* Posts by phuzz

6734 publicly visible posts • joined 23 Feb 2010

London's top cop isn't expecting facial recog tech to result in 'lots of arrests'

phuzz Silver badge

Re: The spectre of Charles De Menezes has no face...

British Prime Ministers have been proving for a while that gender is no barrier to being an arsehole.

Bankrupt Aussie Hells Angel scoops £750k lottery jackpot

phuzz Silver badge

Re: "Buying" a ticket is a classic money laundry method.

Or you could put $4000 into a London bank and have a clean $4000.

I'm not sure why you got a downvote for this, apart from assuming that a bank wouldn't charge as many fees as possible on any transaction. For what it's worth HSBC were charging approximately 20% to launder money.

Of course, HSBC got caught and got fined $1.9 billion, which sounds harsh, until you realise that all charges were dropped in exchange for just five weeks worth of profits. Too big to fail and too big to jail.

Call your MEP! Wikipedia blacks out for European YouTube vote

phuzz Silver badge
Thumb Down

Re: The problem I have so far...

You can get a downvote for saying the sky is blue. I'm not sure if it's bots or just arseholes, but it's a rare comment that doesn't get a single downvote.

Vodafone drank Facebook's network Kool-Aid … and LIVED!

phuzz Silver badge

Backhoe is Americanish for the rear digger on a JCB

They're also known as 'cable finders', because if you're not sure where your fibre connection is buried, the digger putting in an unrelated pipe will almost certainly find it (and destroy it).

Google weeps as its home state of California passes its own GDPR

phuzz Silver badge
Black Helicopters

Re: Zuck on that Bitch!

"the CIA does NOT have jurisdiction to officially operate on American Soil"

That's a very different sentence from "the CIA does not operate on American soil". The first sentence is true, the second sentence though...

(And it's probably better to compare the CIA with the FBI. Roughly speaking, the FBI do domestic, while the CIA does overseas. The NSA can spy at home and abroad, but their main focus is abroad.)

And that's now all three LTE protocol layers with annoying security flaws

phuzz Silver badge

Re: "5G will hopefully fix it"

From TFA:

However, the current 5G specification does not require this security feature as mandatory, but leaves it as optional configuration parameter.

So lazy/cheap operators aren't going to enable this, plus a stingray type device is obviously not going to enable this, making a downgrade attack easy.

(Well, easy if you've got a few grand's worth of gear, but what costs $4k today will be $400 in a few years time.)

Automated payment machines do NOT work the same all over the world – as I found out

phuzz Silver badge

Just pick something easy like 12345.

You can't use that one though, that's my PIN.

Et tu, Gentoo? Horrible gits meddle with Linux distro's GitHub code

phuzz Silver badge

Re: No chain of trust?

From TFA:

"Since the master Gentoo ebuild repository is hosted on our own infrastructure and since GitHub is only a mirror for it, you are fine as long as you are using rsync or webrsync from gentoo.org," Warner said."

So yeah, there's a chain of trust, unless you chose not to follow it and to download from Github instead.

Startup bank Monzo: We warned Ticketmaster months ago of site fraud

phuzz Silver badge

Re: Ticketmaster / Live Nation

I can't remember the last time I bought something via Ticketmaster, but I assume they're still charging you loads for a ticket, and then adding mandatory booking fees and then postage fess on top of the price?

Funny how my local ticket shop gets away with just charging a few quid for postage, with no booking fee at all.

Support your local venues, support your local ticket shops.

Google Cloud CEO admits: Yeah, we wanted GitHub too. Whatevs

phuzz Silver badge
Alert

"Changing the name so it doesn't sound like a hangout for old codgers"

Not enough people are talking about this important issue. Although I'd have phrased it as 'a dating site for old codgers'.

That'll learn ya! Data watchdog spanks two Brit phone botherers

phuzz Silver badge

A lot of people in the UK don't have landlines these days. Although the people that do tend to be older, and as you point out, they're often the most at risk from scams.

I should probably look at getting one of those phones for my folks...

phuzz Silver badge

Re: Honestly..

Or take the middle approach, and just leave them on the line. Let the keep talking to thin air and keep wasting their time and hopefully money.

Is it a bird? Is it a plane? Is it a giant alien space cigar? Whatever it is, boffins are baffled

phuzz Silver badge

"In that case at 235M X 35M we really don't want to upset the owners."

Or we could try selling them an oil tanker or two, they're probably the right size...

So woke: Microsoft's face-recog can now ID more people who aren't pasty white blokes

phuzz Silver badge

You don't need to cover your whole face, just a few strategically placed sections to throw the computer off.

For example.

Possibly makeup that only showed up under IR, would mean you could look normal to humans, whilst confusing cameras.

BlackBerry KEY2: Remember buttons? Boy, does this phone sure have them

phuzz Silver badge

Re: Phone cameras

Same here, I'd be happy with a phone that was, eg 15mm thick (my current one is about 10mm) and that used all that 5mm to cram in more battery (and possibly a better camera lens).

I know I'd be happy with a 15mm phone because I used to own phones that were much thicker than that (an original 3310 was 20mm thick for example).

Galileo, here we go again. My my, the Brits are gonna miss EU

phuzz Silver badge

Re: Fgs

"Sorry, but I don't believe in a benevolent God, nor in a benevolent EU."

Instead you believe that the rest of the world will be benevolent.

At least with the EU we know we're going to get, for example, contracts to build Galileo satellites because we're helping to pay for it. There's not much chance of getting a contract to build GPS or Beidou satellites, and that low chance doesn't go up if we leave the EU.

Microsoft has another crack at fixing Chrome problems in Windows 10

phuzz Silver badge
Stop

Re: !

Hey now! Edge is a perfectly acceptable way of downloading Firefox or Chrome.

(It'll also load the odd site that is too old and broken to work on Firefox or Chrome, but that's hardly an endorsement. I keep IE around for the same reason, but that hardly makes it useful.)

Crime epidemic or never had it so good? Drilling into statistics is murder

phuzz Silver badge

Re: We need gunlaws like in the US to fight crime

I'm not sure why everyone has jumped from "murder rates are (possibly) increasing" to "I need to defend myself from random criminals".

The statistics are pretty clear on this, across all countries; you're most likely to be murdered by someone close to you. A pissed off spouse, a jealous sibling, a jilted lover, these are the people you should be wary of, not a hypothetical burgler.

And if you keep a gun in your house, guess what you're likely to be murdered with?

Firefox hooks up with HaveIBeenPwned for account pwnage probe

phuzz Silver badge
Headmaster

Re: Oh Goodie

Since they dumped the old extension tech in FF57, Firefox has been using less CPU and memory. Last time I checked it was using quite a bit less memory than Chrome for the same bunch of tabs, but that was about a year ago, I should probably test again.

Or I could just hold an opinion based on no data whatsoever like you I suppose, this is the internet after all.

Press 1 for automagic K8s cluster. Press 2 or 3 for complex Kubernetes

phuzz Silver badge

I suppose if you wait long enough, all acronyms in IT get reused, but I keep assuming that K8 is referring to the AMD K8 architecture that brought us the Athlon64, back the last time that AMD was making competitive CPUs.

It's not really explained what K8 is supposed to refer to in the article so I guess I'l keep on assuming it's an old CPU architecture.

German researchers defeat printers' doc-tracking dots

phuzz Silver badge

Re: GDPR?

Presumably the argument is that if you buy the printer, and hand out print-outs, then it's you spreading your own personal information. Perhaps you could sue yourself?

Reality Winner, liberty loser: NSA leaker faces 63 months in the cooler

phuzz Silver badge
Thumb Up

"Trump-backed entertainment channel Fox News"

Almost hid that bit of snark there elReg ;)

Or should I say 'Vulture-backed IT news site, elReg'.

UK Foreign Office offers Assange a doctor if he leaves Ecuador embassy

phuzz Silver badge

Re: Many things but not a traitor to the US

"That never prevented American-born Irish William Joyce (Lord Haw-Haw) being executed as a traitor by Britain, despite never having been British."

He had had a British passport (which he'd lied about his nationality to get), and the court decided that that made him a British citizen and thus a traitor. He appealed but was turned down, so legally yes he was a British citizen, as far as the British judicial system of the time was concerned.

WPA3 is the magic number? Protocol refresh promises tighter Wi-Fi security

phuzz Silver badge

Re: ROFL

"Hands up how many of you run a separate (secure) router INSIDE of the ISP provided one that does get upgrades?"

We did, until an obscure bug in the Virgin (not-so)Superhub would drop our connection every fifteen minutes until we took it out of modem mode and removed the proper router.

It's probably fixed not, maybe I should have another go at setting it up.

White House calls its own China tech cash-inject ban 'fake news'

phuzz Silver badge

Re: Bah!

You know, if the wall went along the Canadian border as well, and then down both coasts, all finished off with a big roof right over the top, then I think the rest of the world might happily chip in. As long as there's no doors left.

UK taxman has amassed voice profiles of 5.1 million taxpayers

phuzz Silver badge

"HMRC ... is developing a new process which will be operated on the basis of the explicit consent of the customer."

And how will that work?

".. if you do not wish for your voice ID to be recorded, please hang up now"

Yep, that'll be really helpful when you need to get your taxes sorted.

GDPR forgive us, it's been one month since you were enforced…

phuzz Silver badge

Re: disappointed...

I was surprised by how many recruitment agencies had picked up my CV from somewhere, and were sheepishly sending me GDPR emails, asking pretty-please could they keep my data. My 'unsubscribe' finger got a lot of work out (not that I subscribed in the first place).

Software changed the world, then died on the first of the month

phuzz Silver badge

Re: Not quite the end of the month....

If you're only introducing one bug per version, then you're doing pretty well.

Norwegian tourist board says it can't a-fjord the bad publicity from 'Land of Chlamydia' posters

phuzz Silver badge
Pint

Re: At 11 quid a pint

Mind you, I'd expect large families from those that do pair off.

After all, what else are you going to do in the evenings if going down the pub is too expensive?

Have YOU had your breakfast pint? Boffins confirm cheeky daily tipple is good for you

phuzz Silver badge
Unhappy

Re: A breakfast pint?

If I start drinking before about 5 then it'll end up being an early night for me. It's terrible, I'm not even 40 yet and my drinking levels are below when I started :(

Accountants HATE them: Microsoft's Xbox harnesses blockchain to pay games publishers

phuzz Silver badge

Re: Why blockchain?

I think you might have actually hinted at the answer to your own question.

As we know, Microsoft prefer to use their own products in house. I'm guessing someone at MS had a bright idea for a blockchain based accounting system (based in the cloud for added buzzwordiness), and they looked around the company until they found a problem that it could be bodged into solving.

In this case it happened to be the Xbox royalties division who got to be the guinea pigs.

By gum, that's chewy: Samsung's NF1 fattens M.2 card capacity with wider gumstick format

phuzz Silver badge

Re: Another standard?

It looks like you could bodge-fit one into a current M2 slot, depending on the components around it.

How a tax form kludge gifted the world 25 joyous years of PDF

phuzz Silver badge

Re: PDF can be cool... if you stay away from Adobe

Wait, wasn't it PoC||GTFO who produced a PDF, that also functioned as a valid NES ROM that would display the MD5 sum of itself?

Oh, yes it was:

Technical Note: This file, pocorgtfol4.pdf, is a polyglot valid as a Nintendo Entertainment System (NES) ROM cartridge, a PDF document, and a ZIP archive. We collided 9,824 MD5 block pairs to place the hash of this document on its front cover and the title screen of the NES game, but only 609 of them made it to the final release.

That's damn impressive.

(source)

Atari accuses El Reg of professional trolling and making stuff up. Welp, here's the interview tape for you to decide...

phuzz Silver badge
Gimp

Re: Oh how the might have fallen...

"How many on-board MIDI ports does your Amiga have?"

How many Atari owners used theirs?

Besides, it was only about £20-30 for a MIDI adaptor for the Amiga, which is inexpensive compared to the cost of the rest of kit you'll be wanting to hook up to it.

(This is why I don't get too partisan about Mac vs Windows vs Linux, none of them compare to the Amiga in my eyes)

NASA eggheads draw up blueprints for spotting, surviving asteroid hits

phuzz Silver badge

Re: 2 points here

"Because there are profits to be made spotting asteroids?"

Well, if you're into mining them, the ones that are already heading at the Earth will be easy to fly to (and hopefully re-direct).

That said, the only private entity I know of currently tracking asteroids is the B612 Foundation, but they're a non-profit just trying to keep us all safe.

Microsoft open-sources UI Recorder tool for Windows 10 developers

phuzz Silver badge
Facepalm

Re: For people who can’t be bothered building it themselves from the source.

Sure, just running a random executable is unsafe, but how many people can say that they read through the source of everything they've ever copied off github? Or did you just blindly make install that shit?

And that's without even getting into copy/paste hijacking.

Microsoft Edge bug odyssey shows why we can't have nice things

phuzz Silver badge
Gimp

Next time I see a comment saying something like "Microsoft saying they support open source is just part of their evil master plan!", I'm going to point at this:

"Microsoft's security team don't have visibility into Edge security issues"

MS is a massive organisation, and most of the time the left hand have no idea what the right hand is doing, and neither of them have even realised what the feet are up to.

This is why it's possible for the same company to be actively trying to crush all perceived competition, whilst at the same time (eg) contributing to the Linux kernel. It's not a nefarious plan, it's just different departments with no communication.

Microsoft CEO wades into ICE outcry: Cool it, we only do legacy mail

phuzz Silver badge

Re: Avoidance

"the UK's has been awash with asylum seekers who typically use this device to get into the country, fail their application [...] and just disappear."

In 2017 26,000 people applied for asylum, of those, the majority (14,000) were granted asylum. There's doesn't seem to be any hard statistics on what happens to people who's claims are denied, but in 2017 almost 27,000 people were detained, so it's unlikely all, or even most, people who fail to successfully claim asylum, manage to "just disappear".

(source and on an IT note, it seems the government provides it's figures in .ods format, rather than .xls. Who knew? Other source)

JURI's out, Euro copyright votes in: Whoa, did the EU just 'break the internet'?

phuzz Silver badge

Re: Hand Off My Internet

"The Internet and World Wide Web are [...] a decentralised, mesh based network,"

It might look that way from a distance, but when you look closer you'll see that generally internet connections are star shaped networks, with an ISP having all their customers connecting to them, and only a small number of routes out. Likewise, most links between cities and countries all come together in peering exchange points, and of course submarine cables tend to follow similar routes, and land at the same places.

For these words of mine to reach you, most of the way they'll be travelling over corporate owned networks and systems, only the last few meters are somewhat 'free'.

Who dares wins, they say, so Toshiba's SAS drive plans another hit on SATA

phuzz Silver badge

Re: Perfect for my home lab

We had a bunch of what were supposed to be (and looked like) genuine HP Gen8 caddies, but the drives we put in them were never detected. Which is odd because there doesn't seem to be much in the way of electronics in them. Complaining to the seller got a new batch which looked identical, but did work.

Shared, not stirred: GCHQ chief says Europe needs British spies

phuzz Silver badge

Re: Pooh to intelligence sharing

What's the betting that most of the hops used in British ale are either imported, or picked by immigrants?

A pretty and helpful user interface? Nahhh. Is that really you, Samsung?

phuzz Silver badge

Re: Let's not forget...

LineageOS already has triggers that you can set to turn on different profiles. Eg, when my phone connects to the wireless at work, it switches to the 'Work' profile which silences the ringer. I'm not sure if that's a default Android thing, or something Lineage have developed (often good ideas from the open source ROMs get integrated back into vanilla Android, just look at the quick settings dropdown)

Oracle: Think our DB sales are great now? Wait until we actually get the new product out...

phuzz Silver badge

Re: What does 'licensing support' mean

I assume it's the 'friendly name' for their license enforcement division.

Speaking of which, you read the article with both eyes, however your license only allows for single-eye reading, so Oracle are going to have to fine you. Oh, and once they fine you you still have to pay to upgrade your license for binocular reading.

Visa fingers 'very rare' data centre switch glitch for payment meltdown

phuzz Silver badge

Yes, but the important part was knowing exactly which component to switch off.

Capita admits it won't make money on botched NHS England contract

phuzz Silver badge

Re: Hmm

Who's to say that Crapita won't turn out to be designated 'too big to fail'? (I guess it depends how many ministers have cosy positions there lined up). We might end up paying even more for their losses.

National ID cards might not mean much when up against incompetence of the UK Home Office

phuzz Silver badge

Re: How would ID cards prevent anything?

"Introduction of an ID card would not have prevented the Windrush debacle, it would have forced it to happen sooner"

It might have happened sooner, but even if we had ID cards, under the current 'hostile environment' I could imagine the Home Office going back through old applications and revoking ID from people who got them through perceived 'loopholes'.

Fraudster admits she was OPM dealer: Leaked US govt staff files used to bag cash, car loans

phuzz Silver badge
Facepalm

Re: Take that!

"The U.S. actually doesn't impose inappropriate punishment in most cases"

From an American point of view that might be true, but for those of us outside the US, your sentences seem pretty draconian. The idea of jail being partly about reformation rather than punishment doesn't seem to have ever gained ground in the US.

Still, have to love the irony of calling yourselves the 'Land of the Free' with the largest prison population in the world :)

Yubico snatched my login token vulnerability to claim a $5k Google bug bounty, says bloke

phuzz Silver badge

Re: Donate

"They removed segregation from schools because it didn't benefit anyone."

Turns out sometimes kids learn better in single sex classrooms (but still within a mixed school). They tried it for some subjects at my brother's school and did see an increase in GCSE grades (and this was 20 years ago).

I still feel that schools as a whole should be mixed though, after all academic subjects are only part of what you learn at school.

phuzz Silver badge

From their reaction is sounds more like an honest fuck up, which is plausible, nay, expected, anywhere.

After all, if this was malicious, what exactly were they expecting to get out of it, a $5000 bounty? If they're that hard up for cash then they'll be bankrupt by next week.

More likely is a simple lack of communication between the person who read the bug report from the researchers, and the person who developed the PoC and though "we should probably tell google about this".

You should always remember Hanlon's razor.

PC nerds: Can't get no SATA-isfaction? Toshiba flaunts NVMe SSD action

phuzz Silver badge

Re: What do I need to specify on my next motherboard?

We've been using them in £200 Intel NUC machines (eg), so they're very much not an expensive enterprise product.

That's why I'm glad they're introducing a 120GB model, because for a small desktop you only really need about 30GB of space (120GB models are still only £25).