Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror

Comment my eyes, they burn (Score 1, Insightful) 660

You lost me at 'clueless about the implications of their work'. the crooks at AIG, JPMC et. al. lied about their involvement in the subprime mortgage crisis. many of these guys hold advanced degrees in finance, economics, etc. and they knew what the hell would happen. Come on now, not only does Congress need to stop enabling these Criminals by looking the other way (granting them a covert opportunity to recoup their loses), it's time We demand they prosecute them under the laws which match their Crimes- RICO. It's not just been Fraud and embezzlement- it's been extortion. Not just against their own 'customers', but against the entire citizenry of this country (and others) which taken in it's totality equals Economic Treason. They've not only endangered the US & World economy, they've been trying to cripple them by busting our knees to get the rest of the money out of Us all. In fact, Wall Street makes the 'Teflon Don' and the Gambino Crime Family look rather quaint, in retrospect. It is Cringely that is clueless yet again, not the other way around

Comment not a big deal (Score 0) 316

...in fact, I would *expect* Google to do this before implementing OpenID. The fact is, OpenID has some security issues:

http://www.gnucitizen.org/blog/hijacking-openid-enabled-accounts/
http://drupal.org/node/280592
http://seclists.org/fulldisclosure/2008/Aug/0123.html

What do you know, the last one was submitted by Google's own Ben Laurie of Google's Applied Security team. They have obviously been assessing the security of this product and we can conclude what the results were. There is no way Google will implement vulnerable code, if OpenID 1/2 is insecure (it is) and needs to be redesigned in order to become secure then so be it. The real problem IMO is that Microsoft *did* implement a system that is flawed.

When Google releases their (hopefully) secure version, I predict everyone will move to that and like it.

Slashdot Top Deals

You don't have to know how the computer works, just how to work the computer.

Working...