Please create an account to participate in the Slashdot moderation system

 



Forgot your password?
typodupeerror
×

Comment Re:If it's accessing your X server, it's elevated (Score 1) 375

What exactly would you propose to add? This isn't a matter of implementing new functionality, but rather removing fundamental misfeatures. Any change to address this issue is going to end up breaking existing applications which depend on the original input behavior.

Oh how about a new protocol extension that allows one designated program to receive all keyboard inputs regardless of any other grabs. The X11 server can keep on pretending that the other grabbers still have such a grab.

Look: X11 works on Windows even though windows can apparently REALLY gab the keyboard. X11 will we are told work on Wayland too despite the fact that wayland can apparently REALLY grab they keyboard. Do you really think it couldn't be extended to do that itself?

Comment Re:When everyone is guilty... (Score 4, Interesting) 431

#insert observations/law/drferris.h

(preprocessed for your convenience)

"Did you really think we want those laws observed?" said Dr. Ferris. "We want them to be broken. You'd better get it straight that it's not a bunch of boy scouts you're up against... We're after power and we mean it... There's no way to rule innocent men. The only power any government has is the power to crack down on criminals. Well, when there aren't enough criminals one makes them. One declares so many things to be a crime that it becomes impossible for men to live without breaking laws. Who wants a nation of law-abiding citizens? What's there in that for anyone? But just pass the kind of laws that can neither be observed nor enforced or objectively interpreted â" and you create a nation of law-breakers â" and then you cash in on guilt. Now that's the system, Mr. Reardon, that's the game, and once you understand it, you'll be much easier to deal with.â

Comment Re: I am mad if I cant unplug my employee hotspots (Score 1) 129

If they connect anything that lives inside your network, at any time, or that even has a VPN connection your internal networks at any time, you have a security problem.

If they can physically do that, then you have a problem. I hear even Windows comes with IPSEC, maybe you could do something about that.

Comment Re:Tax (Score 1) 534

I'm gonna insert my reply to an earlier comment of yours here to save me time and space, and because it's a good preface to my reply to this comment anyway:

in other words, they are taxed on the stuff they should be taxed on,

No, these dodges should not exist.

and they are smart enough to not pay taxes they dont have to

Yes, you have this part right.

And now, my reply to this comment:

and if you burden corporations with higher taxes, the consumer pays more as the costs are passed down to the consumer
in the end, the people pay the taxes one way or another

No, you have this badly wrong. If you make corporations pay their taxes, then the costs are passed down to the consumers of their products. But if you don't, then the costs are passed down to every citizen.

Comment Re:physical access (Score 1) 375

Which could be a good argument for replacing X. It is rather old technology, perhaps it is time to update it to something newer, rather than clinging to it and claiming it is all one needs.

Or how about adding a protocol extension to deal with this security problem as has been done a number of times in the past for authentication. I don't understand why X11 seems to get special treatment here.

Program has security flaw. Response "has it been patched yet"

X11 has security flaw: we can't possibly patch it we must discard everything and start again.

There's certainly some things wrong with X11, but this is one which could be solved easily. It could, for example, be done by having a "kill all grabs" command which is available to the window manager.

Comment Re:And why is this? (Score 1) 431

This reminds me of an old tale.

Sun and Wind were arguing who was more powerful. Both argued at length and neither would accept the other one's arguments, so they decided for a competition. They saw a man walking across the land and Wind suggested that whoever gets the coat off him should be considered the most powerful one.

Sun agreed and Wind prepared for the worst. He started to blow and the winds picked up, he put more and more power behind it and soon a veritable hurricane was ripping at the poor man in his quest to pry that coat off him. But the more Wind blew, the tighter the man grabbed his coat and didn't want to let go, growing only more determined at staying warm and sheltered within his only protection from the elements that threw him about.

Soon Wind sat down, exhausted and wheezing. He laughed at Sun who was still sitting there, knowing that she could never succeed where he could not with all his might.

Sun did what Sun did best. She shone. She brightened up the day and warmth filled the air, her beams heating up the ground the man walked on and giving him warmth as well. She just sat there, waiting, providing the warmth every being needs.

And the man eventually decided it's too hot to wear a coat and took it off.

I leave the interpretation to the reader. It's not hard, but maybe we should still explain it to the DOJ, I doubt they'll get it.

Comment Uh. (Score 1) 375

Uh.

Why can't I have my screen locker have a passive grab on Ctrl+Alt+Delete or shift+altgr+control+` or whatever, using XGrabKey. That way if someone else installs a screenlock faker then I'll know because it won't respond to the magic key presses.

The thing is on Windows it never worked as well as it ought to. The reason is that if the screen said something like:

"pls entar u r passwordz to login"
[ password box ]
[OK]

"pls wate wile redirecting to http://scamsite.ru/yourbank"

"Pls entar u r bank passwrd thx"

an appalingly large number of people would have dilligently followed those steps. the ctrl+alt+delete thing was fine but required more knowledge than 99.9% of users had.

Oh and the active grab thing: if you ever hear a wayland dev tout that as a problem, please kick them in the nuts because it XFree86 USED to have a feature for killing grabs from a keystroke, until the fuckers who went on to develop Wayland decided we didn't really need it because "it would only be needed if a program is buggy". Well, no fucking shit hotshot.

Slashdot Top Deals

"Protozoa are small, and bacteria are small, but viruses are smaller than the both put together."

Working...