Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror

Submission Summary: 0 pending, 76 declined, 13 accepted (89 total, 14.61% accepted)

×

Submission + - Neil DeGrasse Tyson Explains his Christmas Tweet. (mediaite.com) 1

140Mandak262Jamuna writes: Neil DeGrasse Tyson tweeted on christmas day what appeared to begin as a tribute to Infant Jesus, but ended up celebrating Isaac Newton who shares his birthday with Jesus, (with sufficient allowances for the estimate of Jesus' and the confusion between Gregorian and Julian calenders for Newton). Apparently this was retweeted some 77000 times, far above his average of 3.5K retweets. He doubled down on it by tweeting about people being offended by objective truths. Then wrote a fuller explanation.

Submission + - Slashdot Beta. How to filter ? How to get to my comment? 3

140Mandak262Jamuna writes: 1. In the slashdot beta I don't see the knob that lets you see more stories or less. Did I miss something, and it is under some obscure icon? Or is it gone?

2. When I post a comment, I often go my profile, find my latest comments, expand the threads there to see if there are any follow ups. In beta I am not able to get to my comment. It gives me the whole story. Will there be a link to a specific comment and the local view of that thread alone?
Facebook

Submission + - Facebook + Instagram asking for photo IDs (cnet.com)

140Mandak262Jamuna writes: Apparently Facebook and Instagram are asking their account holders to verify their identity using government issued photo ids that include their full name and date of birth. Your account has been secured and requires account validation. Please login to Instagram.com from your desktop computer to validate your identify. is the message they are getting, according to CNET. CNET is speculating that it is an attempt by these companies to crack down on underage users because they are worried about the liability.

And here in slashdot we are obsessing with privacy and google getting to collect so much of info etc etc. Out there there are people who seem to be willing to upload their IDs to these sites, and think it is a fair price to pay for these services. Is there a site that will give a fake photoshopped government issued ID to upload to such services?

Transportation

Submission + - Indian engineering students develop solar powered moped (dinamalar.com)

140Mandak262Jamuna writes: The Tamil language newspaper news item reads, "Two engineering students [name, college] have developed a moped that runs on electricity charged by solar panels. It takes 8 hours to be fully charged. It has a range of 35 Km (19 miles). The moped is built entirely using parts salvaged from scrap yards. Commuters can charge it while working and return home. With more than 8 hours of power cut in the grid, ability to charge using solar panels is indispensable. It costs 60,000 Indian Rupees (1250$) and we hope to reduce the price down to 25,000 Rs (500$) in mass production".

If it takes 1250$ using scrap yard salvaged parts, I am not sure how it is going to be 500$ in mass production. But still it is a good attempt and a nice project for engineering college students.

Chrome

Submission + - IE slips to third place in w3schools.com (w3schools.com)

140Mandak262Jamuna writes: Well, w3schools visitor profile is not the generic run of the mill net surfer. It is a little skewed towards web developer community. That also makes it a leading indicator of shifts in the web user profiles. In April 2011, IE has slipped to third place after Firefox and Chrome.
Spam

Submission + - Digg overrunn with spammers!

140Mandak262Jamuna writes: Conservative activists have been caught banding together to digg or bury news stories of the progressives. Blogger oleoleolson writes in alternet: A group of influential conservative members of the behemoth social media site Digg.com have just been caught red-handed in a widespread campaign of censorship, having multiple accounts, upvote padding, and deliberately trying to ban progressives. An undercover investigation has exposed this effort, which has been in action for more than one year. The article details the modus operandi of the net-mob. http://blogs.alternet.org/oleoleolson/2010/08/05/massive-censorship-of-digg-uncovered/
Google

Submission + - Why Chrome browser chokes on text files?

140Mandak262Jamuna writes: I am trying to use Chrome to display some text files with non standard extensions (or no extensions like Imakefile). All the browsers handle this nicely. But Chrome keeps throwing up the file save dialog instead of just rendering the damn file with some fixed with font. Others are also reporting the same issue. Wondering why Chrome made it so difficult? I tried to make Chrome the default file handler for text files, (instead of notepad) that did not help. How does Firefox detect the file:/// resource is text file and displays it without fuss? Where is the file extension and mime type association defined for Chrome?
Security

Submission + - "Blaming IE is simplistic" says PCMag. (pcworld.com)

140Mandak262Jamuna writes: PC Magazine is defending Internet Explorer with this piece contending the browser is merely a messenger and there could be more holes, and blaming IE is simplistic and provides a false sense of security.

It is worth noting that Kurtz used the phrase "one of the malware samples", implying that there are others and that additional attack vectors may be involved. There is a fair chance that Internet Explorer is not alone in enabling the attacks.

It concludes:

The main thing to keep in mind is that these attacks go beyond Internet Explorer and that simply switching browsers is not an adequate defense. Kurtz sums it up on his blog "The world has changed. Everyone's threat model now needs to be adapted to the new reality of these advanced persistent threats. In addition to worrying about Eastern European cybercriminals trying to siphon off credit card databases, you have to focus on protecting all of your core intellectual property, private non-financial customer information and anything else of intangible value."


HP

Submission + - HP ships Linux on its netbooks quietly

140Mandak262Jamuna writes: HP is including Linux in its 110 series of netbooks that are shipping now. It goes by various names QuickWeb or Instant Web. When you power on these netbooks, they boot into a splashtop linux instance. The OS is locked down and only the predefined applications could be run. They are browser, photo viewer, music player, skype and some file browser to view files on USB drives. WiFi works. Then if the you want Windows7 or WinXP, you press a button and the machine boots to a full Windows machine.

The Linux part can not see the hard disk of the machine. I just got the machine yesterday and have not poked around much to know how much it can be hacked. The browser is Firefox, I have not even checked to see if I can install noscript on it.

For most users of netbook, this is a very good deal. When you are in a public wifi in a coffee shop or an airport, you are guaranteed not to pick up a virus. I am not saying Linux is more secure or FireFox is more secure. Simply if you stay within QuickWeb or InstantWeb, there is no way any file can be written to the Windows disk at all!

This is such a big brand differentiation and it can be touted to high degree. But HP for some strange reason is very quiet about this feature in its ads and press releases. From business stand point, every company would strive for brand differentiation so that they dont compete on price alone. Quite strange HP is so silent about it. People are spending on purchase and subscriptions to antivirus software. All that revenue could be targeted by selling a device that is guaranteed not to be infected. Once many users realize that they rarely boot to full windows, they and their circle of friends and family would become more receptive to cheaper plain net access devices in various form factors.

I am very sure Microsoft is giving HP hell for this move behind the scenes. Is it the first sign of PC vendors growing a back bone? Or the lackluster promotion of this feature bodes ill for such an experiment? I wonder.
Internet Explorer

Submission + - The Levy has broken or is it a storm in a tea cup?

140Mandak262Jamuna writes: Wall St Journal is reporting that Sony has decided to install Chrome browser as the default in its line of PCs. Though I have never been impressed by the Vaio line or its reliability, this is the first time a major PC vendor has decided to install something other than Infernal Exploder. I have always wondered what was keeping all the major vendors in line with Microsoft. Given the fierce competition between the vendors, at least one would have embarked on a strategy to position their line as the more secure one, with Firefox as the default browser. At least one should have decided not to compete on price alone and used something to differentiate their product line from the rest in the market. But none did. Till now. Is it the first levy to break? Or is it a company in trouble, i.e. Sony, trying to wring some money from some one with some cash lying around i.e. Google?
Security

Submission + - Port 4567 on Verizon FiOS routers

140Mandak262Jamuna writes: I got my home connection upgraded to Verizon FiOS. I am getting a blazing fast connection 20Mbps clocked by three different sites. But one important thing about it is that, the router/modem that must be used for this is supplied by Verizon and it leaves port 4567 open on the WAN site. Quick googling shows that it is a port used by Actiontec, OEM vendor to Verizon, to upgrade the firmware automatically. The router is, in fact, running a server and presents a user name password dialog to the whole world. I used Grc.com to verify that the port is really open to the entire world, not just to the Verizon servers alone.

Though Actiontec claims this port could not exploited I have quite a few concerns about it. If that password is cracked, hackers can upload a cracked version of the firmware and disable all protections at the router. I tried putting another router behind the verizon router but then my speed drops to 10Mbps. Thinking of getting a switch with firewall or configure the second router as a switch to protect my computers in case the Verizon router gets hacked.

I really would like to know the protections against password cracking on the router. How many failed logins are allowed per minute, per hour, per day, per week? Verizon knows which of its banks of servers are authorized to upgrade the firmware on the routers. Should it simply filter out all traffic to these ports originating from any other IP address? And why is the firmware upgrade initiated by an inbound call? Why cant the routers initiate a peridic check and look up their home servers and get a firmware upgrade? I don't like the way Verizon is implementing the automatic firmware upgrade. I fear someday soon somebody is going to crack that password and the hackers are going to get a million bots all with 20 Mbps connection to the world. Even if you are not a Verizon FiOS customer, you will be affected then.
Google

Submission + - Firefox respecting Internet Explorer settings?

140Mandak262Jamuna writes: I have been using Firefox for a long long time. I also cripple the internet explorer in my home machines. Apart from hiding all the buttons and the address bar I use the tools/options to set the security level to the highest even for trusted zones etc. Just the basic paranoia, some hole in pdf reader or flash would let IE to be invoked and get to run ActiveX, so stop it. I have always been able to download software Gimp, OO, Firefox updates etc etc without any problems using FireFox.

Recently I had to install a MSFT software, PhotoStory, (for a child, school project, don't ask and get me steamed up again) and I found that even using Firefox, the software would not download and issue an error about security policy prevents the download. OK, this is MSFT, what to do? Brought up IE, set the privileges to default, downloaded the software and restored the status quo ante after download. But still I was irritated by the fact that MSFT is making Firefox respect the security zone settings for IE.

Yesterday I wanted to try the new video/audio chat through gmail. This time Google software that is needed to access the webcam and the microphone refused download with the same warning. Now Google too is making FireFox respect the stupid "security zone" based privileges. Why? How? Why do OpenOffice, Gimp etc download executables but Google and MSFT somehow make FireFox respect that security policy from IE?

(BTW, the gmail chat requires me to grant permissions to Flash to access my WebCam and microphone. No way, Jose. The menu items in flash settings asking for permission to access WebCam and the microphone have always bothered me. )
Businesses

Submission + - Privacy concerns with social networking sites

140Mandak262Jamuna writes: This company tries to become a social website by allowing its registered users to construct their family trees. The idea seems to be once a vast tree is created the users will be able to find their rich and famous relatives etc. I could imagine this being a very useful service to many people. One of my relatives added my name to his tree and geni created an account in my name and added me to the tree and notified me about it. The email had options to opt out of more spam from them. I had a talk with my relative and expressed my concern about adding vast quantities of private info about our lives to a searchable, indexable database owned by some for-profit company over which we have absolutely no control. As it is the net has so much of our public information. Why compound the problem by adding our private information as well?

Looks like it had an impact and my relative decided to close his account and destroy the tree. But geni claims they need my permission to destroy my account. Is it reasonable for a company that bribes its users with free family tree service in exchange for private info about people to follow a opt-out policy? Shouldn't they be required to notify me and get my consent before they add my name? I have received invites from other social networking sites, but they all require me to create an account first. If I ignore the email, I hope, they would not add me to their databases. Probably they will just sell my email address to spammers and stop with that.

I believe there is neither a technological or legal solution to this problem. A new geni.com could easily be run by Russian mafia outside US borders and thumb their noses at us. I think the only solution is social. They are using social engineering to pry private info from the public by offering some service or the other for free. We need to educate the public about the implications of succumbing to the temptations by them. Today if I set up a stand in a fairground and ask people to give the names, addresses and phone numbers of their relatives and friends in exchange for small token gifts the response would not be overwhelming. Somehow people believe it is wrong to tell strangers such information. But set up the same stand in the internet and people are punching in the email addresses of their friends and relatives like gangbusters. What would it take to educate the public about the menace to privacy these companies pose?
Microsoft

Submission + - Add Confusion to FUD. OpenDocument Foundation

140Mandak262Jamuna writes: Yesterday in Slashdot we saw the first story about a misleadingly named organization "OpenDocument Foundation" abandoning Open Document Format for something else. Even a few slashdotters were confused initially, then a little digging revealed, that this organization had nothing to do with the founding or support of OpenDocument Format. They turned out to be a couple of shills for MSFT without event the proverbial garage. But the other news organization too are trumpeting around that ODF has been abandoned by its own founders. Story 1 and story 2 and story 3.

We know MSFT has the track record of deliberately confusing issues. It misleadingly named its format OOXML, trying to make the less informed think it is OpenOfficeXML while saying with innocent face it stands for OfficeOpenXML. It tried to buy votes in the ISO committee. Now either it promoted these shills or these shills are hoping to win favor from MSFT.



Will this back fire, the way the ISO committee vote back fired? Do we need to update the FUD=Fear Uncertainity Doubt with Confusion? Or do we wait till we get proper words beggining with K and E could also be added with just cause and make the acronym truly FUC D?

Slashdot Top Deals

"For the man who has everything... Penicillin." -- F. Borquin

Working...