Slashdot Mirror


User: mwilliamson

mwilliamson's activity in the archive.

Stories
0
Comments
339
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 339

  1. Re:gpg/pgp encryption on Intern Loses 800,000 Social Security Numbers · · Score: 1
    Dear Congress,

    Please enact a law requiring that each and every use of our SSN be verified by the assignee (by phone, in-person, etc) of the SSN. Force the credit-granting agencies to verify before granting credit in such a way that the verification could only be used one time, for a limited time frame, for a set amount of credit to extend. Write the law in such a way that the credit issuer and credit agency are responsible for any un-verified credit and not the holder of the SSN.

    This will undoubtedly stir opposition amongst the credit-industry lobbyists, but please remember you work for us, not them. We expect adequate protection and this very simple process would provide just that.

    Thank you for your time.

    Michael S. Williamson

  2. gpg/pgp encryption on Intern Loses 800,000 Social Security Numbers · · Score: 1

    For a good portion of my database backups that may or may not contain confidential information, I tar, compress and encrypt with gpg my backup data files before they get put into a directory archived by by our automated tape library. I don't have to trust who has the tapes, and who is going to carry them off-site during our next hurricane threat. I clocked gpg on a fairly modest Dell 2950 server at about 10 megabytes / second. If you need more, there are hardware-based accelerator cards available.

  3. long live OpenVPN, captcha-enabled crypto on Deep Packet Inspection and Net Neutrality · · Score: 1

    To hell with anyone wanting to look at my payload.

  4. pay to get on public property?!?!? on Get Ready For the High-tech Beach · · Score: 0, Redundant

    As a Texan I must say I would NEVER pay for my RIGHT to be on PUBLIC PROPERTY. I can see paying to bring my car along with and I have no problem with that, but to change people to be on the beach is an outrage.

  5. mice! eeek! on Optimum Copyright Period Decided by Math · · Score: 1

    I thought the life of copyright was determined by the age of a sketch of some stupid mouse ears.

  6. Re:VirtualBox performance on Desperately Seeking Xen · · Score: 1

    Does that same argument apply to VMWare too then? (for their product that allows you to fully virtualize non-modified operating systems on non VT/SVM hardware)

  7. Re:Need a special processor on Desperately Seeking Xen · · Score: 1

    VirtualBox doesn't require any special hardware.

  8. VirtualBox performance on Desperately Seeking Xen · · Score: 2, Interesting

    It seems that VirtualBox.org's product, fully virtualizing a copy of XP on my non-VT machine under a linux host OS, totally runs circles around Xen even on VT hardware as far as performance is concerned. Integration into the host enviroment is also quite beautiful. Why is there seldom a mention of VirtualBox in this arena?

  9. Re:Probably Red-Tape on Dell Refuses to Sell Ubuntu to Business · · Score: 1

    sue Dell in small claims court. The click through EULA that mandates arbitration needs to be challenged anyway as is total bullshit.

  10. Don't aim that thing at me! on MIT Wirelessly Powers a Lightbulb · · Score: 0, Offtopic

    Please, for the love of all that as good, don't point that thing at my nuts.

  11. Re:Perfectly reasonable on Student in Court Over Suspension For YouTube Video · · Score: 1

    It looks to me like she had absolutely no control whatsoever of her class and was being walked over by her students. The suspension was well deserved, not just for the libel, but for the behavior in class. These little brats need to show some respect. I've had a boss in the distant past who was an asshole, and had I done the same to him I'm sure I'd of been fired pretty damn fast.

  12. but I erase it! on Driver's License to be the Next Debit Card · · Score: 1

    I always make it a point to erase that stupid mag stripe. I'm not gonna make a cop's job any easier.

  13. Re:Unslashdotted links on Student Arrested for Making Videogame Map of School · · Score: 1

    http://www.fortbendnow.com.nyud.net:8080/news/2847 /chinese-community-rallies-behind-student-removed- from-clements-over-pc-game-map Coral Cache DCN is supposed to be the anti-slashdot effect tool. Try the above hyperlink. It should get much faster after a few people hit it.

  14. Get a CryptoPhone on Italian Phone Taps Spur Encryption Use · · Score: 4, Informative

    It looks like a firm in Germany already offers a AES-256 bit encrypted mobile and POTS phone, as well as a softphone. Although their hard phones aren't cheap, the softphone is free to give to your contacts. http://www.cryptophone.de They alse include source code for "full independent review" with their products.

    Similarly, Phil Zimmermann, the creator of PGP has released his Zphone to make encrypted VoIP calls. Also, the Asterisk project offers an encrypted IAX channel.

  15. Revokation of Biometrics on Home Secretary Requests Fingerprint-Activated iPods · · Score: 5, Insightful

    One of the biggest problems with biometric authentication is the lack of ability to revoke a compromised biometric key. Sure you can revoke rights based on a fingerprint, but then you've no way to use it again. Lifting fingerprints with gelatin isn't really that hard. See http://www.schneier.com/crypto-gram-0205.html#5 for more information on the gummy-bear fingerprint reader bypass technique.

    Personally, I think biometrics are great as a username equivalent, but should not be relied on for authentication. There is sound reason to have (1) something you have with (2) something you know in a good authentication system. The ability to revoke and re-generate either component is needed.

    -Michael

  16. Re:The US navy is ready! on New Submarine Cable Planned Between SE Asia and US · · Score: 1

    I sure the hell wouldn't want to be the poor tech who cuts that thing open. That's a really long haul for the DC current that runs the inline amplifiers. I bet it's in the tens of thousands of volt range. Tapping something like that wouldn't just be hard, it would be quite dangerous.

  17. Re:HEMP on First Successful Demonstration of CO2 Capture Technology · · Score: 1

    puff puff pass

  18. Re:No Servers! on Ohio University Blocks P2P File Sharing · · Score: 1

    By the same definition you'd have to call a voip phone a server because it can answer an incoming call.

  19. Re:Skip the blogspam on Exhaustive Data Compressor Comparison · · Score: 1

    CoralCDN, the poor man's slashdot effect countermeasure.
    http://www.techarp.com.nyud.net:8090/showarticle.a spx?artno=4&pgno=0

  20. Re:Use TrueCrypt! on Safeguards For RIAA Hard Drive Inspection · · Score: 1

    Mod parent up...I can't spell magnatune. It seems magnitune redirects to magnatune anyway, so I guess this is why I never noticed.

  21. Re:Use TrueCrypt! on Safeguards For RIAA Hard Drive Inspection · · Score: 1
    Uh, I'd pick choice 2. I'd decrypt the volume which would have a few files in it and otherwise appear mostly empty. There would be no way to detect or prove the existence (or non-existence) of another encrypted volume within the first volume. End of story...and yes, you'd have to lie if asked if there was another volume contained within, but it would also be a very safe lie to tell, assuming you don't have something stupid like external references to stuff in the inner volume.

    -Michael

  22. Re:Use TrueCrypt! on Safeguards For RIAA Hard Drive Inspection · · Score: 1

    Truecrypt leaves behind no sort of "signature" that would identify data as being a TC volume in the first place. It also initializes every volume with random data to begin with. There is simply nothing to look for. However, one would need to be careful with playlists and history files and the like that might point to mountpoints for the volumes. That might be a bit harder to explain in court.

  23. Use TrueCrypt! on Safeguards For RIAA Hard Drive Inspection · · Score: 5, Informative

    Assuming you really do have something to hide, using an encrypted volume embedded within another encrypted volume could be very useful. TrueCrypt supports nested encrypted file systems and since TrueCrypt uses no headers to demarcate its volumes, it is not possible to determine if an additional volume is embedded within a TrueCrypt volume. In effect, it provides plausible deniability of the existence of a 2nd embedded volume if you're forced by court order to decrypt the main volume. (stick some Creative Commons licensed mp3 files in the main volume though, just to throw the RIAA the middle finger a little more.)

    Better yet, support non-RIAA artists at sites like Magnitune. The quality of music I've found there is proof positive that the RIAA no longer has a legitimate purpose in the music industry.

    My tips for installing TrueCrypt on Fedora Core 6.

  24. par2 on Digital Media Archiving Challenges Hollywood · · Score: 1

    Mix in some redundancy and use RAID-like computations to recover bad segments of tape. The pirate world has had this solved for quite some time.

  25. Re:Turbotax Issues on Turbo Tax Melts Down on Tax Day · · Score: 1

    Dude, $480...lets say I can manage %10. That's 48/12, or $4/month over the span of 3 months. We're talking about a $12 difference. If I expected a significant refund I'd of had a little more motivation.