* Posts by Old Handle

1602 publicly visible posts • joined 4 Mar 2011

Cloudbleed: Big web brands 'leaked crypto keys, personal secrets' thanks to Cloudflare bug

Old Handle
Boffin

Uh-oh

You guys (El Reg) use cloudflare, don't you? Hope your HTML is well-formed.

Old Handle

Re: Unbelievable

Yeah, actually it looks like an "I know what I'm doing" kind of error. Unless there's some microsecond processing advantage I don't know about the only reason to use == would be misguided confidence that it could never be greater.

US judge halts mass fingerprint harvesting by cops to unlock iPhones

Old Handle

Re: Weasel words

I can think of some legitimate reasons for the distinction, for instance with a password, it's possible you forgot it or they've got the wrong guy and you never even knew it. But you can't forget your fingerprints and if it turns out yours isn't the right finger, that would been you're off the hook, rather up the creek.

That said, I totally agree with the judge that this kind of fingerprint dragnet is over the line.

I was authorized to trash my employer's network, sysadmin tells court

Old Handle

This was pretty much my thought. I think he has a good point, it was not unauthorized access (or hacking in common parlance) but that doesn't mean he couldn't be guilty of some other crime.

Magic Leap sued for sex discrimination … by woman it hired to stamp out sex discrimination

Old Handle
Holmes

Assumption Of Risk Doctrine?

If you've been hired to fix a company's sexism problem, wouldn't that mean you go in knowing you'll be working for a sexist company? That would be an interesting defense anyway, no idea if it would work.

Macs don't get viruses? Hahaha, ha... seriously though, that Word doc could be malware

Old Handle

Re: mac AV

Correct me if I'm wrong, but aren't viruses, in the technical sense, nearly obsolete even on Windows? Worms and Trojans seem to be the hot thing now.

Want to come to the US? Be prepared to hand over your passwords if you're on Trump's hit list

Old Handle
Flame

Pretty soon it will be no one but terrorist left who want to visit. I guess that will make them easy to spot though.

Vapists rejoice! E-cigs lower cancer risk (if you stop smoking, duh)

Old Handle

Did I read that correctly that vaping is not only safer than smoking but also safer than nicotine patches? This is frankly a bit hard to believe but if true ought to be the final nail in the coffin of fearmongering about it (but I'm sure it won't).

Russia (A) bans web porn as a 'bad influence' (B) decriminalizes domestic violence – or (C) all of the above?

Old Handle

I'm not saying it's a good change, but the assumption that the new domestic violence laws will be bad is a bit kneejerk in my opinion. Harsher penalties do not always reduce crime or lead to better outcomes in general. I do not know how they concluded this was the way to go, but I bet more went into the decision than some idea that domestic violence isn't that big a deal.

Honeypots: Free psy-ops weapons that can protect your network before defences fail

Old Handle

As far as the moral limits aspect, I'm doubtful that all (or perhaps any) of the attacker believed they were derailing and crashing real trains. They might have reasonably (and at least in this case correctly) concluded that there was no way a system that lets you derail trains would really be accessible over the internet.

Great for headlines, but I wouldn't read too much into it. Also, wasn't there a movie about this?

Blood donors' privacy anaemic after Red Cross data breach

Old Handle

Re: What ???

I see. I guess it's possible only good guys found database. If so they were very lucky, but I don't know how they can be so sure of this.

Corn-based diet turns French hamsters into baby eating cannibals

Old Handle

Re: Mythbusters

But wait... which mouse turned cannibal? The one eating cardboard or cereal?

Ransomware avalanche at Alpine hotel puts room keycards on ice

Old Handle

Seems like a surprisingly low random for a clever targeted attack on 4-star ho tel.

But perhaps that's why they went back for more.

In real life, Q is a woman! Head of MI6 calls for more female techies at SIS

Old Handle
Facepalm

Re: Vauxhall Cross

They rebuild it, obviously.

(And totally ignored the shortage of women in construction work while they did it!)

US govt can't stop Microsoft taking its Irish email seizure fight to the Supreme Court

Old Handle

Regarding the fear that this will let criminals store their data where no government can reach, it's worth remembering that if this involves a serious crime Uncle Sam certainly has the option of presenting the evidence to an Irish court and getting a warrant issued there. This leads me to believe that either the government is more interested in the precedent than the case itself, or the reason they want these emails is incredibly trivial if not outright bogus.

Trump fan Peter Thiel 'considering' CA Terminator role*

Old Handle

Re: How much money spent campaigning???

It's probably fair to note that "one frigging state" has significantly more people than Australia.

But yeah, way too much money being spent on this, I certainly wouldn't disagree there.

And DougS, it's exactly like one guy giving $144M to a campaign. Except, one gal in this case, and it was her own campaign. If I'm keeping the numbers straight, she received a relatively unimpressive $16M additional from other people.

Microsoft sued by staff traumatized by child sex abuse vids stashed on OneDrive accounts

Old Handle
Facepalm

Paedo panic strikes again.

The top doc, the FBI, the Geek Squad informant – and the child porn pic that technically wasn't

Old Handle
Facepalm

Re: @AC ... everyone picks and chooses the amendments they believe in

I don't think that follows, Ian. Lawyers frequently attack something from multiple angles at once. Also, both challenges are 4th amendment related anyway.

Is! Yahoo! dead?! Why! web! biz! will! rename! to! Altaba! – the! truth!

Old Handle

Re: Dear New Owners

Good ideas except for more integration. That's the main reason I don't use most of Google's services.

FBI let alleged pedo walk free rather than explain how they snared him

Old Handle
Big Brother

I think the FBI has been very naughty. So much so, apparently, that what the defendant was accused of pales in comparison. I don't buy the explanation that the exploit itself is too valuable to reveal. More likely than not it was something already fixed in Firefox but not yet patched in the Tor Browser. That's what they used on Freedom Hosting IIRC. So when they say "endanger future investigations" it sounds more like "endanger future convictions" (because judges might balk if they knew what was really going on).

Google nukes ad-blocker AdNauseam, sweeps remains out of Chrome Web Store

Old Handle
Headmaster

Re: Come on

Of course not. It only simulated clicks.

I don't see any reason to believe this was concealed from the user either. The Firefox add-on listing (which still exists) clearly lists this behavior are a feature.

Folders return to Windows 10's Start Thing

Old Handle

Re: Unbelievable

You realized they did bring clippy back, in a sense, right? I mean, I have no first-hand experience whether Cortana is as annoying, but on some level it's the same concept.

US cops seek Amazon Echo data for murder inquiry

Old Handle
Meh

Interesting...

Good on them for not making it too easy I guess... unless they're only resisting because it would reveal the device really does record you at all times in they released the data.

Did webcam 'performer' offer support chap payment in kind?

Old Handle

It could be argued that virii is valid as a "humorous" or jargon plural in a computer context, much like boxen. As I understand it, the original Latin word was uncountable and meant something along the lines of miasma (but wetter), so it's not like there's specific correct way to pluralize it.

But I do object to "virii infections". You wouldn't say "diseases infections", so that shouldn't have been plural in the first place.

Old Handle

It also strongly implies the naked thank-you hug was her idea and he was a bit uncomfortable with it. It's possible he none-the-less tried to get in a feel, but that wasn't the impression I got.

Amateur radio fans drop the ham-mer on HRD's license key 'blacklist'

Old Handle
Big Brother

DRM strikes again

Yet another reason I will never buy software that only works with permission from some company.

No Soylent for Santa after key ingredient supply is choked off

Old Handle

Re: Remind me...

It's beige, so that's not it.

I think the idea that it's intended to replace food completely is pretty much hype. I'm sure a few people really use it that way, but mostly I think it's just a convenience food. For the record I've tried the stuff and found it inoffensive. With a little sweetener and flavoring, you can even bring it up to mildly pleasant! For lunch on the go or breakfast in a hurry it's a fine option.

Also it's cheap, at $1.80 per "meal". I don't think that's a big consideration for most of the people who buy it, but at least you don't feel like you're getting ripped off.

The only bad thing is the shelf life isn't particularly impressive, so it's really not a good option for apocalypse supplies.

Old Handle

Re: Absolutely fabulous.... maybe?

As I understand it, GRAS basically means "historically accepted as something people eat". I'm not certain how true that is of algal flour... but other forms of algae have been eaten long enough I guess. I think there's a way to obtain GRAS status through scientific study as well, but presumably it's abbreviated compared to what you'd have to do to prove some completely original synthetic chemical is safe for food.

US election pollsters weren't (very) wrong – statistically speaking

Old Handle

Re: Preferential Voting

I kind of like approval voting better. It's so impressively simple.

No super-kinky web smut please, we're British

Old Handle
Facepalm

If it was just "porn sites" that would be an almost surmountable problem, "almost" because I'm sure 100s of new sites spring up daily, but the real trouble is user-generated content sites. I don't see any feasible way to make this work with say Tumblr or 4chan aside from blocking them completely.

School cyber safety spiel shows smut to 'Strayan students

Old Handle
Paris Hilton

This story isn't entirely clear. Is this just a matter of a student accenting porn with their own device through an unsecured wi-fi connection, or was it actually displayed/projected on a big screen? OR are they claiming the former caused the latter somehow? That would make even less sense.

Microsoft goes back to the drawing board – literally, with 28" tablet and hockey puck knob

Old Handle

Re: The big question

It's a PC, I don't see any reason it wouldn't.

Today the web was broken by countless hacked devices – your 60-second summary

Old Handle
Facepalm

This probably show my own ignorance more than anything, but why is it that something like this has such severe effects? Doesn't DNS get cached in various places? It seems like a relatively short outage like this could be smoothed over almost completely taking advantage of that. At least for large sites which ISPs have doubtless accessed many times over the past hours.

Yahoo! begs! US! spymaster! Clapper!: Spill! the! beans! on! secret! email! snooping!

Old Handle
Pirate

Marissa should just turn the details over to Wikileaks and deny knowing who did it. It's obvious several people were aware of the snooping since some even quit over it, so it would be very hard to prove who was behind the leak.

She could even blame those darn Russion hackers.

Trump vs. Clinton III - TPP looks dead, RussiaLeaks confirmed

Old Handle

Re: Simple question for US voters

Sure. Gill Stein and Gary Johnson both have there pluses and minuses, I could understand why someone might have a hard time picking one or the other.

Old Handle

Why do we have 17 intelligence agencies? I find that in itself kind of alarming.

Anyway, Clinton confirmed the leaks were accurate by saying her comments in the leak were misinterpreted. You don't say that if the words were not yours in the first place.

Orange blows up French govt website in terrorism censorship snafu

Old Handle

I'm not a fan of either scheme, but it seems a little more plausible that the average non-pedoterrorist user would want to be "protected" from accidental exposure to CP than TP* Although the IWF's blacklist was actually working as intended when it messed up Wikipedia, where as this one only did it by accident, so I guess that's a point for France.

*terrorist propaganda

Old Handle
Facepalm

Dumb idea anyway. Like a DNS block would really stop someone who wanted to look at that.

The IRS spaffed $12m on Office 365 subscription IT NEVER USED

Old Handle
Headmaster

Re: Auditing the Auditors...

In all seriousness, it would be the job of the GAO (Government Accountability Office, formerly General Accounting Office).

Cyanogen mods self away from full Android alternative

Old Handle

Re: Why are they a commercial entity anyway?

Someone got $$ in their eyes I think. A small commercial wing of the project could have worked out well, but I'm definitely getting the feeling it's more parasitic than symbiotic in this case.

UK cops failed to act on Canadian intel on child abuse

Old Handle

Re: No Ore

I was thinking of that too. No action is better than overreaction. And one credit card charge is an incredibly thin basis for swooping in and raiding someone's home. Still, in an ideal world they would be carefully sifting through those records and looking for stranger evidence against a few, instead of just ignoring them.

These diabetes pumps obey unencrypted radio commands – which is, frankly, f*%king stupid

Old Handle

I skimmed the manual for this thing (online, I don't actually have one, thank goodness) and it talks about "pairing" the pump and remote, and also says the remote can check the pump's status. So they have two-way communication. If they hadn't that would have made security a bit difficult, but since they seem to be perfectly capable little gadgets, there's really no excuse.

Add 'fattism' and hacker stereotyping to the list of Donald Trump's list of non-PC positions

Old Handle
Mushroom

Re: Not so smart

I'd have thought the hawks were already planning to vote for Hillary.

Judge makes minor tweaks to sex ban IT man's order

Old Handle
Facepalm

Re: Still no pity

How exactly do you envision him being required to notify police before he has sex will stop him from killing someone? If (and it's a big if) he were willing to risk life in prison for murder, why would he let whatever the penalty is for breaking an SRO stop him either?

Old Handle
Big Brother

And don't forget "vulnerable people", who if I understand correctly can be stripped of any and all rights to self-determination (for their own good, of course) without so much as a hint that they did or will break any law.

Double KO! Capcom's Street Fighter V installs hidden rootkit on PCs

Old Handle

anti-crack solution (note: not DRM)

Uh-huh. Call it what you want, it's still malware.

T-Mobile USA leaked free access to sites with '/speedtest' in the URL

Old Handle

For the record, I tried this and it didn't work. I did it from a phone with a paid-up SIM but no data plan, which sounds like the same thing the teen hacker did, but of course it may not have been exactly the same plan. That was a couple days ago, but after I read another article about it of course, so perhaps it was already fixed.

Google plots cop detection for auto autos

Old Handle

Re: This is NOT a patent.

As they should have, because this clearly falls under the "obvious" category. A self-driving car must obey traffic laws, and traffic laws say you must get out of the way of an emergency vehicle with its lights flashing.

Encrypted comms collective Riseup.net rattles tin

Old Handle
Facepalm

Re: Where is the source?

That wasn't very hard to find at all.

riseup.net > Download Bitmask application > GNU/Linux > build it from source

Our pacemakers are totally secure, says short-sold St Jude

Old Handle
Trollface

Re: Two points

Wow, they're cheep! Next time I need a pacemaker I'm getting it on eBay. I'll save a bundle.