How To Crash the US Justice System: Demand a Trial

I don't know about the Netherlands, but heroin is one of the most addictive drugs there is. People who are addicted to heroin are not bad people, but they may become bad people as a result of two things: the terrible addictiveness of heroin, and the shame from their "illegal" addiction.

If the Netherlands is treating addiction as a disease instead of a criminal offense, I'm so happy for them.

Kinect Hacked, Adafruit Bounty Won

Microsoft Rushes Internet Explorer Patch

Discuss the US Presidential Election

I voted early, but got a call from the Obama campaign saying that the county hadn't received my ballot (which I mailed). I showed up at the county courthouse yesterday and they were right. I filled out another one.

Voted straight Dem ticket this year, except the county auditor (who was in the room -- small county) who is an R. I figure, the fact that my ballot didn't arrive may not have been his fault, but the fact that I found out about it and was able to correct it is at least partly due to him, so kudos, and 4 more years!

Also I wrote myself in for sheriff. I feel good about that.

zbuffered writes "Today, Mozilla made public bug #360493, which exposes Firefox's Password Manager on many public sites. The flaw derives from Firefox's willingness to supply the username and password stored on one page on a domain to another page on a domain. For example, username/password input tags on a myspace user's site will be unhelpfully propagated with the visitor's myspace.com credentials. It was first discovered in the wild by Netcraft on 10-27-06. As this proof-of-concept illustrates, because the username/password fields need not be visible on the page, your password can be stolen in an almost completely transparent fashion. Stopgap solutions include avoiding using Password Manager and the Master Password Timeout Firefox extension, which will at least cause a prompt before the fields are filled. However, in the original case detailed in the bug report, the phish mimicked the http://login.myspace.com/ site almost perfectly, causing many users to believe they needed to log in.

A description of this new type of attack is available from the bug's original author."

zbuffered writes "For awhile now I've wanted to start my own weblog, but as I have nary a marketing or promotional bone in my body, I wouldn't know how to start building an audience/community. I'd be using Slashcode for the moderation system, and I think that once such a site got on it's feet that it would take off, but how do I gain that initial momentum?"


