Deflinek
Posts
-
Anyone here got a Gizmo watch for their kids? -
Your Linux can get hacked just by opening a vile in Vim or Neovim editorSo much for "the most secure OS because opensource"... What I would like to know is for how long those feature were live with this vulnerability. That's the thing this article doesn't mention - for how long Linux servers were(are) vulnerable?
-- "My software never has bugs. It just develops random features."
-
RAMBleed attack can steal sensitive data from computer memoryThe success measured a rate of 0.3 bits per second and an accuracy of 82%. To obtain the full data, the researchers used a variant of the Heninger-Shacham algorithm that can recover RSA keys from partial information.
A method to reduce the risk of this type of read-side attack is to flush encryption keys from memory immediately after using them. This lowers the chances of learning the secret data because RAMBleed needs it to stay in memory for at least one refresh interval, which is 64ms by default.
I'm not saying that this vulnerability is not real but the article is a bit "click-baity" at least. Yes, they were able to read memory from out of process space, but if an attacker can get access to the server with enough knowledge of memory mapping and ability to run own programs in address space physically aligned to victim's for so long that 0.3 bits per second will hopefully get them enough portion of the key to figure out the rest… I would say there are definitely easier ways to compromise the server.
-- "My software never has bugs. It just develops random features."
-
Vscode phones home?OK, just trying to figure out who is the target audience here :) 1. You must be "somewhat" paranoid (you means potential target user, not the OP :) ) Paranoid enough that network monitor after you turn the telemetry off is not enough to convince you that it is really off, but not too much paranoid or you wouldn't even consider using Microsoft product. 2. Having access to the source code you are not willing or be able to build this thing yourself. I was going to say "lazy" here because the mere fact you want this thing should imply you know how to build an app but there may be other cases why it's not going to happen (I didn't try it myself so I don't know how complicated it is to build VSCode). So considering 1 & 2 you are going to trust some random guy that says he built it for you. Good, now you can be sure there is no pesky tracking because he said so :D
-- "My software never has bugs. It just develops random features."
-
What are some of the things one should ask for Senior Developer role ?Is "in the next company" an acceptable answer? :)
-- "My software never has bugs. It just develops random features."
-
F-u Microsoft passwordNot necessary. Most "change password" forms require you to enter old and new password. With both at hand they can check for similarity. Now if reset password form tells you about similarity...RUN! :D
-- "My software never has bugs. It just develops random features."
-
How much do you pay to manage your passwords?Is it shocking for you people use password managers or that they use paid password managers? I'm using 1Password for some time on family plan. It allows me to have unique secure password to everything including services "shared" with my wife (netflix, amazon,...) Sure, I can roll my own solution, but why should I? For $5 per month I don't think it's worth it. I have access to everything on my home rig, work laptop, phone and tablet. And well... I tip more than $5 on single restaurant bill. However if you doubt using password managers at all then I suggest reading this https://www.troyhunt.com/only-secure-password-is-one-you-cant/[^]
-- "My software never has bugs. It just develops random features."
-
PS4 Pro... Worth the extra cash?Just to stir a little more confusion - did you consider Xbox One X? If you enjoyed GT then the game of choice in your case would be Forza Motorsport 7 that on the "X" is enhanced with better graphics to native 4k running smoothly at 60 FPS :) OK, I don't own playstation but I have first-hand experience between Xbox One and Xbox One X. Just a note that the "X" is a bit more powerful than PS4 Pro but overall comparison should be quite similar. 1. You are unlikely to notice difference in graphincs unless you run the same game side by side on both consoles. Yes, enhanced games look better, have better textures, shadows, reflections and so on, but are you likely spot that in the middle of battle if you don't have anything to compare? 2. Overall performance is much better. Games are pretty well optimized on consoles but slight hiccups happen. On better console they happen less often on non-enhanced games. On enhanced ones overall quality is bumped up so frame drops can still happen although from experience less often. 3. Loading times on Xbox One X are much faster - not sure if it extends to PS4 Pro as well, but more power means faster processing so I guess yes. To sum it up - if you can afford it go for Pro/X version, especially if you have 4k TV already. If you are not yet locked into playstation then do some research first. Look up comparisons between PS4 / PS4 Pro / Xbox One X. Two more notes at the end: 1. Unless game is "enhanced" there will be no difference on better console other than faster load times and less frame rate drops. More and more games gets enhaced however. 2. PS4 Pro doesn't go for native 4k on enhanced games - it upscales from 1080p. Xbox One X runs native 4k on many enhanced games.
-- "My software never has bugs. It just develops random features."
-
Bitcoin and Ransomware AttacksNo. Bitcoin is just easier than other ways of payment. Attackers do it because they can, not because method of payment is convenient. There are pre-paid Visa, iTunes cards and several other methods that can and were used before. Mere fact that something CAN be used in malicious way doesn't mean it should be banned... Unless you want to ban all men for example :)
-- "My software never has bugs. It just develops random features."
-
Q&A Getting Ruder!I used to say "if you say pls because it's shorter than please then I say no because it's shorter then yes". But this? That's the whole new level... :~
-- "My software never has bugs. It just develops random features."
-
Today's Qlikview "You gotta be f*ckin kidding me" momentShe probably was used to MM/dd/yyyy and didn't want to confuse you even more :)
-- "My software never has bugs. It just develops random features."
-
Spammer from moderation queue (Sunny Singh)Gone.
-- "My software never has bugs. It just develops random features."
-
Male enhancements and things of that ilk:All gone
-- "My software never has bugs. It just develops random features."
-
Random spammersall gone
-- "My software never has bugs. It just develops random features."
-
Spammers from moderationgone
-- "My software never has bugs. It just develops random features."
-
Spammer from moderation queue (greendietpro)gone
-- "My software never has bugs. It just develops random features."
-
Chrome: Don't show the bookmarks barMark_Wallace wrote:
Seems pretty obvious that the bookmarks bar is one of the sources that google uses for snooping on you, if you're not allowed to keep your bookmarks from them
Google doesn't need your bookmarks to "snoop" on you. And if you are concerned I'm not sure Chrome is the right browser for you :) I'm pretty sure they already know every single page you visit that sports google analytics snippets especially if you used the same browser to login to any google service at any time - be it gmail, youtube, picasa or whatever. At least google uses this information for its own profit as far as I know. That is good thing actually because for now they have no interest to use it for witch-hunt of any kind as that would hurt the money. I'm affraid the only other option would be to not use any of their products including android phones, google search engine (included by default as in-browser search also in many other browsers) and browsing each site in separate in-private mode. But even then some other corp would "snoop" on you.
-- "My software never has bugs. It just develops random features."
-
Who would you hire and why?This looks to me a bit out reality. Like choice between car mechanic that can take engine apart and put it back blindfolded but has no idea how to drive and a perfect driver that can drift around town all day long but can't change a tire. They are two extremes unlikely to happen without anything in between. But to answer your question I would hire the one that I enjoyed talking to more. The one that is friendlier and seems more team player as it would go a long farther way than any skill he has already.
-- "My software never has bugs. It just develops random features."
-
37% of IT pros to look for new jobs in 2017Speaking from experience the rotation is pretty high in our industry, so I'm not really sure if 37% is higher or lower than last few years :)
-- "My software never has bugs. It just develops random features."
-
Developer vs Normal PeopleSo you are saying that we devs are not normal? :)
-- "My software never has bugs. It just develops random features."