Slashdot Mirror


User: steelfood

steelfood's activity in the archive.

Stories
0
Comments
4,426
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 4,426

  1. Forget the gasoline tank.

    There's motor oil lubricating your engine. It's very flammable.

    In fact, that's how car fires tend to start--spurting motor oil from cracked seals.

  2. Re:Agree with content, not the name on The Case For Teaching Ignorance · · Score: 1

    "the bigger the island of knowledge, the bigger the shore of ignorance".

    It's the opposite (sorta). The more you expand the shore of knowledge, the bigger the island of ignorance. The more we know and discover, the more we realize what we don't know and have yet to discover.

    And then there's the ocean of information around the island that in the famous (paraphrased) words of Donald Rumsfeld, you don't know you don't know.

  3. Re:oh, man. Prepare for another round. on Court: FTC Can Punish Companies With Sloppy Cybersecurity · · Score: 2

    That it would force people to write down the passwords in sticky notes and very cleverly paste it on the underside of the keyboard is not realized by the bozos, or if it did, it did not bother them.

    People keep trotting this out as if it was some horrible, boogeyman security practice.

    Quite frankly, it's probably better than any other security solution. After all, humans have spent thousands of years working on physical locks, while electronic ones (like passwords) have only been around for a few decades. And, physical security is another legitimate layer of security. Sure somebody can break into your work place and grab your passwords. But they'd actually have to be physically there. And the cops are much more likely (and able) to respond to a physical break-in than to some virtual intruder entering virtual storage.

    The worst thing that could happen would be to electronically store the passwords in plain text. You get neither physical nor electronic security. That should be discouraged.

  4. Re:Don't care about stun guns... on Do You Have a Right To Use Electrical Weapons? · · Score: 1

    That's easy. We'll just take away your sharks.

  5. Re:Makes sense on Another Wave of Publications Shut Down Online Comments · · Score: 1

    Sometimes, I wonder where the idea of putting comments at the bottom of an article comes from. It seems horribly inefficient from all perspectives except the commentator's, and a low barrier to commenting is counterproductive to any meaningful discourse.

    Whatever happened to forums?

  6. Re:Slashdot on Another Wave of Publications Shut Down Online Comments · · Score: 5, Insightful

    Slashdot's not a publication. It's a community with links to articles as topics of conversation.

    The raison d'etre of publications is producing articles and other pieces of content. The raison d'etre of Slashdot is the community and the discourse of other people's content.

    tl;dr: Without (an effective system for) comments there is no Slashdot.

  7. Re:Why is this on SlashDot? on Revisiting How Much RAM Is Enough Today For Desktop Computing · · Score: 1

    Simple: It's a slow news day. Editors need something to rile up the troops to make their daily impression quotas.

  8. Re:ALL THE RAMS on Revisiting How Much RAM Is Enough Today For Desktop Computing · · Score: 1

    ARE BELONG TO ME!

  9. Re:Probably just not optimized yet on Windows 10 Still Phones Home With Data In Spite of Privacy Settings · · Score: 2

    Stupidity is no excuse for doing bad things.

    Which is to say, this stuff should be fail closed, not fail open.

  10. Re:Way to encourage responsible disclosure. on 'Banned' Article About Faulty Immobilizer Chip Published After Two Years · · Score: 1

    Agreed. The "responsible" in responsible disclosure applies to both the researcher and the company. If the company is not responsible in their behavior towards the security hole, then there's no point in the researcher being responsible either.

    Companies that have a bad track record of responsibility should have their security holes publicized immediately. After all, if they don't take their product's security seriously today, there's no reason to expect them to take their product's security seriously the next time around.

  11. Re:Simple rule on Nintendo Fires Employee For Speaking About Job On a Podcast · · Score: 4, Insightful

    Even without an NDA, you'd be lucky if you didn't screw up somehow. Not only could you be revealing trade secrets, you could also misrepresent your company, or in the worst case, reveal insider financial or strategic information. Best to keep that line drawn, especially on a public forum.

  12. Re:SubjectsInCommentsAreStupid on The LibreOffice Story · · Score: 3, Insightful

    By imperfectly mimicking the old Office GUI, the LibreOffice GUI (and UI in general) ended up falling into the uncanny valley. It sort of looks like MS Office, but because it differs in subtle ways both visually and behaviorially, it's off-putting.

    If there's any OSS product that needs a UI redesign, it'd be LibreOffice. It'd be great if Mozilla could ship all their Firefox UI resources over, since it seems Firefox has so many choices they can't seem to decide which one to go with.

  13. Color Me Surprised on "Pixels" DMCA Takedown Even Worse Than We Thought · · Score: 1

    Guess who owns Columbia Pictures?

    You got it: Sony.

    It's yet another black mark for the company that can't seem to stop shitting all over their public image.

  14. Re:No-information voters on Internet Search Engines May Be Influencing Elections · · Score: 1, Interesting

    Maybe the more notable result of the study is that those who consider themselves moderate Republicans are easier to manipulate via selective informing. It explains the success of Fox News anyway.

  15. Re:Welcome to the new world? on Tesla Model S Has Been Hacked · · Score: 1

    You just increased your attack surface while offering marginal benefit. The increase in attack surface is certainly new.

    You're also paying additional for it, both during purchase (to recoup the manufacturer's R&D investment and for the additional physical components), and then afterwards as part of the car's maintenance. The additional costs associated with the additional components is also new.

  16. Re:Welcome to the new world? on Tesla Model S Has Been Hacked · · Score: 1, Interesting

    It's another attack vector, on top of all the existing attack vectors.

    The attack vector these electronics close is hotwiring under the dash. This kind of attack doesn't happen as much as you think. More likely, people go for the GPS unit or something other item that's left out in the open, or your wheels and other easily-accessible parts. Stealing whole cars is rarer, unless you've got some collector's piece, and stealing whole cars via hotwiring is very rare. For stealing whole cars, there's a lot of low-hanging fruit, namely people who forget to lock their doors, people who more than crack their windows, or people who habitually keep the keys inside their car. And people who do steal whole cars for a living (usually for getting to less-accessible but more expensive parts) will have the equipment to be able to gain entry anyway, so it hardly matters.

    The additional electronic security may close one or two attack vectors, but it doesn't close all of them, and certainly not the most important ones. So now the question becomes, is closing the one or two attack vectors worth the additional (literally) thousands of dollars worth of electronics as well as introducing an additional unknown quantity of electronic attack vectors?

  17. Re:External PDF viewer? on Mozilla Issues Fix For Firefox Zero-Day Bug · · Score: 1

    From hacker's news, it seems this exploit is in PDF.js. If you're not running PDF.js, there's no security hole.

  18. Re:Wait... on North Korea Is Switching To a New Time Zone · · Score: 1

    Their sun dials told them their time zone was off by half an hour.

  19. Re:Is it FIPS certified? on LibreSSL 2.2.2 Released · · Score: 1

    And you know what, if government red tape and paranoia against the people it was meant to serve has caused the government's systems to be more vulnurable to hackers from abroad, they got what was coming for them.

    I feel bad for the government employees who had their personal information compromised. I don't feel bad for having official correspondences and documents that otherwise would be encrypted exposed due to security holes.

    If the government wants their systems secure, they're going to have to work to make sure everybody's systems are secure.

    Of course, for those who don't know what I'm talking about, it's with regards to the NSA sabotaging standards and causing software bloat that results in unintended security holes (e.g. heartbleed).

  20. Re:Exploit for machines that are already compromis on Researcher Exploits 18-Year-Old Design Flaw To Compromise X86 Chips · · Score: 3, Informative

    This doesn't let an outsider break into the system; it is a flaw that only is useful if you have already compromised the machine.

    For a Windows machine, that's not a very high bar, especially in 1997 and all the way until... well, it's a little harder today, but not that much harder...

    The problem is persistence. If you get root, you can get firmware and nothing short of throwing the motherboard away would fix it. That's scary.

  21. Re:sneakernet on Ask Slashdot: Patch Management For Offline Customer Systems? · · Score: 1

    At the end of the day, the only way to update an airgapped machine is via sneakernet. USB, DVD, 3.5 floppy, it doesn't really matter. If you can beam an update into a machine via say, IR, it wouldn't be air-gapped.

    If you have an entire air-gapped network, then any normal package manager would work. Just have to update the server via sneakernet and push the patch out from there.

  22. Re:Cue the video going viral on Tesla's Creepy 'Solid Metal Snake' Robotic Charger Slithers Its Way Into Model S · · Score: 2

    Cue hack to create slow-motion tentacle porn in 5, 4, 3, ...

    You don't even need to modify the hardware to make it serviceable.

  23. Re:Fine, fuck 'em ... on Parts of SOPA Hiding Inside a Boring Case About Invisible Braces · · Score: 1

    Better question:

    If the film was released as a movie, who would serve a longer prison sentence, the killer or the guy who leaked it on TPB?

  24. Re:It's a word processor on LibreOffice 5.0 Released · · Score: 3, Interesting

    That's because MS Word and L/OO Writer are not word processors anymore. They're WYSIWYG document creation tools, i.e. they attempt to combine text input, text management, and document layout into one tool.

    Besides which, word processors aren't feature complete yet. Even advanced text-only word processors like Textpad and Notepad++ are constantly adding new features, and has a leg up on Word/Writer on things like search and cursor movement.

    And with persistent connectivity, there's a whole new layer of features for everyone to add.

  25. Re:We need an OS fix on Privacy Alert: Your Laptop Or Phone Battery Could Track You Online · · Score: 2

    Kill either the percentage or the time part of the spec and it won't be nearly as specific.

    And why the fuck is this shit in a markup language specification in the first place?