Posts by g00se
13 posts • joined Monday 26th October 2009 18:22 GMT
Untrusted?
>>
The majority of these exploits apply to client Java deployments, and can only be exploited through untrusted Java Web Start applications, and untrusted applets.
>>
Hmm. So that means *trusted* code can't use the vulns? That sounds counter-intuitive to say the least. What's more, Web Start apps and applets ordinarily can only become trusted by the user allowing them to run.
Rootable?
Are they rootable? Is IT rootable? If so, (i suppose depending on connectivity) i'm sure that would massively increase the interest value for us geeks
>>It uses a mixture of hardware and software lockdowns to keep out malware
For "to keep out malware", can we read "to keep the buyer from owning it"?
How it works
"The jQuery open source JavaScript development library is now running on 50 per cent of all websites"
No it isn't. It isn't running on ANY website. JavaScript runs in the browser, but can access stuff server side sometimes. Pedantry? Maybe, but perhaps it's better to foster a proper picture of how JavaScript works ;)
@Lee Dowling
"It acknowledges packets on the wire (electrically) and then loses them into the void somewhere inside the firmware. "
Would that be firmware that is closed source by any chance? Either way, I find it strange that such a project has seen fit to accept the provision of closed source blobs.
>>Shylock uses a battery of tricks to escape detection by anti-virus scanners
But would possibly be detected by a little pattern matching against a Gutenberg edition of the works of one W. Shakespeare?
@Steven Knox
Which distro to pick is of course a concern but that's a separate issue. El Reg needs to come up with a policy on that
No mention of Linux
Surely it's not too much trouble to throw in a Live disk and tell us how this hardware fares with the Linux distro in question?
Felching
Perhaps if this trend of self-defensive demands for source code continues it might be useful to employ the term 'felching' in this, er... cleaner context?
No root login welcome
>>Windows machines for the vast majority of users should only be run in unprivileged mode, the authors also recommend<<
Best practice in Unix is to disallow root login. Is this even possible in Windows?
Of course, for most of its lifespan, root login has been the ahem... default in Windows and still is, though UAC has been shoehorned in at the last moment
IMAP problems
Switch to BT as your ISP Stuart - they don't support IMAP for non-business customers - problem solved ;-)
Stagnant protocol
Maybe stagnation of the app is a reflection of the stagnation of the protocols. Perhaps they should be looking at implementing different ones and simultaneously asserting an alternative nexus of control to the Benign Empire?
http://en.wikipedia.org/wiki/Google_Wave_Federation_Protocol
Wine
>>Technically correct, you can't run MS Office under it<<
Not even that is
