Please create an account to participate in the Slashdot moderation system

 



Forgot your password?
typodupeerror
×

Comment Awesome (Score 2) 181

We prefer Firefox, but I was about to switch my wife over to using Chrome as it has become impossible to figure out which of the dozens of tabs she has open was slowing everything down, even with ad-blocking enabled. It will be interesting to see how the multi-process support impacts memory overhead, though, as Firefox has had the lead on Chrome in that area.

Space

Life Insurance Restrictions For Space Tourists 68

RockDoctor writes: Reuters reports that there are changes afoot for life insurance contracts, which will require additional premiums for "space tourists." While not likely to be a disabling issue for the industry — the statistics for astronauts dying in flight are not that bad — it is an issue that people considering such a jaunt will need to address. Obviously this has been brought to the fore by the unfortunate crash of the Virgin Galactic craft under test. Relatedly, an article at IEEE Spectrum explains why SpaceShipTwo's rocket fuel wasn't the cause of the accident.

Comment Other statues don't apply (Score 1) 251

Total overreach, and I don't understand why they couldn't have gone with some simpler "destruction of evidence" charge (which I'm sure is still fairly serious and would turn a fine into a prison sentence).

Because previous laws aren't applicable to this situation. To my knowledge, and according to the two surveys of federal obstruction of justice statutes, all previous laws (like 18 U.S.C. 1503 and 1505) only apply when there is judicial or grand jury proceeding at the time. The purpose of 18 U.S.C. 1512(c) and 1519 (enacted by Sarbanes-Oxley) were to expand the scope of obstruction laws to apply when an investigation was underway but charges had not yet been filed. That is what the prosecutor means when saying the intent of these sections was to close a loophole or fill gaps in the current law. I have to agree that it needed to be filled, and this was the correct statute to apple to this case.

In both the new and old statutes cases the offender must be aware of the proceedings or investigation and act with intent in order for the law to apply, so they can't be abused in that manner. Sarbanes-Oxley also doubled the maximum penalties for these laws, which increases the potential for abuse. Personally, I would feel better if the statutes explicitly stated that the maximum penalty should be proportional to the penalty of the crime being covered up. That is currently up to judicial discretion and precedence, AFAIK.

Comment And they change (Score 1) 165

And those risk tolerances change over time. It's been 10 years since SpaceShipOne won the X-Prize, and Virgin Galactic started taking reservations not too long after that. Someone could have gotten married and had multiple kids since then. What was an acceptable risk to them as a bachelor, may not be an acceptable risk as a parent. I wouldn't be surprised if this has been a latent concern for some time, but one could be ignored for the meanwhile since it was still a ways off. Heck if the schedule kept slipping like it has been, the risk equation could have changed again, so why not kick the decision down the road. This crash forced the issue into clear view.

Comment Re:Let me speak for every one here (Score 1) 574

That's apart from the over-specified buzzword bingo related to web CMSs and frameworks. For example, someone that's pretty good with Drupal [not me] can probably deal with Joomla after a week or two.

Same for version numbers, too! You have experience with AIX 5.2, Solaris 10, Red Hat Enterprise 5, but the ad asks for AIX 6.0, or Solaris 8 or Red Hat Enterprise 4.5...well chances are, you can handle the job with just a few adjustments, but the HR won't select your resume unless you have those listed as well.

Comment Re:If lack of security updates didn't kill IE 6... (Score 1) 70

Yeah, but not by default. I agree that this won't influence most businesses who are still running IE. But old grandma running IE 6 will find that her internet is broken, and will ask someone to fix it for her, which most likely will involve upgrading to an newer browser.

Comment Re:If lack of security updates didn't kill IE 6... (Score 2) 70

It may also bring back the days of banks requiring the use of IE, as none of the citi group websites support any version of TLS. Of course, those in the know should cancel their citi accounts. Even if you don't use their website, if their security is this lax in one area, it probably isn't great in others as well. Sucks for people with mortgages and such that are very expensive to move to another company, though.

Comment Re: Packages can't be removed? (Score 3, Insightful) 126

[quote]It's just irresponsible for the package maintainers to come back and say "we can't pull it, we're leaving it as is, and we're not patching it either".[/quote]
The package maintainers didn't say that. This package is in the universe repository. The entire purpose of this repository is that volunteers can upload packages that Canonical has decided they aren't going to support. So Canonical isn't the package maintainer and you can't really blame them for not supporting packages that they said they aren't going to support.

Furthermore, it sounds like the ownCloud developers want Ubuntu to either use the latest & greatest release, or remove the package entirely. If that is correct, then I think it is irresponsible on the developer's part. Version 7 only came out 3 months ago, so they really ought to be providing security patches for version 6.

Comment Re:How secure is that connection string? (Score 1) 124

Even if BTSync were to process one connection string per CPU clock cycle, it would still take 1e20 years to try all the possible 20-character Base64 strings that BTSync uses by default. If you choose a longer string, then it will take even more time. In otherwords, the standard strings have 120 bits of entropy, and you can increase that to up to 240 bits. This is less than is typically used for encryption these days, but btsync doesn't have to deal with offline attacks.

Rather than key size, I would be more concerned about whether the client potentially leaks data through timing attacks, or any MITM/sniffing attacks that speed up the cracking faster than brute force.

Slashdot Top Deals

We have a equal opportunity Calculus class -- it's fully integrated.

Working...