Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×

Comment Workplace safety regulation (Score 3, Informative) 149

I've seen a few factors contributing to a slower pace on new builds and renovations in the past few decades. Others have already posted about job satisfaction so I won't get into that, but I will point out that workplace safety regulation has progressed significantly in the past 50 years. No longer can you hang your buddy over the edge by his belt to finish that trim. Crews on higher roofs wear harnesses and safety lines. You won't see them swanning around like the old days.

Workplace safety regulations like those coming out of OSHA and CCOHS keep people safer and I think they're good and required, but it's a very obvious fact that taking the time to be safe while building is slower than just winging it.

Comment Re:Terrible ruling (Score 2) 142

Last time I checked, you being asked your opinion on a workplace, and you answering it with your opinion was protected speech here in the land of the freedoms.

You're missing one part there. For Glassdoor, it's your opinion not on "a" workplace but on "your" workplace. If the reviews are by people who never worked there, as Zuru contends, then those people aren't protected speech even in the USA. Defamation laws do exists in the land of the free, and free speech doesn't protect you if you're knowingly lying in a way that you know will damage the other party.

Comment Re:What did you say? (Score 3, Interesting) 123

For 25 years, I've seen many many many languages come along attempting to replace C++. Sometimes they manage for one domain, but yet I'm still using C++. In all cases they fail because they don't actually do what C++ does and cannot replace it for a whole host of tasks. ... ... The only one I've seen so far where the creators actually understand what C++ can do and what domains it spans and then adds something substantially new is Rust. Without comment on whether rust is any good or will replace C++, that's one actual credible replacement.

Aren't you just validating the poster's position? He or she posited a 10 year cycle, let's see how close we are: C++ was standardized in 1998, 24 years ago. Then in 2010 along comes Rust, so that's 12 years later. Here we are 12 years after Rust, we're right on schedule for a replacement. It's easy to say right now that none of the replacements will dislodge C++ and Rust, yet who's to predict which of the new languages will take off?

My own self-reflective experience was dotNet. I looked at it when 1.0 and 1.1 came out and laughed. Later when my dotNet dev friends gushed about the CLR and generics and some other features, the devs for other languages like Java rolled their eyes as they'd had those features for years. Yet when I picked it up around v 3.5 of the framework I realized it had matured to the point where it was better than a lot of the alternatives for some of my tasks. I rolled my eyes at Node.js, "Javascript is for the browser!", Python "It's slow and I can mess up my code by indenting wrong!", React "Why do I want a server layer on the client?", etc. They've grown and improved and found their niches, to the point now where I don't even question whether vue is better, or why we're pulling out JQuery, or whether EventHubs in Azure is better than Kafka in AWS. I just learn enough of the new thing to understand what it can and can't do, put it in my toolbox, and follow the standard of whatever group I'm working with.

Comment This study assumes RP-1 propellant (Score 1) 62

The paper starts off nicely saying that they should compare all types of solid, liquid and hybrid rockets and fuels. But then in the calculations for things like exit velocity I see that they assume RP-1, and even state that in the conclusions:

This study considers a typical present-day rocket using RP-1 as the propellant that can generate 6806kN of thrust via a total of nine nozzles.

Some propellants release scarily toxic combustion products, and others are pretty much benign (eg: just water vapour). Feels a bit disingenuous to generalize and group all launches in that way. This seems more like a cry for attention and funding than a carefully researched and exhaustive study. If it's meant to be an attack on SpaceX (based on the 9 nozzles using RP-1?), they should maybe consider that SpaceX only launched 31 of the 144 total rocket launches in 2021.

Comment Did they draw the wrong conclusion? (Score 2) 87

"We only measured the change in atmospheric 4He," Birner said in an email. "However, previous work by other researchers indicates that the helium isotopic ratio of the atmosphere (3He/4He) is roughly stable. Together these observations imply an increase in atmospheric 3He that matches the rise in 4He or we would see a change in the atmospheric isotope ratio."

Wouldn't the more likely scenario be that the ratio of 3H3/4He isn't as stable as the other study suggested?

Comment Reason he's sanctioned (Score 4, Interesting) 88

I came to the comments expecting a discussion of why this fellow was sanctioned. For those wondering, the National Security Law he's accused of implementing on Hong Kong is a law passed by China intended to criminalise "secession" by Hong Kong, among other things. Hong Kong's a bit complicated, since they and their supporters (eg: US) deem them as a separate country, and China deems them as part of China (I'm simplifying a complex topic here.) So this law passed by China is another way for them to try to force HK to fall in line. I can understand why the US felt the need to impose sanctions, as from their perspective this is one country trying to rob another country of its independence.

For a wider perspective, the law was specifically worded to apply to everyone in HK (residents and non-residents, including tourists), as well as people outside HK. Imagine having China apply for your arrest and extradition from the USA simply because you posted a pro-democratic HK tweet. That is covered under this new law. I haven't heard of it being used that way yet, but we also don't get much uncensored news out of that area these days, so it's unclear if it's being used against people within China, for example.

Submission + - Zero-day RCE vulnerabilities in Spring (spring.io)

Walking The Walk writes: As first reported by LunaSec who named it Spring4Shell in their blog post, remote code execution vulnerabilities have been reported in the past two days for Spring. One of them is a zero-day exploit, described late Wednesday before a patch was available. Spring has since released patched libraries, and explains the situation in a blog post of their own.

tl;dr
It seems that in some instances you can inject values by naming query parameters with the FQN of a loaded class. By creative injection you could write to an output stream on the server. Early sample exploits have been published to github repos.

Comment Re:Disconcerting to see many defending his behavio (Score 1) 193

No, he totally can. It is his project, and it is being distributed as-is under a MIT license.

Not that his "little temper tantrum" isn't costing people a shitton of time and money - that's not being argued here. The question is, why is he not able to do the fuck he wants with his own code? And why is everyone blindly relying on it, without even testing?

I think it comes down to his intent to cause harm. A real world analogy to this situation might be a right of way. You and your neighbours have property that is accessible via a right of way which crosses this fellow's land. He doesn't have an obligation to maintain a road or the property along the right of way; you're right that in that way he can do whatever he likes. But he isn't allowed to alter it in a way to intentionally cause harm, such as putting spikes along it. (There are actual laws and precedence for that in Canadian provinces and US states.) And yes, there are obvious differences between the two scenarios. However if a lawyer found proof showing this fellow intended to cause financial harm to a corporation that was using his library it would be a very hard case to defend. I usually only follow IP law, but this would be a very interesting case to watch.

Comment Seems like one of the few valid use cases (Score 1) 28

This seems like one of the few valid uses cases to me. Use an NFT to convey whole or part ownership of the IP rights to artistic works. Licensing bodies would then have to pay out royalities to the NFT owners. Use the blockchain to confirm transfer of ownership rights from one party to another. So you get a clear chain of ownership, no complex court cases of he-said she-said to determine whether some arcane verbal sale was made, etc. What's the downside?

Comment Compare with northern neighbour (Score 1) 639

Comparison from Canada here: My kids are in the French language public school system in Canada. This is not a well-funded private school system, and in fact here in PEI we're the smallest province by population (150k) and even geographically, not a lot of tax dollars to play with. (Yes pendants, we also have 3 territories with sub-100k populations; they're not provinces so their funding is Federal and can't be compared to the provinces.)

My youngest is in Grade 2, and has already at this point not only spent plenty of time learning about identifying patterns (eg: 3, 6, 9 means counting up by "3"), but also pattern completion (24, 26, _, 30). Both of those are core concepts to algebra; my child has just started with multiplication but already understands that 3, 6, 9 is also adding up by 3 and that means multiplying by 3. Children don't need to be told the formula is written 3x for it to count as algebra. Likewise 5 + _ = 7 is the same as 5 + x = 7, and all my kids were taught to do that in Grade 1. If a 7 year old can grasp that concept, surely the issue in California is not the students but the way they're taught?

For a second perspective: my wife grew up thinking that math was hard and she was no good at it. She had both a BA and a TESL diploma, so not a dummy. I spent nearly a decade slowly teaching her math and hard science terminology, until we were at a point were I could use the correct terms and she understood all the core concepts. She then got two more college degrees and now works in IT. She was the top student in all her math courses save one, and it's not because of the words I taught her - it was simply because I gave her the foundation and confidence to be able to approach math believing she could do it. I've done the same with my kids, and my kids' teachers do that too, with the result that Grade 2 kids in the public system in Canada confidently learn core algebraic concepts.

Comment Bullshit (Score 0) 79

I have a Quest 1, we play on it all the time. It works just fine with no internet connection at all; combined with the sensors being self-contained this is one of the main selling points, that you can take your headset wherever you want. So I can take it to the office to let me coworkers play, or to my kids birthday party at the local community centre, and all the games that are already on my headset "just work". Sure you can't play online multiplayer games like Rec Room, but Beat Saber, Star Wars, etc work just fine. To say the device is "bricked" isn't misleading, it's a downright lie and shoddy, click-bait journalism.

So instead of saying needing a FB login is bad (like needing a Steam login to get your Steam library, or an MS login to get your XBox library, or Epic or Sony or...), let's list the real impacts of this week's outage:

  • * Can't activate new headsets. Frankly this sucks, and right after the Quest 2 sale last week as well. But realistically you were blocked from activating for 6 hours, so I guess you just wait one extra day to use the new shiny?
  • * No multiplayer. This is probably the biggest hit for active users, but again it was just one day. So if you weren't trying to play a multiplayer game during that outage you wouldn't even know. My kids never noticed because I make them do their homework before playing, so FB was back up before they tried to play.
  • * No access to your library. Unless you're in the habit of unloading and loading games/apps on a regular basis this won't impact you because you have all your games on your headset already. I have a 64GB Quest 1, and that holds around 25 games and apps. I do unload apps that no one has used in a few months so I can load new purchases on. But not so frequently that an outage for one afternoon impacts me.

Slashdot Top Deals

A committee is a group that keeps the minutes and loses hours. -- Milton Berle

Working...