Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
×

Submission + - The 1040 as Web Application, Examined. (astonishdesign.com)

Funksaw writes: It's Tax Day in America, and procrastinators are ruing the fact that lobbying by Intuit and H&R Block, among others, have prevented the U.S. from providing a pre-compiled tax return for them via the Web. Oh, if it wasn't for those meddling lobbyists! But what exactly would such a build entail? 124,892,051 taxpayers multiplied by 1165 different forms is one hell of a massive database. Maybe it's not a matter of political will,but of hard technical problems in big data.

Submission + - The forgotten MACRO language of HTML, XBL (wikipedia.org) 1

tvlinux writes: The web is becoming more than just a media display, there is more interaction and more special things that need to be done. Right now jquery is the preferred method of very dynamic user interface. There is a W3 standard called XBL2.0. It is the macro language of the html. To me it seems like a great idea, Reusable HTML widgets where each one is a separate object contained with in it self. You can define properties, methods, events, each that is self contained.
If the browsers supported XBL2, I can vision a whole ecosystem of new widgets, charts, grids and inputs that people could add to web pages just like any other HTML element. I see less experience developers be able to create fancy websites by just using DOM and not having to learn jquery.
My question is WHY is XBL dead? I think a MACRO language for HTML is a good idea.
     

Submission + - Hackers Aren't Going to Hijack Planes with a Smartphone (vice.com)

derekmead writes: A talk given by a security consultant at the Hack In The Box conference in Amsterdam has been making waves for a couple days now, largely because it made bold claims: Hugo Teso, whos also a trained commercial pilot, said hed developed a way to hijack airplanes (as in take over their flight controls) by attacking the planes systems wirelessly using an Android app he developed.

Teso set up a framework to gain access to two aircraft systems that broadcast wirelessly: the Automatic Dependent Surveillance-Broadcast(ADS-B), which communicates flight, traffic, and weather data back and forth with air traffic controllers; and the Aircraft Communications Addressing and Reporting System (ACARS), which essentially sends standardized messages back and forth between pilots and the ground, in some cases automatically so that pilots dont have to spend their time sending in standard reports.

Now, its true that both systems are insecure, and it does have some worrisome implications–for one, perhaps someone could spoof a plane via the ADS-B to warn pilots of a mid-air collision, which would likely cause some chaos on the flight deck. Regardless, that airline systems so susceptible to attacks is certainly is certainly something that needs to be fixed. But the claim that a plane could be remotely controlled–which Teso did simulate in his talk, although the doom hype blame also lies with some media outlets–is pretty much false, for a number of reasons. For one, it's highly unlikely that a wireless attack could even access autopilot systems, which are physically isolated, and even then pilots would have no trouble taking over manual control.

Its unfortunate that the discussion has revolved around "Were all gonna die!" style headlines of hackers crashing planes with cell phones, because the exploits Teso demonstrated are worth examining on their own. Fooling around with ADS-B in particular seems like an area ripe for trouble. But no, turning a plane into a drone with a smartphone won't happen.

Submission + - Microsoft Telling Users to Uninstall Bad Patch (threatpost.com)

msm1267 writes: Microsoft announced last night that it has stopped pushing a security update originally released on Patch Tuesday because the fix is causing some PCs to blue screen. Microsoft recommends users uninstall the patch, which is also causing compatibility with some endpoint security software.
MS13-036 was part of this week’s Patch Tuesday update. It addressed three vulnerabilities in the Windows Kernel-Mode Driver, which if exploited could allow an attacker to elevate their privileges on a compromised machine.
Users began reporting issues earlier this week with some systems failing to recover from restarts, or applications failing to load, after the patch was installed.

Submission + - Is Windows 8 really blame for PC sales slump? (pcpro.co.uk)

nk497 writes: The latest PC sales stats don't make for positive reading — especially for Microsoft, with Windows 8 taking much of the blame for struggling desktop and laptop sales. But can a single OS really be blamed for taking out an entire market. Analysts suggests it's much more complicated than that: a new version of Windows doesn't actually boost the market, but the confusion around the Metro screen and a lack of affordable touch devices hasn't helped — nor has competition from tablets. While Windows 8 must accept some of the blame for the continuing PC slump, but even if it was a barnstorming OS, would it have made a difference? "Let’s face it," said one analyst. "PCs had their run, and it lasted close to 20 years... Interest among consumers is shifting to other types of device."

Submission + - UK Gov to Investigate 'Aggressive' In-app Purchases (paritynews.com)

hypnosec writes: The UK Government will be examining whether free to download apps are putting unfair pressure on kids to pay up for additional content within the game through in-app purchases. Office of Fair Trading (OFT), UK, will be carrying out the investigation of games that include ‘commercially aggressive’ in-app purchases after a number of cases have been reported whereby parents have incurred huge bills after their kids have spent huge amounts on in-app purchases.

Slashdot Top Deals

The one day you'd sell your soul for something, souls are a glut.

Working...