Slashdot is powered by your submissions, so send in your scoop


Forgot your password?

Comment Re: For that, you'd have to do a different attack (Score 1) 336

I don't think you understand how amplification attacks work.

I wrote advisories on that more than 10 years ago, so please go ahead and lecture me.

Your home network should not allow a request with an IP that doesn't belong to it out. If I'm the router that connects to the Internet, I shouldn't put a packet that claims it originates from on the wire.

The only places where a package that isn't part of my network should be routed through is when my network is a transit network.

Comment Re:Rubbish (Score 1) 336

I know from my own experience how right you are, but that, exactly, is the problem. This "it didn't crash in 10 minutes, ship it" approach is utterly horrible. It's become industry standard instead of being taken out back to be shot, and that is a really serious problem.

People shouldn't be used to computers crashing - they should demand that they don't do so.

Comment Re:Haven't you heard of lock-in? (Score 1) 22

More generally, MS has always pursued a strategy.
Unfortunately, mobile devices seem to have higher switching costs.
For example, my 'droid device has a full Navigon suite. If Apple wants my business, they have to convince me to eat that sunk cost.

Comment Re:Why does it need internet? (Score 1) 336

So distract everyone and yell "ASSHOLES!!" and pretend you haven't been shown how buttfucked you are, and how willingly you bent for it.

Self-righteous cunt, what's it to you if other people are willingly bending over, did you ever consider they were enjoying it and just wanted to be left alone?

Comment Re:Stupid/Misleading Title (Score 3, Insightful) 118

Actually, those $0.02 make all the difference in the world.

1) Sold for $0.01 means that the new owner can do whatever they want with it, including sell it to North Korea for $5, hoping that the NKs have enough to make the check clear.

2) Paid $0.01 means that it's a demolitions contract, and the recipient has obligations to perform a service under specific terms. While many commercial contracts limit liability to the size of the contract, (in this case, $0.01 damages) my guess is that this wouldn't be the case for a DOD contract.

Comment Re:For that, you'd have to do a different attack (Score 1) 336

spoof the IP address of your target (...) it proves that the DNS protocol itself is beyond repair

No, it proves that the network you are connected to is braindead because it still allows IP spoofing.

And that EVERY company on the net is susceptible to something like that because unlimited bandwidth does not exist.

It used to be really easy to knock someone off the Internet. It's not so easy anymore. For some of the really big targets, being able to muster the bandwidth alone would be an impressive demonstration of power. Keeping them offline for more than a few seconds while their Anti-DDoS countermeasures deploy would be something that few players smaller than a nation state level can pull off.

MS and Sony have a security that matches the opaqueness of an erotic dancer's dress

Not really. I hate them as much as most people with three working brain cells, but they've both done quite a lot about security. It's just not enough and - like every company - they make decisions to not invest in some security measures because the ROI simply isn't there.

Comment Re:Rubbish (Score 3, Insightful) 336

Nonsense. On their gaming systems you are unlikely to find any data that the companies would consider valuable. And 10+ years of experience show that "oops, we leaked customer data" isn't really a game-changer.

But cries from customers can be. Denying them the joy of their freshly gifted gaming console can be very powerful. It's not the nice way, definitely not, but it makes headlines.

I doubt it's going to change anything, because customers are too used to computers not working. That is the real damage that 30 years of Microsoft dominance have done to the world.

User Journal

Journal Journal: Merry Christmas! 1

For the first time in nine years I got to see my youngest daughter on Christmas; this is the first Christmas in nine years she didn't have to work. Great Christmas present!

And the second to last pre-publication copies came Christmas eve eve. I finished going through it this morning, and the book itself is ready. What wasn't was the cover; I fixed it and ordered another copy, so Mars, Ho! should be online in a couple of weeks.

Slashdot Top Deals

"Marriage is low down, but you spend the rest of your life paying for it." -- Baskins
