Slashdot Mirror


User: Anaerin

Anaerin's activity in the archive.

Stories
0
Comments
388
First seen
Last seen
Profile
(view on slashdot.org)

Comments · 388

  1. Re:Speaking as someone who has worked on Retail si on Ask Slashdot: Why Do Firms Leak Personal Details In Plain Text? · · Score: 1

    And it's not a "chicken and egg" problem. It's a "Microsoft Outlook and Exchange refuse to support it builtin with a publicly usable technology", so major companiess are simply not going to do it by default.

    Microsoft Outlook and Exchange have supported S/MIME (Publicly-usable technology) out-of-the-box since at least Outlook 2000. So please stop trying to Microsoft-bash here.

    Oh, and I have heard of "Carnivore". I've also heard of ECHELON and the Illuminati. If the government wants my address, there are a LOT easier ways of getting hold of it. The IRS, for example (as you seem to be using the US government), or the census bureau. Please adjust your tin-foil hat, or better yet, remove it completely, as it only helps the mind-control rays work.

  2. Re:encrypted email is not standard on Ask Slashdot: Why Do Firms Leak Personal Details In Plain Text? · · Score: 1

    Why would anyone use RFC1149, when it's been essentially superseded by RFC2549? I mean, really!

  3. Speaking as someone who has worked on Retail sites on Ask Slashdot: Why Do Firms Leak Personal Details In Plain Text? · · Score: 4, Insightful

    Generally speaking, retail sites (Ones who have the really important information, like credit card numbers and the like) also only store hashed passwords. So asking for a password will get you a temporary link e-mailed (usually requiring further security questions) to set a new password. Other personal information, your name and e-mail address, are not considered worth securing, as you automatically send them out with every message you send, and all your mail is invariably addressed to you with your full name by your other contacts.

    Postal addresses are generally something of a grey area. On the whole, they're not particularly secured (Anyone who was determined to find out could find your address from the phone book, electoral roll, or other public list). Credit card numbers are typically secured by removing/obscuring all but the last 4 digits, and items ordered are again typically treated as "Better to include with a receipt, as a double-check, than to exclude".

    There is, as always, a fine balance in the "Privacy is required" to "more information is better" debate, but leaving that aside, while SMTP is a plain-text transfer medium, it generally requires quite a lot of work to actually get someone's details. For instance, you have to:

    • Poison a DNS record for a particular host (To point mail traffic at your server), or somehow spoof an IP address/routing record on the open internet

      Note, this will have to be done for the SMTP server(s) of the particular provider's message you want to intercept

    • Intercept the particular mail message you want (There's going to be a lot of mail coming through, most of it inconsequential)
    • Forward all the mail you've received on to the correct host (Which will be tough if you've grabbed their IP address(es)).

      If you don't do this, the provider will quickly notice they're not getting mail anymore and try to find out why, which'll get you discovered quickly

    • Find some way to actually use the mostly useless information you have gleaned.

      So Mr. John Smith lives at 1234 Anyroad, Someville, KY, and bought a can of compressed air and a USB mouse... So what? Start flooding him with ads for compressed air products? Offer him hot USB on PS2 action from waiting serial mice in his area? That'll get you some sales... NOT. Oh, and you can buy that kind of information already, from his credit card company or bank (who make a very nice profit selling those details anyway) for considerably more cheaply and easily than poisoning the entire internet.

    This isn't easy, or practical. Sure, if you want to, you can do it, but what is the point? If you're stalking them, there's much easier methods (going through their trash, trawling public records, google searching their name). If you're selling to them, there's easier ways (Buying details lists from credit bureaus, mass mailing).

    The problem of secure e-mail has been around for a long time, and many solutions have been proposed for the problem (S/MIME, PGP, Domainkeys), but it's largely a chicken-and-egg problem - Secure mail systems are not universally supported, so it's not used/Secure mail systems aren't used, so they're not supported. Solving this problem is left as an exercise for the reader. Obviously.

  4. Re:CSS is Awesome on CSS Zen Garden Turns 10 · · Score: 3, Funny

    Burn him!

  5. Hardly groundbreaking discoveries on In Iceland, Tap Cellphones To Avoid Incest · · Score: 1

    If you go back far enough, you'll find that you are related to Charlemagne, or Ghandi. The higher you go up your family tree, the more parents, and parents' parents appear, in an (almost) exponential spread. Well, unless you're part of the royal family, or in the deep south of the US, where family trees tend to be a lot... slimmer...

  6. Re:I'll miss the old school special effects on Classic BBC Sci-fi Series Blake's 7 To Return On Syfy Channel · · Score: 3, Informative

    And you probably won't see it rebroadcast. Fortunately there are some archivally-minded individuals that have made all 4 series available at a certain Privateer's Cove.

  7. Re:1 Hour of Recharging every 200 miles? on Elon Musk Lays Out His Evidence That NYT Tesla Test Drive Was Staged · · Score: 1

    Well, The Model S has a 300-or-so mile range, which gets filled completely by one of their "Supercharger" stations in an hour. So let's do the math.

    300mi / 55MPH = 5.45 hours.

    So, if you leave at 8am, that has you travelling on the road until 1:30pm or so. Time for lunch, and an hour charge!

    After lunch, you do another complete drain, taking you another 300mi. Now the time's 8pm, and time for supper. Oh, and another hour charge! Or you could call it a day there, and let the vehicle charge overnight, while you do the same. You've just driven 600 miles, after all! That's enough to get you from New York to Cincinatti, OH.

    Even with only a 200mi range, you'd be on the road 3 and a half hours or so. So you leave a touch later, and have an early lunch.

  8. Re:Unexpected consequences of paywalls. on Tesla Motors Battles the New York Times · · Score: 2

    Apparently, the logs also showed he took a lengthy detour through Manhattan, rather than a direct route.

  9. Re:Additions to make on White House Must Answer Petition To 'Build Death Star' · · Score: 3, Insightful

    Let's take these in order.

    Access shafts smaller than 2 meters

    Given that the average person is 2 meters tall (give or take), and adding the bulk of hard-vacuum capable work gear, making maintenance access shafts smaller than 2 meters would cause a lot more problems. I'd recommend, instead, putting a locking/securable cover or grate over entrances and exits of access shafts.

    No straight runs on access shafts that are for core ventilation

    I presume you're talking about the "Thermal exhaust port" here. Twists and turns in shafts like that can cause backpressure, causing problems and leading to overheating and thermal runaway (read: big explosion).

    Tractor Beam generator disables requiring multi-person authorization

    I'd say multi-person and multi-point authorization.

    Cameras on the prison levels

    Actually, there were multiple cameras on the detention level - they were the second thing shot (after the stormtroopers) when Han and co. arrived there. Hence, also, the "Weapons malfunction" call.

    Better training of security staff

    Unfortunately, they were stormtrooper clones with only a genetic imprint for education and no actual field experience.

    A 5 fold increase in garbage compactor speed and no main airlock opening until the garbage has been vented into space.

    The speed of the garbage compactor wasn't the issue, it was the ease with which the system could be disabled from a single point. The main access door was locked while the compactor was cycling, but the locks were lifted (and the door opened) when the compactor was overridden. This is an entirely sensible system to have in place - if something goes wrong with the compactor, you will need to get access to it, and having the only access door permanently sealed mid-cycle (which is where 99% of problems will occur) makes a maintenance access door like the one in the movie pointless.

    Defense turrets around the power core

    Given the rebels' ability to easily hack into and alter computer systems at will (with the cost of a only simple, easily replaceable astromech in the case of doing massive damage and causing an overload), would it really be a good idea to have computer-controlled autocannons around the power core? Then all the rebels would need to do is send in an rogue astromech, which would interface with the ship's computer and direct the "defense turrets" to open fire on the core. Oh, and given the history of accuracy of those turrets, would you really want them in a place where a miss would do the rebel's job for you?

    Decentralized power generators

    Yay! Lots of targets to hit! In lots of places, which makes it exceedingly difficult to guard and protect them all, and even with the system decentralized, you would still have the issue of a massive power surge from one generator (from, say, it's destruction) feeding back into another generator and causing a chain-reaction. And if you don't have the generators linked you still have the issue of maintenance and lack of redundancy. Oh, and that huge weapon that destroys planets requires a HUGE amount of power - chances are it's difficult (if not impossible) to co-ordinate that much power production with a group of parallel power plants, hence the huge single core.

  10. Re:I broke the rule and read the fine article... on Frame Latency Spikes Plague Radeon Graphics Cards · · Score: 2

    If you did, as you say, read the article, then you would have seen that this issue happened in both Windows 8 AND Windows 7. In fact, Windows 8 performance was typically better, with less micro-stuttering, than the Windows 7 performance plots. So, to put it mildly, you're speaking out of your ass.

  11. Re:Once again, a single measurement.... on Frame Latency Spikes Plague Radeon Graphics Cards · · Score: 1, Informative

    Oh, we have learned this. Which is why decent review sites don't just publish a "single number" representation of speed. They post a complete FPS graph for similar runs through each game, so you can compare side-by-side

  12. Re:Questionable goods on Inside the World's Biggest Consumer 3D Printing Factory · · Score: 1

    Okay, what if I submit a design to print a 3D gun (or replacement parts for one)?

    If you submit a design to print a 3D gun, or replacement parts, you'll get them. Of course, the tolerances won't be as close as a specifically machined part, nor would it really be strong enough to use to fire bullets (As it would be made of plastic. Sintered Stainless Steel would be strong enough, but again would have to be machined for an accurate fit).

    Or if you wanted to do the same thing easily at home you could make a simple "Zip Gun" with a little plumbing pipe. Or a flamethrower with PVC pipe, a flashback arrestor (for safety) and a ball valve. Or a nuclear bomb with 2KG of plutonium (make sure you have it in 1KG lumps in separate pockets, mind!), a piece of drainpipe and a cherry bomb. Or you could just use a god-damned hammer to beat someone to death.

    Yes, 3D printers open up all kinds of applications. Just like CNC routers. Or mills. Or a screwdriver and hammer. Tools can be used for anything, good or bad.

  13. Re:so what's the barrier to entry on this? on Inside the World's Biggest Consumer 3D Printing Factory · · Score: 3, Informative

    To answer your questions, in order:

    • Yes
    • Yes
    • No, that's all there is to it.
  14. Re:Cost on Inside the World's Biggest Consumer 3D Printing Factory · · Score: 2

    They charge by the amount of material used, as a simple glance at http://www.shapeways.com/materials would show you.

  15. Re:Keep 'em Coming on AMD Introduces New Opterons · · Score: 1

    That link is saying that an 8-core AMD processor has comparable performance to an Intel 4-core i5 processor.

  16. Re:AMD SUcks on AMD Introduces New Opterons · · Score: 2, Insightful

    ...competition in the CPU market is not a good thing. I hope AMD goes out of business soon, so that Intel can lower the price of their chips.

    What? Competition drives innovation and lowers prices. It happened with AMD's Athlon killing the old Netburst P4s. It happened with x64 killing IA-64. Why would AMD leaving the market "let" Intel lower CPU prices?

    Oh, I'm sorry, you're just a troll, without the possibility of reasonable discourse or fair and reasoned debate. Forgive my oversight.

  17. Re:Keep 'em Coming on AMD Introduces New Opterons · · Score: -1

    Unfortunately at the moment, AMD doesn't have the same single-core performance that Intel has. For computing tasks right now, [url="http://www.bit-tech.net/hardware/2012/11/06/amd-fx-8350-review/1"]1 Intel core is "worth" around 2.4 AMD cores[/url]. AMD needs to pull something pretty damned major out of the bag, as they're getting beaten hand over fist.

  18. Re:intel is... on Is Intel Planning To Kill Enthusiast PCs? · · Score: 3, Informative

    Unfortunately not. AMD's best (Piledriver 8-core FX-8350) is getting it's ass handed to it by Intel's basic i3 parts these days. And I am very disappointed, as I recently "Upgraded" to Bulldozer. Beginning to regret that decision more than a little. :/

  19. Re:There are sockets for this package style on Is Intel Planning To Kill Enthusiast PCs? · · Score: 3, Insightful

    Intel use LGA, AMD still use pins (At least, they do for AM3+, which is still a current socket).

  20. Re:Switching to Chrome on Mozilla Dropping 64-Bit Windows Nightly Builds For Now · · Score: 1

    I'm sorry, please let me clarify: The only 64-bit browsers on windows are Opera, IE and (up until now) FireFox. FF is still available in x64 on Linux and OSX, that support is not going away.

  21. Re:LOL ... on A Wi-Fi Wardriving Motorbike — With Plans Available · · Score: 2

    You know, I can think of another customized bike ridden by a nerd, and all the adventures he got in trying to recover it after it was stolen. But I don't think Paul Reubens was in the Matrix... Or at least I hope he wasn't... Great, now I have a mental image of Paul Reubens dressed in black leather yelling "Tank! I need an exit! Or my bike!".

  22. Re:Switching to Chrome on Mozilla Dropping 64-Bit Windows Nightly Builds For Now · · Score: 4, Informative

    Sorry, but Chrome is x86, not x86_64, and thus only 32-bit. The process isolation it uses means that each tab can access 2GB of memory, but the program (and the plugins) are 32-bit. The only 64-bit browsers are Opera, IE and (up until now) FireFox.

  23. Re:Firefox + 64bits = Waterfox on Mozilla Dropping 64-Bit Windows Nightly Builds For Now · · Score: 1

    Except that Waterfox is currently at 16.0.1, whereas FF nightlies (The only place you could get 64-bit builds) are at 19.0a1.

  24. That's only really a problem if they try to beat SR-71's altitude record for fixed-wing flight.

  25. Re:It seems most have missed the other part of thi on FCC To Allow Cable Companies To Encrypt Over-the-Air Channels · · Score: 2

    The law requires them to offer an IP-Based unencrypted method of getting the transmissions if they broadcast them over the wire in an encrypted format. Nothing is mentioned about it being over broadband. So, if your cable provider uses encrypted cable transmissions, the cable box provided for that will have to have an Ethernet port, which provides an IP interface. It might not be a connection to the internet, it could simply be a closed network. Do remember, while the Internet runs on TCP/IP, TCP/IP is not only the internet.