The Register® — Biting the hand that feeds IT

Feeds

* Posts by g00se

13 posts • joined Monday 26th October 2009 18:22 GMT

g00se
WTF?

Untrusted?

>>

The majority of these exploits apply to client Java deployments, and can only be exploited through untrusted Java Web Start applications, and untrusted applets.

>>

Hmm. So that means *trusted* code can't use the vulns? That sounds counter-intuitive to say the least. What's more, Web Start apps and applets ordinarily can only become trusted by the user allowing them to run.

g00se
Linux

Rootable?

Are they rootable? Is IT rootable? If so, (i suppose depending on connectivity) i'm sure that would massively increase the interest value for us geeks

g00se
Linux

>>It uses a mixture of hardware and software lockdowns to keep out malware

For "to keep out malware", can we read "to keep the buyer from owning it"?

g00se
Headmaster

How it works

"The jQuery open source JavaScript development library is now running on 50 per cent of all websites"

No it isn't. It isn't running on ANY website. JavaScript runs in the browser, but can access stuff server side sometimes. Pedantry? Maybe, but perhaps it's better to foster a proper picture of how JavaScript works ;)

g00se

@Lee Dowling

"It acknowledges packets on the wire (electrically) and then loses them into the void somewhere inside the firmware. "

Would that be firmware that is closed source by any chance? Either way, I find it strange that such a project has seen fit to accept the provision of closed source blobs.

g00se
FAIL

>>Shylock uses a battery of tricks to escape detection by anti-virus scanners

But would possibly be detected by a little pattern matching against a Gutenberg edition of the works of one W. Shakespeare?

g00se

@Steven Knox

Which distro to pick is of course a concern but that's a separate issue. El Reg needs to come up with a policy on that

g00se
FAIL

No mention of Linux

Surely it's not too much trouble to throw in a Live disk and tell us how this hardware fares with the Linux distro in question?

g00se

Felching

Perhaps if this trend of self-defensive demands for source code continues it might be useful to employ the term 'felching' in this, er... cleaner context?

g00se
FAIL

No root login welcome

>>Windows machines for the vast majority of users should only be run in unprivileged mode, the authors also recommend<<

Best practice in Unix is to disallow root login. Is this even possible in Windows?

Of course, for most of its lifespan, root login has been the ahem... default in Windows and still is, though UAC has been shoehorned in at the last moment

g00se

IMAP problems

Switch to BT as your ISP Stuart - they don't support IMAP for non-business customers - problem solved ;-)

g00se

Stagnant protocol

Maybe stagnation of the app is a reflection of the stagnation of the protocols. Perhaps they should be looking at implementing different ones and simultaneously asserting an alternative nexus of control to the Benign Empire?

http://en.wikipedia.org/wiki/Google_Wave_Federation_Protocol

g00se

Wine

>>Technically correct, you can't run MS Office under it<<

Not even that is