Slashdot is powered by your submissions, so send in your scoop


Forgot your password?

Slashdot videos: Now with more Slashdot!

  • View

  • Discuss

  • Share

We've improved Slashdot's video section; now you can view our video interviews, product close-ups and site visits with all the usual Slashdot options to comment, share, etc. No more walled garden! It's a work in progress -- we hope you'll check it out (Learn more about the recent updates).


Comment: Re:Two words (Score 1) 849

by Guanix (#28473503) Attached to: Nielsen Recommends Not Masking Passwords

I think the contribution of Nielsen's idea, if any, is to remind us all that security always involves tradeoffs. You're right that masking passwords provides some protection--most security measures, even the inane ones, provide some protection. You know, someone really could hide a bomb in their shoe.

But of course that is not the end of the story. Nielsen, and others such as Bruce Schneier, want us to ask how much security the solution provides, what the costs are, and whether it provides a good tradeoff. If shoulder surfing is relatively rare, and the possible harm for the site in question is small, and the costs are relatively large (lost customers etc), then maybe a site or program shouldn't mask passwords even if they provide some security.

Sure, Jakob Nielsen may be wrong about the tradeoff in this case, and may not have enough evidence to back up his arguments, but I would argue that pointing out that the solution provides a nonzero amount of security does not resolve the question.

Comment: Re:Damn! That may stop my plan...... (Score 3, Interesting) 527

by Guanix (#28270469) Attached to: Comcast Intercepts and Redirects Port 53 Traffic

Have you heard of IP over DNS? The DNStunnel software sends IP packets as TXT records over a real DNS, the client sends data in the request itself. Since these are real resolvable DNS records, proxying port 53 won't work. When I tried this software, I could only get a single stream over the tunnel, so I ran SSH over the DNStunnel and used ssh to forward a TCP port that I then ran OpenVPN on. This actually works, but it is very slow. And I can imagine that people would eventually find out because the wifi provider's DNS cache will fill up with IP data.

Comment: Re:stupid slashdot 'editors' (Score 4, Informative) 224

by Guanix (#20659789) Attached to: US Register of Copyrights Says DMCA Is 'Working Fine'
"Registrar" would make more sense, but check out this provision of the copyright code (17 U.S.C. 701):

All administrative functions and duties under this title, except as otherwise specified, are the responsibility of the Register of Copyrights as director of the Copyright Office of the Library of Congress. The Register of Copyrights, together with the subordinate officers and employees of the Copyright Office, shall be appointed by the Librarian of Congress, and shall act under the Librarian's general direction and supervision.
So it seems that the copyright act itself refers to her as the Register of Copyrights. The Oxford English Dictionary contains this use as "register, n. 2":

a. The keeper of a register; a REGISTRAR. (In common use c 1580-1800.)
United States

+ - McCarthyism 2.0?

Submitted by Anonymous Coward
An anonymous reader writes "The Register is running an interesting follow up story (previously mentioned on Slashdot) of the bomb scare in Boston this past Wednesday. For those of you who don't know, Boston was brought to a standstill on Wednesday by what amounts to a marketing misunderstanding when people mistook promotional neon signs as bombs. The blogosphere was abuzz with questions of the validity of these "bombs." What is dangerous here is the fact that these two non-American marketing freelancers may ultimately be punished (and possibly deported) when they very likely had no intent, nor even any reason to believe, that this marketing campaign would cause this type of commotion. If there intent was to create a marketing stunt where they designed a number of props that looked like bombs then this is something that should definitely be prosecuted. And, if these gorilla marketing agents knew that they were causing this scare and did not speak up, then this too should be prosecuted. Bomb threats should not be taken lightly, in all likelihood the city of Boston did the right thing. However, in their vigilance, these occasional bomb threat misfires will occur.

What is scarier here are the implications: "The government has ceased with even the formality of asking questions, instead deciding to take the most punitive route possible." Though it is very important that Mayor Menino is "going to take this seriously," this may very well be a situation where the city of Boston feels it has to prosecute-to-the-max because it has egg on its face. Taken a step further, if the government starts prosecuting without being thoughtful first, at what point does one go to jail because their neighbor "felt threatened" over the box of old electronic junk you accidentally left on your curb?"

+ - Anti-Scientology Activist Keith Henson Arrested

Submitted by
kulakovich writes "One of the founders of the L5 Society, Cryonics advocate, and well known anti-Scientology activist Keith Henson, was taken into custody yesterday in Arizona, on an outstanding warrant for picketing a Scientology office back in 2001. There is much concern over his current condition at this time due to medication requirements as well as fear for his well-being. He and his family had been receiving death-threats prior to the arrest. The Extropy Institute immediately set up a Henson Legal Defense Fund on his behalf. Henson is also known for his work with the US Congress on Lunar policy in the early 80s."

Is Computer Programming a Good Job for Retirees? 147

Posted by Cliff
from the never-too-old dept.
braindrainbahrain asks: "Ask Slashdot has been rife with career advice lately, so maybe I can get some too. I hit a milestone recently, the big five oh, and the realization of retirement is starting to settle in. The trouble is, I don't want to sit around, play golf, or even travel that much. I work in a technical field, but I have always enjoyed programming. Indeed, I do it as a hobby. I wonder what you readers would think about programming as a post retirement job. It seems well suited for a retiree, one could do contract work for a few months of the year, in some cases work from home even. By way of background, I have worked in hardware engineering for a very long time, and have pursued graduate study almost regularly (two Masters degrees so far). Should I begin preparing for a post-retirement career in computer science?"

+ - Vista the iPod Killer

Submitted by JMB
JMB (20661) writes "You know how we all thought the Zune was Microsoft's attempt to kill off the iPod? Not so. According to this item on Apple's site all you have to do is upgrade to Vista and your iPod goes ka-boom. From the article: 'Ejecting an iPod from the Windows System Tray using the "Safely Remove Hardware" feature may corrupt your iPod.' Now that's a feature!"
Technology (Apple)

+ - Apples reasons why a Mac is better than Vista.

Submitted by
antirelic writes "I just got this advertisement from Apple in my email. "It's time to get a Mac. If you're thinking of upgrading to Vista, you'll probably need a new computer. Why not get a Mac? It's simpler, more secure, and way more fun. And it works with the stuff you already have, like printers and cameras. So before you upgrade anything, you owe it to yourself to check out a Mac." Is any of this true? Is a Mac more secure than Vista and really easier to use and more secure?"

+ - Runner-Up of Man of the Year Jailed For Pedophilia

Submitted by Anonymous Coward
An anonymous reader writes "Acclaimed geneticist William French Anderson, who was runner-up for Time Magazine's Man of the Year in 1995, was sentenced to a 14 year jail term for molesting his assistant's daughter. Prosecutors argued that Anderson began molesting the girl when she was 10. She has since suffered depression and considered suicide. Anderson's lawyers argued that he is too valuable to science and medical research to be put in jail. Many of Anderson's colleagues, including a Nobel Prize winner, have sent letters to the court in support of him. His lawyers will appeal the sentence."

Computer's Heat May Unmask Anonymized PCs 146

Posted by Zonk
from the i-seee-you dept.
Virtual_Raider writes "Wired is carrying a story about a method developed by security researchers to identify computers hiding behind anonymity services. From the article: 'His victim is the Onion Router, or "Tor" — a sophisticated privacy system that lets users surf the web anonymously. Tor encrypts a user's traffic, and bounces it through multiple servers, so the final destination doesn't know where it came from. Murdoch set up a Tor network at Cambridge to test his technique, which works like this: If an attacker wants to learn the IP address of a hidden server on the Tor network, he'll suddenly request something difficult or intensive from that server. The added load will cause it to warm up.'"

Linux/Mac/Windows File Name Friction 638

Posted by Hemos
from the like-doing-it-with-sandpaper dept.
lessthan0 writes "In 1995, Microsoft added long file name support to Windows, allowing more descriptive names than the limited 8.3 DOS format. Mac users scoffed, having had long file names for a decade and because Windows still stored a DOS file name in the background. Linux was born with long file name support four years before it showed up in Windows. Today, long file names are well supported by all three operating systems though key differences remain. "

Notebook with Huge 20 Inch Screen Reviewed 307

Posted by ScuttleMonkey
from the desktop-replacement-not-laptop dept.
An anonymous reader writes "Trusted reviews has a look at the Acer Aspire 9800. This massive machine has a 20.1" screen, two 120GB hard drives in a RAID 0 array, super-multi DVD burner, analogue and digital TV tuners and an Intel Core Duo dual core CPU. And at over 17lb you can even use it for weight training!"

Porsche: there simply is no substitute. -- Risky Business