Please create an account to participate in the Slashdot moderation system

 



Forgot your password?
typodupeerror

Submission + - Mozilla to Support Key Pinning in Firefox 32

Trailrunner7 writes: Mozilla is planning to add support for public-key pinning in its Firefox browser in an upcoming version. In version 32, which would be the next stable version of the browser, Firefox will have key pins for a long list of sites, including many of Mozilla’s own sites, all of the sites pinned in Google Chrome and several Twitter sites.

Public-key pinning has emerged as an important defense against a variety of attacks, especially man-in-the-middle attacks and the issuance of fraudulent certificates. In the last few years Google, Mozilla and other organizations have discovered several cases of attackers using fraudulent certificates for high-value sites, including Gmail. The function essentially ties a public key, or set of keys, issued by known-good certificate authorities to a given domain. So if a user’s browser encounters a site that’s presenting a certificate that isn’t included in the set of pinned public keys for that domain, it will then reject the connection. The idea is to prevent attackers from using fake certificates in order to intercept secure traffic between a user and the target site.

The first pinset will include all of the sites in the Chromium pinset used by Chrome, along with Mozilla sites and high-value sites such as Facebook. Later versions will add pins for Twitter, a long list of Google domains, Tor, Dropbox and other major sites.

Submission + - Watch This Inventor Survive a Fireworks Blast in a Metal Suit (dice.com)

Nerval's Lobster writes: Labor Day is nigh, and with it the official end of summer. It’s time to pack away the umbrellas and beach towels, and perhaps spend a few minutes flipping through photos of all the fun times you had over the past couple months: the grilling, the trips, the fireworks oh yes, the fireworks Chances are pretty good that you’ve set off more than a few fireworks in your time. But Colin Furze, the British inventor and YouTube celebrity who once co-hosted Sky1’s Gadget Geeks? Well, he puts everybody’s love of fireworks to shame. He loves fireworks so much, in fact, that he built a giant metal suit so he could stand in the middle of an epic pyrotechnic display. No matter how good your own engineering skills (or strong your courage), it's inadvisable to try this at home. But it's sure fun to watch.

Submission + - Coffee Naps Better For Alertness Than Coffee or Naps Alone (vox.com)

An anonymous reader writes: Caffeine is a staple of most workplaces — it's rare to find an office without a coffee pot or a fridge full of soda. It's necessary (or at least feels like it's necessary) because it's sometimes hard to stay awake sitting at a desk for hours at a time, and the alternative — naps — aren't usually allowed. But new research shows it might be more efficient for employers to encourage brief "coffee naps," which are more effective at returning people to an alert state than either caffeine or naps by themselves. A "coffee nap" is when you drink a cup of coffee, and then take a sub-20-minute nap immediately afterward. This works because caffeine takes about 20 minutes to get into your bloodstream, and a 20-minute nap clears adenosine from your brain without entering deeper stages of sleep. In multiple studies, tired participants who took coffee naps made fewer mistakes in a driving simulator after they awoke than the people who drank coffee without a nap or slept without ingesting caffeine.

Submission + - Robot printer 'comes to your desk' with documents

mrspoonsi writes: Fuji Xerox has developed a new robotic printer that can move around a lounge or office to bring documents to the person who printed them. The printer is designed to be used primarily in public places as a way to keep sensitive documents secure. Sensors on the machine prevent it from bumping into people on the way. However, some analysts argued that the idea was not cost effective when compared with other secure printing methods. Fuji Xerox — a joint venture between the two firms — has been testing the printer this month at a business lounge in Tokyo. Each desk in the lounge is given a unique web address from which to print. Users access the address and upload documents to be printed. Once the printer receives the job, it moves to the intended recipient who then has to display a smart card to activate printing.

Slashdot Top Deals

Order and simplification are the first steps toward mastery of a subject -- the actual enemy is the unknown. -- Thomas Mann

Working...