Slashdot is powered by your submissions, so send in your scoop

 



Forgot your password?
typodupeerror
×

Comment Re:hate to dive headfirst into politics. (Score 0) 599

...

So, democrat fanboy ... riddle me this ...

Why didn't the super majority and democrat president get a flipping thing done between 2009 and 2011 when they had a super majority in congress ... you know, back when they could do whatever the fuck they wanted without the republicans having enough people in congress to do shit about it?

Democrats don't like the ACA either, its nothing but a scam for insurance companies to make a fucking killing and you're a idiot for being too wrapped up in your teams colors to not recognize that. Its sole purpose is to guarantee that insurance companies have income and can charge more than they were charging before ... yes, MORE, because not a single fucking persons rates actually went down, some people just started subsiding other peoples while EVERYONES WENT UP.

This isn't a republic vs democrat thing, this is a 'THE ACA is BULLSHIT' thing.

If you want public healthcare, MAKE PUBLIC HEALTHCARE, which means no health insurance companies. It means we just pay taxes and everyone, read that again ... EVERYONE gets THE EXACT SAME LEVEL OF CARE. That means homeless man on the street gets the same level of care as the president. That is entirely the opposite of what we have now.

What we have now is that you get fined if you don't pay insurance companies ... EVEN IF YOU PAY YOUR OWN BILLS 100%. It means if you're poor and don't make a lot of money, your health insurance plan is so shitty that you can't afford to see the doctor anyway because the lower level of plan you have, the higher your prescriptions and co-pays and such. Every single subsidized plan from the ACA systems costs those who are qualified to be subsidized too fucking much to be seen by a doctor anyway.

Anyway, back on point.

You're an idiot. Not because you think the republicans are bad, they are gutter trash. You're an idiot because you think the democrats aren't exactly the same.

Open your eyes.

Comment Re:Some recruiters definitely have agent "ethics" (Score 1) 145

I had a nearly identical experience getting my current position, via a recruiter ...

Since I've been hired and been here a few months, long enough to get to know everyone and whats going on, I've found out all sorts of neat edits they did to my resume. Like ... changing the spelling of my freaking name!

When in the interview, I was essentially asked to prove I knew some of the things on my resume ... in detail, the kind of detail that seemed ridiculous (very specific knowledge of very narrow ASP.NET problems that only a handful of people have ever dealt with outside of MS) after a bit they let me know that they believed me, and then proceeded to explain that they had an almost identical copy of my resume ... from the same recruiter, with someone else's name on it. Best still is the copy of my resume they got from the recruiter was completely different than what I brought with me to the interview. When they saw what I brought with me, all sorts of red flags went off in their heads ... rightfully so.

Needless to say, neither I nor the company will be using that recruiter again.

Comment Re:FFS (Score 1) 398

In university some pharmacy or chemistry guys could scrounge pure ethanol. (98 or 99%.)

...

Its called Everclear, you buy it at any liquor store. They didn't exactly have to do much scrounging.

Screwdrives with that were nasty.

No shit, EVERYTHING with 98% pure poison in it is nasty. You do realize alcohol is a poison by definition, right?

Comment Re:Comodo are the biggest Cert issuer (Score 5, Insightful) 95

Comodo, not to be confused with the similarly named Komodia from yesterday, are the world biggest issuer of SSL certificates.

Hardly. They give away a bunch of worthless email certs that aren't trusted by anyone, allow me to make wanking motions. No one that matters uses them and no browser that matters trusts their free certs by default.

Ahh, the post of someone who's riled up but doesn't actually understand what they are talking about.

People wonder how come NSA/GCHQ are able to intercept HTTPS connections so easily and in bulk.

Only the ignorant wonder that, just because you do, doesn't mean everyone does.

We need to remove the whole signing process and replace it with *time*. The one thing an attacker cannot do is go back in time and change a key exchanged in the past.

You don't have any idea how this system works currently, do you?

You want the websites to tell you their public key information, and for everyone else on the Internet to remember it and tell you when it changes ...

or ...

you could just learn what certificate pinning is.

We need to remove the certificate authorities, because they are the weak link in secure comms.

So you want me to ask Google what Google's public key is and then trust whatever I get sent is actually the public key, with no verification of that, other than it came from the request I sent asking Google for their public key. So ... then the NSA just returns a key that says its Google and intercepts the traffic.

The certificate authorities purpose in life is to provide 3rd party verification of certificates in an automated way. What you want is to remove all of that, and do it ad-hoc, by everyone on the Internet. Slashdot doesn't allow posts long enough for me to explain all the ways why thats exactly the opposite of a actual solution.

'Web of trust' doesn't work, we know this because NO ONE FUCKING USES IT BECAUSE ITS TOO MUCH FUCKING EFFORT. END USERS DON'T GIVE A FUCK about verifying every cert they see and will just click Ok/Next/Allow. THAT is WHY we use certificate authorities.

You are proposing nothing new. Its been done, and its failed repeatedly.

Certificate authorities ARE the solution you want, the problem is, no one actually cares enough about security to black ball the certificate authorities that aren't trust worthy (i.e. all of them), which means they certainly don't care enough to deal with the method you propose.

Comment Re:The biggest challenge? (Score 1) 186

I always have my phone, I don't always have my wallet. Thats problem they solved.

Tap and Pay cards are no more secure than Swipe and Sign cards, they are nearly as easy to clone too.

Tap and Pay phones (at least with ApplePay) require me to actually verify it with something somewhat secure like a finger print or pin number on MY device, not one that someone else maintains and may be hacked to steal my PIN.

ApplePay also doesn't require any communications at the time of transaction with the bank after the initial security exchange.

Theres no reason that the upgrade process which brings everything up to chip&pin can't easily bring it to NFC capable as well.

ApplePay is more convenient if you don't always carry your cards on you, but do your phone and/or if you value secure transactions.

Comment Re:Block off programmatic access to cert trust. (Score 4, Insightful) 113

And if your machine can automatically do all those things ... so can third party software because in order for you to do everything you want to do, there has to be a pragmatic way to do so, and if the OS can do it, so can any other software that has admin rights.

Either way, you don't want to put that sort of power into the vendors hands, since it means they effectively have created the Apple App store, and if thats what you really want, just buy a Mac and stop using Windows (your first mistake).

The only way to prevent this sort of thing is by not installing software that does it.

But lets ignore all the problems with what you're suggesting and assume it works ... Lenovo would have just approved the certs before they shipped the machine. Or the machine would prompt the user, who would blindly do so on boot, just like all the other things users blindly do.

If you want to prevent this from happening, put the people who do this AND the people who make the decisions to do this, IN JAIL.

Both the developers who write the code to do it and the management who tells them to do so. Assign some personal responsibility for this shit and watch how it suddenly changes. The problem in America is that anyone in a company can basically do whatever they want and hide behind 'the company' who then gets some minor fine (Relatively) and the guy who did it doesn't care one bit.

Comment Legality (Score 5, Interesting) 113

I'm fairly certain just installing this software is illegal.

Its not protected by some EULA because the device is sold before the EULA can be read, which courts have already ruled invalidates the EULA.

It violates the same laws that were used to put Kevin Mitnick in jail (and lets be clear, he deserved it), unauthorized access to a computer system and unauthorized access to data flowing across a network.

Hang'em high, I say. Bring Lenovo's leaders out to the chopping block, as well as the leadership of the companies who made any other software that works like this. Its a scam from the very beginning, theres no 'well, maybe its not bad' or 'maybe it was an accident' to it. This is outright bullshit behavior by companies trying to sell a product to someone and then turn that someone into the product for someone else. The entire legal system AND THE PUBLIC need to come down on this like a ton of bricks and make it clear that its unacceptable and will not be tolerated. And by not tolerated I mean 'you will be jailed, not fined'.

Comment Re:Seriously, an Apple car? (Score -1, Troll) 196

So essentially you know nothing about Apple.

Apple apps/products are NOT pay to play. Many people sell apps that are, Apple apps are not. You pay a premium, yes, but then you're done and you get updates/improvements longer than anyone else in the industry except maybe for Microsoft with their OS support terms.

Seriously, if you're going to troll, get a clue about who you're trolling.

Comment Waste of time (Score 4, Insightful) 129

I fly fully autonomous quads.

This is another stupid idea.

It will take longer to get into the neighborhood, setup for launch, launch, deliver, return, and manually recover than it will take your standard fedex/UPS guy to do his job.

Oh, and its going to carry small objects and drop them in the front yard. Not under the car park or the stoop. Most objects will still need carried by a person large enough to carry them for more than 30 seconds and NO ONE is going to want their shit left out in the front yard or otherwise somewhere not leaning up against their home where its safe and dry.

Again, this is another stupid idea. Perhaps people should actually try to implement their projects and compare them to the existing conventional method before starting a 'business' around the idea.

Flying and fighting gravity constantly is expensive, thats why we currently all drive cars and not fly everywhere. Its not because we can't have a flying car, its because it'll cost more fuel just to get that flying car off the ground in the morning than it does for most people to drive to work and back. Flying ANYWHERE takes more time than driving when its less than about 100 miles due to the extra time consumed by taking off and landing SAFELY. Drones don't change that in any way, they just take the human flying out of it. The human flying a problem or a cost when you look at the other expenses. Well, and the human flying doesn't have a death wish, but thats not any different than a broken down drone that flys itself into a mountain.

Comment Re:Arduino Panic Button (Score -1, Flamebait) 327

Or, he could, you know ... BE A FUCKING PARENT.

Mom and Dad are the panic button for a freaking 2 year old. WTF are is he doing that has his eyes off his two year old in an environment where they can hurt themselves long enough that a panic button makes sense?

This post just absolutely screams 'horrible parent'

Something's wrong with this dude dude.

Slashdot Top Deals

The most exciting phrase to hear in science, the one that heralds new discoveries, is not "Eureka!" (I found it!) but "That's funny ..." -- Isaac Asimov

Working...