Follow Slashdot stories on Twitter

 



Forgot your password?
typodupeerror
×

Comment Re:I suspect money laundering (Score 5, Interesting) 62

Came here to post exactly that. This technique is commonly used for a whole bunch of money laundering techniques. Basically they purchase cheap crap with highly inflated prices. The seller then ships the junk to your random address. Then, if Amazon checks, they can see the package was shipped, and it looks like the buyer was just an idiot. However, in reality the seller is working with the buyer to launder large amounts of cash. Similar techniques are used with itunes and google play, by doing "in-game purchases" for crappy games that are mostly a mechanism for ingesting fake purchases.

Comment Re:This is a self-correcting problem (Score 1) 376

Let's start with, I'm very pro-vaccine. However, pro-vaccine people always make the arguments based on the incredibly small risk of taking vaccines versus the potential side effects and the small (but much bigger) risk of the associate diseases. This is a correct, rational assumption. What I don't understand is how so many people in the pro-vaccine camp lose their goddamn minds over the incredibly tiny risk to people who can't get vaccinated. We're talking about an incredibly small number of people, facing an incredibly unlikely disease, and facing an incredibly small added risk due to a small number of unvaccinated people. This incredibly small number, whatever it is, is some how good enough to justify people to be forceably injected with a foreign substance that has an incredibly tiny, but existent risk associated with it. That math doesn't seem very rational to me.

Comment I just purchased a 1080ti (Score 1) 115

For the last 12 years I've been a diehard ATI/AMD fan. There products have always been "good enough" and far cheaper than Nvidia. I just purchased the Nvidia 1080ti, because "ray-tracing" is garbage and the new 2070+ lines are way too expensive. None of the new features are really that ground breaking or likely to be widely necessary before these new cards will be obsolete. The only good thing about Nvidia's new line is that they caused the 1080ti card pricing to plummet and now I can have near top-of-the-line graphic power for very reasonable pricing. Who knows where we will be in three to four years, but unless a major upset happens, once this card is no longer cutting it, I'll go back to AMD and get a great card for a great price.

Comment Lenovo Laptops (Score 1) 304

I'd recommend looking at the Lenovo business class laptops. We've been pretty happy with them for our small shop. They are very good quality, and decently priced. Most of the Lenovo haters out there are talking about their consumer grade laptops, which aren't even manufactured by the same division of location.

Comment He did put a full response (Score 5, Informative) 187

He posted this under the video. I believe him, as I've been watching his channel for years and he produces a lot of great content.
Youtube: https://www.youtube.com/watch?...

Note about 2 missing the reactions in the video- I was presented with information that caused me to doubt the veracity of 2 of the 5 reactions in the video. These were reactions that were captured during a two week period while the device was at house 2 hours away from where I live. I put a feeler out for people willing to put a package on their porch and this person (who is a friend of a friend) volunteered to help. To compensate them for their time and willingness to risk putting a package on their porch I offered financial compensation for any successful recoveries of the package. It appears (and I've since confirmed) in these two cases, the “thieves" were actually acquaintances of the person helping me. From the footage I received from the phones which intentionally only record at specific times, this wasn’t clear to me. I have since removed those reactions from the original video (originally 6:26-7:59). I’m really sorry about this. Ultimately, I am responsible for the content that goes on my channel and I should have done more here. I can vouch for that the reactions were genuine when the package was taken from my house. Having said that, I know my credibly is sort of shot but I encourage you to look at the types of videos I’ve been making for the past 7 years. This is my first ever video with some kind of “prank" and like I mentioned in the video it’s pretty removed from my comfort zone and I should have done more. I’m especially gutted because so much thought, time, money and effort went into building the device and I hope this doesn’t just taint the entire effort as “fake". It genuinely works (like all the other things I’ve built on my channel) and we’ve made all the code and build info public. Again, I’m sorry for putting something up on my channel that was misleading. That is totally on me and I will take all necessary steps to make sure it won’t happen again.

Comment People don't understand words (Score 1) 1342

I'm trying to keep this as neutrally worded as possible but this angers me a lot. Words have multiple definitions and mean different things in different contexts. Anyone who can't understand that, is literally too incompetent to survive by themselves and they need a grown-up to explain this concept to them as soon as possible. Definitions for words are not a value judgement. There is no end to this madness. Do we get rid of "kill" because in some definitions and contexts it might mean the violent murder of a person, God forbid, even a historically oppressed minority? What about "mount"? In some context that could be a term meaning the forcible action of sex upon someone who might not be consenting. It is insane to ignore the obvious context of words and try to be offended by the worst possible context. Master/Slave makes perfect sense in many of these cases, as it implies one item is controlling another. Same as parent/child describes a certain hierarchy in some contexts. It is not making a judgement call about human interpersonal relationships, just because that's another definition/context.

Comment Re: All security = an implementation. (Score 1) 106

People make this claim all the time, but it's nonsense. People some how manage to get an id to get welfare or to apply for most jobs. You don't even have to get a license to get State ID, you literally go to the DMV, and pay less money that a driver's license costs, and they ship you one that's usually good for between 5-10 years. If you can ride a bus, you can get to the DMV. Considering you can't buy alcohol, open a bank account, get most jobs, or get government assistance, it is not an unreasonable ask that you get photo ID to vote.

Comment Re: All security = an implementation. (Score 1) 106

How would this coercive third party know this value unless the voter gave it to him? It's randomly generated when he walks in to vote. It is not tied to him in any way. If say, I were a person where I suspected this might happen, I'd just "lose" my random ID after checking my ballot on the other side. I can't validate my vote further on down the road, but no one else can force me to turn over my result.

Comment Re:All security = an implementation. (Score 2) 106

Blockchains are obviously a terrible solution to election fraud. The only thing that prevents blockchain tampering is a ton of neutral third party machines checking the transactions (typically miners). We've already seen that this is a non-trivial problem when there is plenty of incentive for random people to fulfill that role (mining of crypto currency). National elections have very little incentive for people to invest thousands in hardware and electricity, and a ton of incentive for nation states like China or Russia with the funds and technology to manipulate the results.

If you instead make it a closed system with government machines validating the results, you've not solved anything (or at least nothing that couldn't be solved with more traditional cryptographic techniques like public/private key encryption, signing, and progressive cryptographic hashing). You still haven't solved the issues of patching, of the public's trust in the machines and people involved in securing the infrastructure, or prevented a malicious third party from compromising that infrastructure and altering the results. Blockchain only provides any type of verification, when you can trust that the majority of the verifying machines are not working in league to forge results, and in a voting infrastructure of relatively well secured machines you can do a lot better. Block chain introduces a ton of extra complexity which leads to a ton of additional attack surface while again not providing a lot of value.

Finally, BlockChain does nothing to solve the issue of machines registering one vote and writing a separate vote to the ledger, or even registering multiple votes that are fraudulent. In other words, it is simply a highly inefficient tool that exists to solve an entirely different problem.

Things that would vastly improve voting security:
1) When the user comes in, check their ID to validate they are who they claim to be, and that they are allowed to vote.
2) Give them a randomly generated, complex, unguessable ID number (voteid) in the form of a QR code. This should not be tied to their identity in any way
3) Have user scan said voteid to begain voting and then store with their vote results, and give them the progressive hash of the chain of votes before and after their votes are tallied.
4) Allow the user to swipe their voteid before leaving the voting area, and view how their vote was tallied, on a separate machine (thus increasing the complexity and size of the hack required to hoodwink a cautious user).
5) Allow all users to go online and view their votes as they were recorded (and will be tallied) by entering their voteid on a public website. As well as the aforementioned progressive hashes
6) Have a process by which a user can, upon presenting their voteid contest how their votes were recorded (both at the voting place, and after the election).

Of course the progressive hash idea is someone simplistic, public/private key signing or other more complex solutions could be implemented with different risk profiles. Yes there are still ways that such a system can be hacked and manipulated, but the skill and breadth of the hack would need to be significantly increased to pull it off unnoticed. More importantly, users would be empowered to a fair degree of confidence that their vote was recorded as they intended.

Slashdot Top Deals

BLISS is ignorance.

Working...