Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×

Comment Re:Summary is inaccurate (Score 3, Informative) 118

Not necessarily. While these emitters are tunable, I doubt the red is getting down to 700nm, or the blue going into the 400-410nm violet range. Most RGB emitters, even tunable are peak 630nm red and 450-460nm blue. So this wouldn't cover the entire visible colorspace very accurately when it came to deeper reds and violets.

Comment WRONG (Score 5, Informative) 118

This is not the first WLL. Those have been available for at least half a decade.

This is the first SOLID STATE WLL.

What's unique is that they figured out a way to grow three different crystals next to each other on the same substrate without having fatal flaws.

Holy fuck can the editors even be bothered to fact-check?

Oh, yea, what editors?

Comment Re:Scripts that interact with passwords fields aws (Score 1) 365

" I've been in the software business for almost 40 years,"

Software, not security.

"I suggest you study texts on encryption, and maybe read the technical details of how a good cloud-based password manager like LastPass actually works"

https://blog.lastpass.com/2015...

That's all I fucking need to know. A piece of paper holding my passwords is more secure in my wallet than my passwords are with LastPass or KeepPass. I also have the ability to actually defend my stuff if someone tries to take it, whereas someone hacks your shit and it's gone, you're fucked. By the time you realize it, it's too late, they've made off with your stuff.

"Your super-whiz-bang method still requires a password, it seems"

Good authentication requires everything, including a password. We could switch to biometrics, you're fucked because there are any number of ways to get around that, including taking your head off. With a password added for second verification (or third verification, in this case) taking your head does me no good unless I was able to get the password from you before hand.

"How do you hash the passwords for your sites? Still using MD5?"

You silly noobs using hashes and salts. Nowdays smart people embed that information in an image file, good old steganography. You think you got a password database? Enjoy the cluster of hentai you just downloaded. Get past the fact that there's information inside the image? Good luck decrypting the white noise format used to encode it. Unless you have used my server software, you aren't going to be able to do much with it.

Comment Re:Scripts that interact with passwords fields aws (Score 0) 365

"Obviously you have limited experience or familiarity with password managers. LastPass, among others, keeps your encrypted passwords "in the cloud", so that they are accessible even if your local disk "takes a dump"."

That's EXACTLY WHY I don't use it. Keep my passwords on SOMEONE ELSE'S COMPUTER?!?!?! That's FUCKUP NUMBER ONE of security.

" If you can come up with an authentication scheme better than passwords that you can get every online service to use, then please let us know."

Same fucking one I got my bank to switch to - same one that I've used on my anime forums for over a decade. Picture/your custom caption/password. Same fucking one I've been telling people on /. about for YEARS. Spammers haven't beaten it, hackers haven't beaten it (because it's actually more than two-factor auth) and even in the case of being hacked, you would still need the matching image file (which resides on another server and is accessed by a constantly-changing encrypted variable for filename so you can't just rip it) to make the phrase and password usable.

I've been at this game almost 30 years. When are you n00bs ever going to catch up with the basic security of things like Air Gaps and separated content passwords, which have been around since, well, PROHIBITION?

Slashdot Top Deals

I have hardly ever known a mathematician who was capable of reasoning. -- Plato

Working...