Re: She probably has something
Can we go cruder?
14512 posts • joined 3 Jun 2008
Can we go cruder?
> which of the myriad of Java software the client wants me to install
LOL what? Use the latest JDK of course.
Here in our little IT shop, we decided to simply remove Java from our machines, eliminating one of the world's most popular hack targets.
"In order to be able to speak of not wanting to be a hack target, it is necessary to first know whereof you speak."
Maybe the days of Golang are coming.
Schools will keep java alive. I would love to purge my sisters computer of flash and Java and install no script but that would break the website my nieces use.
You fire blasters at 10 of them then 20 more come running through the next comment gate.
Normal. You are a sysadmin.
Stay in your Corner!
.Still waiting for anything of substance as for now there is only heavy breahting, innuendo and outlandish claims by brain-challenged churnalists
Especially as we know that three-letter agencies have had form during the last 4 presidencies of subverting, disrupting, arresting, inciting and spying on completely harmless citizen under the guise of "counterterrorism".with extreme claims of clear and present danger being served cold. Claims that then collapsed and were never heard of again.
Claim that the Democrats Sordid Core Dump has nothing to do with Russia by Robert Parry:
And, even though The New York Times and other big news outlets are reporting as flat fact that Russia hacked the Democratic email accounts and gave the information to WikiLeaks, former British Ambassador Craig Murray, a close associate of WikiLeaks founder Julian Assange, told the London Daily Mail that he personally received the email data from a “disgusted” Democrat.
Murray said he flew from London to Washington for a clandestine handoff from one of the email sources in September, receiving the package in a wooded area near American University.
“Neither of [the leaks, from the Democratic National Committee or Clinton campaign chairman John Podesta] came from the Russians,” Murray said, adding: “the source had legal access to the information. The documents came from inside leaks, not hacks.”
Murray said the insider felt “disgust at the corruption of the Clinton Foundation and the tilting of the primary election playing field against Bernie Sanders.” Murray added that his meeting was with an intermediary for the Democratic leaker, not the leaker directly.
If Murray’s story is true, it raises several alternative scenarios: that the U.S. intelligence community’s claims about a Russian hack are false; that Russians hacked the Democrats’ emails for their own intelligence gathering without giving the material to WikiLeaks; or that Murray was deceived about the identity of the original leaker.
F.U. Joerg and I hope you choke painfully on a ham sandwich.
Seriously, there STILL isn't any mentally sane way to enter reference information on Jimbo's Forever Train Ride. Hasn't been for 15 years or so.
On a site that insists on "citations" and "references" one would think they would get an ulcer, I mean an intern to work on it a bit for a few dollars. NOPE! NADA! NOTHING HAPPENS!
It's just an embarassement and reaching the "retarded bad" levels of the Firefox print menu or the file picker for that matter.
I we had regime-change in Russia, all of this could be avoided.
How we can we even know this is not fake news, or even a CIA operation to seed doubt and uncertainty? (The CIA is pretty good in these, running them on the national level? Yes we can!)
During the Bush years, I remember unsecure voting machines being fielded and not much peep was raised (someone raised a peep, but he later commited suicide just across the border in Mexico after telling his family he would be home soon. The FBI then forgot to take photos of the scene, or so I rememebr...)
There are quite a few nuclear-powered basements in the oceans.
Some are even loaded with planet fuckers. Now that's home defense!
> As impressive as the shuttle was, it was functionally unfit for purpose in almost every single way.
That's because it was mainly a political device (as well as meant for "cutting edge" civilian spaceflight as well as "fast turnaround" military spaceflight). A receipe for disaster.
First launch 1990. They don't fly too many missions for some reason.
I remember some comic from the early 90s where a neo-soviet satellite is blinded by a Pegasus-launched ASAT so that US B1s can enter Neo-Soviet Airspace unseen to drop bomb props on a city because POTUS wants a show of force because the Neo-Soviets are hacking the US, left, right, front and center. Unfortunately someone has replaced the props by actual VX-carrying ordinance to get some heat under the politicians' behinds. This leads to a red-phone call with the Neo-Soviet leader (who is likely an AI in any case). Can't even remember the name of the story...
I know for a fuckt that you never get totally sick of sick stuff.
No, Google's infrastructure runs Evernote.
Not the same as "controls".
Marv was pretty cool. One of the old-school "AI scruffies".
I don't know how to read him being mentioned in this piece though.
This sounds more like "The Color out of Space".
Do not ask me for my opinion. I do not know—that is all. There was no one but Ammi to question; for Arkham people will not talk about the strange days, and all three professors who saw the aërolite and its coloured globule are dead. There were other globules—depend upon that. One must have fed itself and escaped, and probably there was another which was too late. No doubt it is still down the well—I know there was something wrong with the sunlight I saw above that miasmal brink. The rustics say the blight creeps an inch a year, so perhaps there is a kind of growth or nourishment even now. But whatever daemon hatchling is there, it must be tethered to something or else it would quickly spread. Is it fastened to the roots of those trees that claw the air? One of the current Arkham tales is about fat oaks that shine and move as they ought not to do at night.
Is it as far out as Dhalgren?
I foresee a swarm of lawyers and a dearth of insurers on this genius non-self-driving-self-driving car thing. This gonna be gud!
> In France, Belgium, or Barcelona, you can totally bet on it.
Those are not self-driving. They are stolen, and a midget is driving them to the next ferry to Marrakech.
Tomorrow in the Mail:
PUTIN commandeers ZOMBIE AIRPLANES!
Running multiple copies of same service (software function) increases reliability and resilience.
This is about resilience, yes. But it does not have much to do with microsoervices.
Microservices are nice if you are implementing neurons or other silo-able stuff that is still able to function well when it has to throw data over the network. Anything with a adatabase generally won't fit.
The concept of Micro Service is nothing new, remember CORBA from the 80/90's? where the designers did envision many small software components communicating with each other over a shared bus.
No - that was about superceding the "socket" data exchange approach by offering remote procedure calls into objects somewhere on the (rather local) network (as in "Object Request"). RPC is still a bad idea in 2016 btw. Use message exchange instead of pretending a remote service is local.
Before coming to the workshop, please, install Oracle VM VirtualBox and Vagrant. Also, please download and install the virtual machine which will be used for the course (about 5GB), using the following commands from an empty folder (if you do not have wget on your machine, you can download the json file using your browser):
Level sounds good.
Is that a vulture I hear?
Without the music the film would have totally failed.
IT'S NOT AN ARTHOUSE MOVIE!!
This is the film for me. I like my moral messages to be down to earth: 'Never go anywhere near a war zone, for any reason'.
I think in Apocalypse Now, the message also was "War can be pretty exhilarating at times, just don't be a civvie" or maybe even "You could have won this if you had sold your soul to War God". The play was written by John Milius who was not exactly anti-war even though he took Conrad's "Heart of Darkness", exposing colonialism as source to evidently expose muscular (and morally corrupt) interventionism.
Milius had no desire to direct the film himself and felt that Lucas was the right person for the job. Lucas worked with Milius for four years developing the film, alongside his work on other films, including his script for Star Wars. He approached Apocalypse Now as a black comedy
Dodged a bullet here.
These were good times! Computers were manageable, Batman was in the movie theaters, playboy gals were beautiful and the summer was hot & long.
Jimmy Carter was underappreciated. Then he got rogered by an October Surprise of military incompetence.
Unfortunately the hijab factory workers turn out to be Zensunni, declare Jihad, upon which Fremen emerge from the galactic badlands and wreck the Empire's shit fiercely.
In the end, the Emperor is declared unfit for duty by the fanatics and replaced by a wiry juvenile badass. Then The Force is declared haram.
THE MERGED-UNIVERSE END!
> pro-democracy, anti-corruption groups in Ukraine
The whole country is just a pie for oligarchs, mobsters, extreme nationalists and possibly the "National Endowment for Democracy", what are you on about? I you expect DEMOCRACY! to spring up like that, especially after ultra-right-wingers were glorified in the "western free press" (complete with explained-away iconography) and are in control of security services, I have got a bridge to sell you.
They just got visa free travel for Europe as a show of solidarity, that's gotta count for something right?
> anti-Ukraine, pro-Russia team
What are you smoking during the day, then? How about "not interested in stirring up trouble in the ex-Soviet zone for the beautiful eyes of neocons".
"The West" (more like, the Blob) better normalize relationships, and then work from there. The unreal Freedom Fantasms of the up-militarized-by-NATO European supine and "self-interest-free" decision makers is especially disheartening.
Here is the full quote by Eugene Spafford:
This quote is about security of computer systems. It appeared in "Computer Recreations: Of Worms, Viruses and Core War" by A. K. Dewdney in Scientific American, March 1989, pp 110. It was later misquoted in the book @Large: The Strange Case of the World's Biggest Internet Invasion by David H. Freedman and Charles C. Mann. (The misquoted version refers to titanium and nerve gas -- I never said anything like that.) The original quote is: " The only truly secure system is one that is powered off, cast in a block of concrete and sealed in a lead-lined room with armed guards - and even then I have my doubts. "
Of course, the usefulness of such a system is marginal at best.
This is not the problem.
Crypto comes prepackaged nowadays (i.e. in libraries) so you are not supposed to roll your own or code up an algorihm described in a paper xeroxed from "Proceedings of...". You certainly need to understand the context in which this or that crypto algorithm shall be applied, and you may want to know what happens under the hood, and there is an excellent book on the subject: Applied Cryptography Arguably the book to which Schneier owes his Guru Status,written in 1996. (20th Anniversary Hardcover USD 70.00 WTF!)
However, the crypto sauce lives and is executed inside a technological/social/economic context. Bad thinking, bad implementations, bad politics, bad policy, bad economic pressures, bad languages, bad code, bad timing, bad luck, bad OSs, bad laws, bad deployment, bad developers and bad bosses will cause the deployed system to be insecure, even if the crypto is top notch.
Indeed, there is a book on the subject: Secrets and Lies, also by Schneier (written in 2000? so long ago already?), in which he tells people that crypto is not a silver bullet at all, contrary to what he believed when he wrote Applied Cryptography. The introduction is still as important and readable as it was back then.
Ah! Good idea. Evident in retrospect...
"The MD5 hashing algorithm has been considered not just insecure, but broken, for two decades," says Ty Miller, director of Sydney-based security firm Threat Intelligence, noting that MD5 collision vulnerabilities were found in 1996 with practical attacks developed in 2005.
Which is COMPLETELY irrelevant when talking about salted and hashed passwords.
Some director of a security outfit (ok, he's just the director, tech knowledge may not be his strong point).
The only problem with MD5 here is that it can be computed too efficiently (and then you get a made-up Yahoo account)
However, collisions are not an issue for password hashing. Password hashing requires the hash function to be resistant to preimages, not to collisions. Collisions are about finding pairs of messages which give the same output without restriction, whereas in password hashing the attacker must find a message which yields a given output that the attacker does not get to choose. This is quite different. As far as we known, MD5 is still (almost) as strong as it has ever been with regards to preimages (there is a theoretical attack which is still very far in the ludicrously impossible to run in practice).
This I don't understand. Maybe it's late?
Passwords were hashed using the easy-to-subvert MD5 hash. Reg tech staff, on learning of the breach, say they started using more secure ciphers years before this breach.
Why is Reg tech staff tasked with implementing Yahoo ciphers??
And yes, 10⁹ user accounts sounds more like 10⁹ IoNT (Internet of Needful Things) accounts.
One up for the "gig economy". (Who coined that word?)
> Linux vs Windows vs OSX vs BSD.
Silly thing? About as silly as a discussion about Soylent Green vs. homegrown veggies.
Thumbs down, eh?
The multiculturalism, it burns!
But you cannot just walk into the Jewish religion. This ain't Islam (which was cunningly engineered for maximum propagation).
(Ok, you can, but "I elect to become one of the Chosen People according to Book #1" just doesn't sound right, eh? Better have the correct DNA for better soul security, too)
My feeling is that every Windows PC should be supplied with a short, helpful user guide to the shell commands that may be needed, and how to use them, in case of emergency.
It's almost as if you wish the old DOS days to be back!