Forgot your password?
typodupeerror

Comment Privacy is long since gone (Score 2, Informative) 47

Every web site needs your phone number, every online order... Businesses don't take cash any more. Every web site tracks you and sells data to the brokers. Only Linux installs without an email address and phone number for 2FA and password recovery. Video games, every chat app (maybe not mumble?), every birdhouse camera, even the freaking doorbells want an account! Eye glasses are doing face recognition!

This fight was lost decades ago, and now we have to live with it.

Comment Re:So, how does that cause privilege escalation? (Score 2) 23

At least on my systems you need to be root do to anything with nf_tables. Is this some distro specific permission stupidity?

Maybe. There's a feature called user namespaces in Linux that effectively allows an unprivileged user to act as if they were a privileged user within a specific environment. (Basically, containerization.) Within such a namespace, a non-privileged user could conceptually access nf_tables as if they were a privileged user. In theory this would only allow them to add additional filters within the namespace, but the vulnerability here can provide direct access to kernel memory.

Some distros add additional layers of security to prevent flaws like that, blocking access to nf_tables even within a namespace, but the vulnerability links to ways around those. (Link to the Wayback Machine from the source vulnerability disclosure.)

It's possible your distro may be secure - or it may not be. It depends on what features are enabled.

Comment Re:That's creepy (Score 1) 39

Only the sender and recipient have they keys to decrypt the messages on device; Apple does not.

Which is great, when they're in transit. But once they're on-device, they're decrypted, and then Apple has access to them.

We know this, because there have been court cases where iCloud-subpeonaed iMessage messages were presented as evidence.

Just because the transit is secure, doesn't mean the endpoints are.

Comment Re:that is a lot of land if my calcs are correct (Score 1) 103

^^ He is right.

I didn't believe this. My retort was going to be a sarcastic "Oh yeah, that's why we see so many farms built sunshades over their crops :eyerool" but apparently it wasn't worth doing before. But now that your sunshade *also* produces power, it is suddenly worth the investment.

I still question what it does to the growing season though. While I can understand why Texas might have plenty of sunlight, New England is just on the cusp of having a growing season that is too short to be profitable. Some places are trying to grow tomatoes in the frost.

Comment Re:Global competition (Score 1) 130

Time zone alone is enough to make them dislike that arrangement.

It should be, but it is not. Sooo many companies think they can hire a senior engineer in the US, then 5 cheaper engineers in India, and just hold a "morning meeting" and everything is fine. It's really crazy how naive companies are to the time zone issue. I've told them to hire in Brazil, Mexico, or Argentina instead of India but there are so many fewer contractors there. One company had a lead in Hawaii!! I had a team split between California, Ireland, India, and Kuala Lumpur and the upper management pushed this as a cost savings plus 24/7 development!

Comment Re:Weaponization of lockouts (Score 1) 66

DVRs were the starting point. The namesake for what you're talking about, tivoization, is Tivo, the DVR that existed way back when TV was still analog and being displayed on CRTs.

It's why the GPLv3 was made: to add clauses to forbid tivoization. Instead, a lot of the open source community moved in the opposite direction, moving to licenses that allowed companies even more freedom to lock up their code.

At some point people have to learn and fight back.

Good luck. This is not a new fight by any means. You could argue that the FSF has been fighting it for almost half a century. People by and large do not care.

Comment Re:Win the battle, lose the war (Score 3, Insightful) 66

More likely they'll separate the OS and the TV code so they can ship the open source OS along with their closed source software

I'd be amazed if this wasn't already the case. We've already been through this with Tivo, it was one of the reasons behind the creation of the GPLv3. Tivo based their DVRs on Linux, and provided downloads of the Linux code. But their DVRs used hardware DRM to ensure that only code signed by Tivo would run, making it so that even with the open source code, you couldn't run changes on the hardware.

From what I can tell, Vizio is doing the same thing, but isn't providing downloads to the kernel code they're using. It's possible that there's some proprietary hardware drivers that they don't want to release code to, but Nvidia has already show how to work around that.

I expect the end result to be like Tivo: a bunch of archives of the open source software used in the TV, but none of the code required to make it useful and no signing key necessary to allow any changes to run on the TV itself.

Comment Re:Federal Bribery and Taxpayer Abuse. (Score 1) 101

Every republican that acts like it's bad, probably voted for it. Every democract that speaks out against it probably voted for it.

You can't count on voting records to mean anything, thanks to the "designated villains:" the politicians whose job it is to tank a law that a party wants to be on record as having voted for, but don't want to pass. We're watching this happen right now with votes on the Iran war. Democrats don't want them to pass. What they want is to be on the record as being against it and want Republicans to be on the record as supporting it, even though there is no chance they'll do anything to stop it if they get the power to do so.

Both sides play games like this, with the end result being that only laws that have the support of large donors having any real chance of passing. Who votes for and who votes against is always carefully calculated to let vulnerable politicians give the appearance of supporting things constituents support, while never needing to support those things in actual fact.

Comment Apple? Screwing over a partner? (Score 1, Insightful) 15

Wow, Apple, screwing over a partner? Who ever could have seen this coming?

I don't understand why anyone would ever partner on Apple on anything. They are notorious for screwing over their partners at this point. There's even a term for it, "Sherlocking." People seem to have forgotten that Apple's "privacy" stance originated as Steve Jobs not wanting to share any of the data "Apple owned" with anyone else.

Comment These agencies have only gotten worse (Score 5, Insightful) 75

20 years ago I thought these agencies were incompetent. Now I know that it was actually their peak. The FCC of prior administrations would document their goals, send out a notice for public comment, write a proposed rule set, hold a hearing, the make a rule. Now they make a rule, and everyone goes "That doesn't even make sense" then they switch it. It's not just the FCC: It's the DOJ, DHS, EPA, etc.

Comment Re:Why would a faster CPU revive demand? (Score 1) 89

I'm really not sure why they bothered to rev the CPU.

In theory I think it was more energy efficient, giving them a very slightly longer battery life. Plus there were probably supply chain reasons for it too, such as allowing them to stop making the older chip while continuing to make the Vision Pro.

The Vision Pro has always struck me as a device in search of a purpose. I think Apple was hoping someone else would figure out what it was useful for an then swoop in and Sherlock them, but so far, no one really has.

Comment Re:Ideologically fueled insanity. (Score 1) 287

It is a vast majority. The midterms won't go like people on the left expect. There's one group that's hated more than just about anyone else in polls of Americans: Democrats. They manage to be less popular than Trump and less popular than Republicans.

People may not be terribly happy with Trump and the way things are currently going, but it won't take too much to remind them how much worse things were when Democrats were in control.

Despite his current negative approval rating, Trump manages to be one of the most popular politicians in America right now, even with a net negative approval rating. That mostly because Americans just do not like their current politicians than Trump, but ultimately, there's a reason Trump won in a landslide. Americans may not really like Trump, but they loathe the alternatives.

Comment Azure & dual-stack is the problem (Score 1) 73

I have a need for thousands of VMs for a load test in Azure. But Azure requires dual-stack for IPv6 to work -- which completely defeats the purpose! The DevOps team tells me we are out of IPv4 addresses. If everything IPv6 also requires an IPv4 address, then IPv6 is useless. I am told that AWS VMs do not have this problem.

Comment Re: It's easy to understand how this is happening (Score 1) 51

This is a valid retort. But let us not think that lawyers are struggling: once they get to be a "partner" in a firm they are likely making $1 million/year. And the entire context of the discussion is that they aren't relying on staff like they used to. Back in 1980, a lawyer had staff members who ran down to the court house to get documents, bring them back, photocopy them, staple them, file them, make phone calls. Now all of that is 100% automated, plus now they have AI.

I'm not sure the legal overhead is quite what it used to be.

Slashdot Top Deals

Earth is a beta site.

Working...