Slashdot is powered by your submissions, so send in your scoop

 



Forgot your password?
typodupeerror

Comment Re:Abandon ship (Score 1) 117

Now get up to the scale where my fingers can actually fit on a keyboard, physical keyboard wins hands down for speed and accuracy.

Bluetooth keyboards. They're easy enough to find.

I use one of these Bluetooth keyboards. It's nice to type on, but has got me some strange looks on the bus.

Comment Re:There's no doubt that... (Score 1) 1817

Suppose we get in a discussion and I don't agree with your points I could anonymously (!) mod you down which would destroy the discussion.

Suppose we don't get in a discussion and I don't agree with your points I could anonymously (!) mod you down which would destroy the discussion. That's currently permitted, and it has the same effect.

Comment Re:There's no doubt that... (Score 3, Insightful) 1817

Enable some javascript.

Ah, OK. I've only ever read Slashdot with Noscript because that's the only way to make it usable, I want to read threads, not click and shuffle and click and click and select and click again just to see everything.

So that's perhaps another biggie, at least as big as Unicode: Have a "just show me the damn discussion" mode where, if I click on a link to an article, I get to see all comments within my pre-selected threshold limits.

(I've been using Noscript on Slashdot for so long I forgot that there's an annoying alternative interface to it).

Comment Re:There's no doubt that... (Score 5, Insightful) 1817

Unicode support. This has been an open sore for years.

More generally, at the risk of sounding snarky, copy some of the stuff Soylent News has done, e.g. ability to moderate individual posts rather than having to scroll to the bottom and moderate all, ability to moderate in a discussion you've contributed to, etc. Soylent was forked to fix various Slashdot problems, and they've done a pretty good job of addressing the major issues.

Comment Re:This cannot happen accidentally (Score 1) 50

Yes it can. I get asked to do audits of crypto code and see stuff like this all over the place. You mention things like the Miller-Rabin test (I kinda like Frobenius myself) and the extended Riemann Hypothesis when the guy who wrote the code/made the change probably didn't get any further than using Google and copying the result from the first hit he found on Stackexchange, which copied it from somewhere else and got the endianness wrong or something (hmm, must find a machine with Mathematica and feed it in byte-reversed to see what drops out).

Comment Re:There seem to be a lot of these backdoors (Score 3, Interesting) 50

Given that it also used 512-bit primes, which are toy keys that were weak twenty years ago, it's more likely a screwup. Seeing messed-up crypto written by people whose crypto knowledge extends to reading the Wikipedia page on RSA and perhaps one or two chapters of Applied Cryptography is pretty much par for the course.

From a very brief Google of socat howtos, I couldn't see much about enabling or applying checking of certs, which means it probably doesn't do that either. In addition the advisory is pretty confusing, what does "OpenSSL address implementation" mean? Since the server supplies the DH values and OpenSSL itself has known-good DH values, why is there some other value hardcoded into socat?

Slashdot Top Deals

Old programmers never die, they just branch to a new address.

Working...