Follow Slashdot stories on Twitter


Forgot your password?

Comment: Re:Definitely interested in this... (Score 1) 170

by bwcbwc (#48874019) Attached to: Hands On With Microsoft's Holographic Goggles

Granted this is just an interesting concept at the moment, however I think Microsoft may have something worthwhile here. The only thing is lacking (or missing rather) is a tactile interface - so that one could "feel" virtual objects.

I'll be paying attention to this, because I think this could be a game changer.

It's probably more than just a concept. They're marketing it like it will be out for holiday season 2015. It looks like they view this as the "killer app" for Windows 10. The closing of the ad shows both the Windows 10 and Microsoft logos in sequence.

I wonder how it'll play with an HP Sprout or a 3-D printer.

Comment: Re:haha (Score 3, Interesting) 114

by bwcbwc (#48644401) Attached to: Google Sues Mississippi Attorney General For Conspiring With Movie Industry

Google is lobbying the AG's themselves, but they seem to be on the defensive. From Ars:

Several weeks later, a meeting took place between Google executives and Connecticut Attorney General George Jepsen. The same morning the meeting took place, MPAA's Perrelli was informed about it by two attorneys at the AG's office, who offered to send Google's presentation to Perrelli. Jepsen reached out to the MPAA, seeking demands that he could press against Google.

The article makes clear that many AG offices seem to be favoring the MPAA side, even after hearing from Google. I'd be really interested to see a survey of who's funding election campaigns for all state AGs in the country. Follow the money and see what shows up.

Comment: Re:Every 30 days. (Score 2) 247

by bwcbwc (#48530151) Attached to: Ask Slashdot: Convincing My Company To Stop Using Passwords?

Maybe, as long as the sentence isn't a quotation from anything online or exceeds 50 characters or so. Dictionary attacks use entire phrases now, but they still don't go beyond a character limit that's fairly low compared to entire sentences.

Some additional password fuzzing techniques to consider.
- Putting nums or special characters between syllables in words, not just between the words.
- Using multiple specials/nums between each word.
- Strange uses of spaces and punctuation.
- There are 2 additional ways to encode alpha characters as numbers besides 1337-speak. Use alternate means.
- use puns or homophones to make your phrase less likely to match a dictionary.

As far as the OP, there are some things that your company can do to improve security without completely abandoning the passwords. They may find some of these more palatable:
- Instead of sending new password direct to user, send an access code to the user's manager. User has to request the access code from the manager, then use the code to login to the site that gives them their temporary password. This has the additional advantage of bringing to manager's attention which employees are particularly bad at remembering their passwords, and who probably need more attention to assure they don't have any sticky note reminders on their desktop.
- Rather than use full 2-factor authentication, just enable a standard password locker software to install on each employee's computer and give them a flash drive to host their password file. This is a lot cheaper than buying customized smart cards or key dongles, and is significantly more secure than what you have now, especially if they use the random PW generators that most lockers make available.

Comment: Re:is it really bad in the first place? (Score 1) 342

by bwcbwc (#48498355) Attached to: Breath Test For Pot Being Developed At WSU

Speaking of using misleading statements, you should make clear that NIH article states that THC does impair, although with the disclaimer that pot smokers tend to be able to compensate for their impairment:

"Detrimental effects of cannabis use vary in a dose-related fashion, and are more pronounced with highly automatic driving functions than with more complex tasks that require conscious control, whereas with alcohol produces an opposite pattern of impairment. Because of both this and an increased awareness that they are impaired, marijuana smokers tend to compensate effectively while driving by utilizing a variety of behavioral strategies. "

This bears out some of the anecdotal evidence from LEOs in the thread above.

Comment: Re:is it really bad in the first place? (Score 1) 342

by bwcbwc (#48498255) Attached to: Breath Test For Pot Being Developed At WSU

For a very drunk person a curve in the road or a traffic light turning yellow constitutes "something unusual" occurring. Weaving in and out of lane or running a light is a pretty sure indicator and will get you pulled over by any cop that sees you. The breath test is really just the extra bit of "scientific" evidence to back-up the officer's initial probable cause. Or another way of looking at it, the DWI charge is just an enhancement of the actual crime of failing to maintain a lane or running a red light.

Of course, when they set up sobriety checkpoints and they stop you without probable cause, they also catch the folks who aren't particularly impaired but have have alcohol on their breath and fall above the magic 0.10 or 0.08 blood alcohol threshold.

The thing is that alcohol is proven to impair most people's driving, in many cases severely - to the point where it's worth catching them before they drive erratically and risk other peoples' safety. You can argue whether 0.08 BAP is too low, but there should be some threshold. For pot, the evidence is less clear. The THC threshold in Washington's law is most likely a political bone thrown to conservatives who abhor the idea of legalization in the first place.

Heard that the next Space Shuttle is supposed to carry several Guernsey cows? It's gonna be the herd shot 'round the world.