New Details About NSA's Exhaustive Search of Edward Snowden's Emails

machine321 Re:NSA scorecard on on truth? (196 comments)

If an NSA representative told me it was daytime outside and my watch said 12 noon, I would still walk outside to confirm it for myself.

Oh, like any of us have been outside.

2 days ago

Facebook Experimenting With Blu-ray As a Storage Medium

machine321 Re:Why not just use hard drives and then store... (193 comments)

Building storage with hard drives doesn't get you an article on Slashdot (or CNN); pretending you're going to build storage out of optical discs does.

about three weeks ago

Ask Slashdot: Bulletproof Video Conferencing For Alzheimers Home?

machine321 Maintenance (194 comments)

If you don't want to maintain a system, then don't deploy it. Either pay someone to maintain it for you, or plan to maintain it yourself. You seem to want to be a hero and give unknowing non-technical users a complex system and then abandon it because it takes too much time.

about a month and a half ago

Ode To Sound Blaster: Are Discrete Audio Cards Still Worth the Investment?

machine321 Sound Blaster (502 comments)

With the amount of porn I consume, a discreet audio card is critical.

about 2 months ago

OpenSSL Cleanup: Hundreds of Commits In a Week

machine321 Re:I would think (379 comments)

- If a change is security related, and obviously needed, then why wasn't it made earlier? Didn't that make a mockery of all the "many eyes" arguments oft touted in favor of Open Source?

"Many eyes" rarely helps; you need to get the right eyes to look at a bug. If you follow vulnerabilities, you'll notice a handful of people find most of the bugs. The main advantage of open source is that the code is available for those eyes to view.

about 5 months ago

OpenSSL Cleanup: Hundreds of Commits In a Week

machine321 Re:I would think (379 comments)

Does OpenVMS still require the byzantine workarounds that were in OpenSSL, or can it compile modern software without substantial changes?

I think part of the problem is that the OpenSSL developers are publishing code paths that they never test; this was tedu@'s original frustration when trying to disable the OpenSSL internal memory management; there was a knob to turn that nobody had tested, and the code was too hard to read to make the bug obvious.

If there's a demand for OpenVMS SSL libraries, they obviously can continue to use OpenSSL, or someone can re-port this new SSL library.

about 5 months ago

Interview: Ask Bruce Perens What You Will

machine321 Intervews (129 comments)

It's kind of funny: I don't think any of these interviews have any responses from their subjects. Ask away! Then forget.

about 5 months ago

Schiller Says Apple Is the Last PC Maker From the Mac Era, Forgets About HP

machine321 Re:!HP (474 comments)

But contrast to Germany or Japan, where trade policy promotes local industry. Their economies are doing great, with good wages and benefits

Except Japan had/has that whole "Lost Decade" thing going on. I guess it depends on how you define "economy doing great".

about 8 months ago

Chinese Bitcoin Exchange Accused of Faking Trade Data

machine321 Re:Unregulated... what? (75 comments)

Yes, the SEC did a great job of preventing those frauds from occurring, instead of swooping in after it all fell apart.

about 9 months ago

Ford Self-Driving R&D Car Tells Small Animal From Paper Bag At 200 Ft.

machine321 Excellent (207 comments)

I can't wait until Ford starts making hybrid fusion cars. We only have a couple of years to make Mr. Fusion happen.

about 9 months ago

New Windows XP Zero-Day Under Attack

machine321 Re:Upate to the most current (241 comments)

That is not correct. Win8 will install just fine, but all the Modern UI apps will refuse to start. Which no one runs anyway.

I stand corrected. I don't recall why I thought that, maybe I listened to the Upgrade Assistant. Is anything missing from the OS with Modern UI disabled? Perhaps low-resolution screens are a feature...

about 10 months ago

New Windows XP Zero-Day Under Attack

machine321 Re:Upate to the most current (241 comments)

Fits just fine on my EeePC, although I upgraded the memory and drive as soon as I bought it. It actually runs quite well. Win8 won't fit though, as they artificially block installation if you don't have at least 768 pixels high.

about 10 months ago

Ask Slashdot: Why Are Tech Job Requirements So Specific?

machine321 Opposite problem (465 comments)

I recently hired a security analyst at my company. I had the opposite problem; almost everyone I interviewed worked at larger companies, and only had narrow experience with specific software products. I was looking for (and eventually found) someone who was more of a generalist "hacker" type. I don't really care if you've used X antivirus and Y SIEM for ten years because that's what your boss purchased, I care how you solve problems.

about 10 months ago

The Greatest Keyboard Shortcut Ever

machine321 Re:Huh? What? (506 comments)

Come back when it lets me undo posting Slashdot comments with mipselled words.

Come back when it lets me undo Slashdot summaries with mipselled words.

1 year,22 days

Microsoft Files Dispute Against Current Owner of

machine321 Re:What's there to dispute? (381 comments)

They're already paying the lawyers, so the fees are spent either way.

about a year ago

Microsoft Files Dispute Against Current Owner of

machine321 Re:Ask any McDonald about domain (381 comments)

The impression I got from the story was that he tried to make a quick buck (when asked for a price, he said "I don't know, $15 million?") and when he realized that made him look bad he turned it around into a victim story.

Don't get me wrong, that doesn't excuse Nissan Motors' behavior. I was considering buying a Nissan Murano in 2005, and chose another brand specifically because of the debacle. My wife emailed a copy of the vehicle we purchased instead to their customer service department with an explanation.

about a year ago

Scanner Identifies Malware Strains, Could Be Future of AV

machine321 Re:you cannot identify bad intention (70 comments)

Try Microsoft's EMET if you're in a position to do so; it's usually able to block the exploit from working on old Java if you can't upgrade.

about a year ago



Apple caught with DNS pants down

machine321 machine321 writes  |  more than 6 years ago

Steve Shockley (458769) writes "From TidBITS:

Apple uses the popular Internet Systems Consortium BIND DNS server which was one of the first tools patched, but Apple has yet to include the fixed version in Mac OS X Server, despite being notified of vulnerability details early in the process and being informed of the coordinated patch release date.

Apple was notified on May 5; what's the hold up?"

Link to Original Source


