers for "regular home usage".

  11. Re:Not in Debian on GNU Hurd To Develop SATA, USB, Audio Support · · Score: 1

    Afaik hurd-i386 has never been an official port. The only official non-Linux ports are kfreebsd-i386 and kfreebsd-amd64. -- http://www.debian.org/ports/

  12. Re:Good first step on New Secure Boot Patches Break Hibernation · · Score: 1

    When you sign an image you actually just first calculate a hash of the image and then sign that hash. It is easy to send the hash to the TPM. The key does not need to exit the TPM at any point.

  13. Re:Knowing someone who is infected is the conditio on Trojanized SSH Daemon In the Wild, Sending Passwords To Iceland · · Score: 1

    It would be nice if ssh could enforce this and refuse to connect if you try to break the policy.

  14. Re:Simples! on How Do YOU Establish a Secure Computing Environment? · · Score: 1

    * ROOT account: No logins, create another account which can only be locally logon to, which can sudo. Password 16 chars, potentially automatically rotating. Possibly also having 2 factor authentication. You can trivially create this step by even creating a PHP Script as the shell :)

    The only advantage of this is that it is harder to guess the username?

    * Watch logins: More than 2-5 failed logins, shut the system down immediately using "magic" SYSRQ, wrong username? Instantly

    Sounds like a nice way to disable your system remotely :)

    * Full disk encryption, on top of which potentially using a bit obscure filesystem to make it that much harder to break. The required data should have 2nd level encryption unless doing that creates a potential attack vector on the first level encryption

    How does the machine boot after a power outage?

  15. Re:Initialism on Ada 2012 Language Approved As Standard By ISO · · Score: 1

    Fortunately gcc has support for the expected style (using the -gnatyy flag).


    with ada.text_iO;
    use ada.text_io;

    procedure hello is
    begin
            put_line("hello world");
    end hello;

    fails with


    hello.adb:1:06: (style) bad casing of "Ada" declared at ada.ads:16
    hello.adb:1:10: (style) bad casing of "Text_IO" declared at a-textio.ads:48
    hello.adb:2:05: (style) bad casing of "Ada" declared at ada.ads:16
    hello.adb:2:09: (style) bad casing of "Text_IO" declared at a-textio.ads:48
    hello.adb:6:05: (style) bad indentation
    hello.adb:6:05: (style) bad casing of "Put_Line" declared at a-textio.ads:263

  16. Re:Anybody using Ada? on Ada 2012 Language Approved As Standard By ISO · · Score: 1

    I've spent two years porting Ada code from VMS to Linux. Overall it was a nice experience but compile times were horrible on our VMS system. Getting a syntax error after 15 minutes of waiting is kind of frustrating :)

    GDB support for Ada tasks was also pretty bad. I filed several bugs like http://gcc.gnu.org/bugzilla/show_bug.cgi?id=37245 .

  17. Re:Why so difficult? on Mozilla Dropping 64-Bit Windows Nightly Builds For Now · · Score: 1

    Windows? More like C.

  18. Re:Serious question time... on German City Says OpenOffice Shortcomings Are Forcing It Back To Microsoft · · Score: 1

    If you read the report carefully you notice that libreoffice generates invalid XML. I think that's pretty clearly a bug in libreoffice.

  19. Re:Serious question time... on German City Says OpenOffice Shortcomings Are Forcing It Back To Microsoft · · Score: 1

    Apparently it has better support for docx. https://bugs.freedesktop.org/show_bug.cgi?id=55820

  20. Re:If it wasn't for Oracle Unbreakable Linux on Oracle Makes Red Hat Kernel Changes Available As Broken-Out Patches · · Score: 1

    For an executable work, complete source
    code means all the source code for all modules it contains, plus any
    associated interface definition files, plus the scripts used to
    control compilation and installation of the executable.

  21. Re:Not GPL, and suitable for JIT on FreeBSD Throws the Clang/LLVM Switch: Future Releases Use LLVM · · Score: 1

    At least for me "lli" works much more reliably than "lli -force-interpreter" (that disables the JIT).

  22. Re:damn that would affect all.. on Nokia "Suspends" Its Free Developer Program · · Score: 1

    In openmoko circles it's know as WSOD (white screen of death) and occurs sometimes when resume fails :)

  23. Re:Ubuntu, too. on Developer Gets OpenSUSE Running On $249 Google Chromebook · · Score: 1

    At least in Debian it's only for amd64 i386 kfreebsd-amd64 powerpc

  24. way to see slashdot video with open source? on ARM Code for Raspberry Pi Goes Open Source (Video) · · Score: 1, Offtopic

    Sadly it seems the only way to see the video is to use the adobe flash plugin which is not open source. Is there some alternative trick that can be used to see the video with open source software?

  25. xpra is rootless on Wayland 1.0 Released, Not Yet Ready To Replace X11 · · Score: 1

    xpra does what you want.