* Posts by waldo kitty

265 publicly visible posts • joined 1 Dec 2008

Page:

Smart telly, router, app makers have left a security hole open for – drum-roll – three years

waldo kitty
FAIL

Re: Experience not the issue

agreed for the most part... uPnP is its own security hole, though... especially since it allows users to bypass the admins' security settings on what traffic is allowed in or out... it has long been a thorn in the side of security conscience admins every where... at least today's uPnP does offer some additional controls and capabilities to prevent egress but it is still a hole that they didn't punch themselves...

Bitcoin cloud miners a '$20m Ponzi scheme – there was no cloud at all'

waldo kitty
Boffin

Re: Central bank to stabilize its value

It's important to note that we don't use gold these days because there came a point at which, whether or not it really did work properly in the past, it definitely didn't work properly any more.

actually, we got off the gold standard because there's not enough gold in the world to cover the money that is available... i can't say that that is "not working properly any more", though... gold still "works properly" for what it is used for...

Correction: 220,000 kids weren't exposed in VTech mega hack – it's actually 6.4 million

waldo kitty

Re: Fake info

At some point, reams of stupid people came online who don't know this.

on the contrary... "ignorant people" is the proper phrase... ignorance can easily be cured by education... the only cure for stupidity is hot lead at high velocity... i'd much rather be ignorant than stupid... the really sad thing is that there's a lot of ignorant people out there that don't know the difference :(

Can't get a break: Pwned Linux ransomware pwned again, infects 3000

waldo kitty
Boffin

Re: Reader's digest

Over on Ars it seems that the Reader's Digest site is dishing out CryptoWall 3.0

i saw this reported several days ago... not sure who reported it but it was one of the security groups... maybe "Naked Security" or "Packet Storm" or similar...

Fix sweetens foul cookie that kept open Aussie tax login portals

waldo kitty
Boffin

Re: re. "... red and blue security teams."

think capture the flag games which is basically what they are...

https://en.wikipedia.org/wiki/Red_team

https://www.sypriselectronics.com/information-security/cyber-security-solutions/penetration-testing/

http://www.networkworld.com/article/2278686/lan-wan/red-team--blue-team--how-to-run-an-effective-simulation.html

Rap for wrap chaps in crap email trap: Chipotle HR used domain it had no control over

waldo kitty
Thumb Up

Re: intranet pr0n

"But I once clicked on a link in OWA and to describe what I found as NSFW would be an understatement! It took hours to discover all the filth on there..."

THAT deserves an up vote all by itself :)

Silicon Valley now 'illegal' in Europe: Why Schrems vs Facebook is such a biggie

waldo kitty
Devil

wait... what??

[from the article] Crudely put, the US doesn't recognise an "abroad" - and fears that if it starts to do so, it will open a Pandora's Box of criminal evasion. This is being fought in Europe, where Microsoft is challenging a US Court order to access emails stored in Ireland. The DoJ fears that a future Enron would store its data offshore, and claim data protection.

this is different than stashing your $$$ overseas to avoid taxation on it how?? apparently the US does recognize an "abroad"... they cannot stop anyone from opening a swiss bank account so what makes them think they can stop them from using infrastructure that is located offshore?

Search engine can find the VPN that NUCLEAR PLANT boss DIDN'T KNOW was there - report

waldo kitty

Re: Experience at the sharp end

i gave you an up vote for the story but can't help but to see a flaw in the network if it allowed all those cloned machines on with the same address... there should have been some nasty collisions going on preventing all but one from accessing properly... like one sees today with ip addresses when they get hijacked by another system ;)

Confession: I was a teenage computer virus writer

waldo kitty
Boffin

Re: Fake DOS

most of us with a clue were running 4DOS

HA! I still run 4DOS as well as 4OS2. Scripting is almost as nice as that available on *nix. The old school BBS that I still run couldn't do a thing without 4DOS and/or 4OS2 ;)

The Scientific Secrets of Doctor Who

waldo kitty
Facepalm

Sorry, but using the word "science" with "Doctor Who" is like using the word "economy" with "Greece"

how is this any different than classifying horror stories/movies and wrestling as science fiction??

really, though, dr who is much closer to science fiction than those... it is right up there with the works of Isaac Asimov, Arthur C. Clarke, Larry Niven, Ben Bova, Ray Bradbury and many more... especially, lest we forget, the venerable Douglas Adams... there are many others, too... these are just a few of those that i'm familiar with since childhood...

BOFH: Don't go changing on Friday evenings, I don't wanna work that hard

waldo kitty
Paris Hilton

Re: It's my motto

Where the hell are you drinking that 6 pints costs you £50?

You can't expect a "Happy Ending" or three for much less. If you don't keep the girls happy, you definitely won't be happy ;)

Chinese cyber-spies hid botnet controls in MS TechNet comments

waldo kitty
Facepalm

A little something from 1996

===============================================================

The proposal that any system will be able to keep encrypted

messages off it is false. It is too easy to hide messages in

traffic. Any claim that review by a sysop will even slow it

down is extremely overoptimistic. It is a trivial task to

hide anything in a message. Even if you read every message

in all the echos, you cannot find all the hidden ones.

I guarantee that those that claim to remove encrypted messages

off their message base will be those most likely to have them

posted on their machine unknowingly. How many people can even

try reading all messages on their systems? Not many...

I can reassure you that even those who don't have a life, it

is impossible you can review every permutation of a message.

Having stated that you will review your message base for

all the hidden meanings only makes you more liable for your

messages.

===============================================================

Hint: Read the second column vertically for the example the post carries ;)

Note: Easier to read with a monospaced typeface.

Infosec bod's brag: Text editor pops Avaya phones FOREVER

waldo kitty
FAIL

Re: Yeah you kinda expect that

That very company also had a bug in their call centre management software. To quote from their note "Therefore, if there are no files under /tmp at the exact moment when the /etc cleanup script is run on Linux the script may start to delete all files under /."

Gotta wonder if that programmer/coder from that game company that just had pretty much this exact same type of flaw worked for Avaya, too.

Bloke hits armadillo AND mother-in-law with single 9mm round

waldo kitty
Facepalm

Re: @Manolo ...Varmint?

They are varmints and breed as bad as rabbits. But with rabbits, at least you can eat them and use their fur...

you can eat armadillo, too... it isn't too bad when cooked properly...

there's also some interesting artsy type things that a few folks have done with the shells...

STINKY nerds: Sick of horrifying chums with your terrible BO? Nosey Google wants to help

waldo kitty
Pint

Re: A joke, surely?

Turns out somebody managed to sniff it out early...it's Friday okay

and the 13th, too...

Ransomware 2.0 'crypts website databases – until victims pay up

waldo kitty
Facepalm

Re: ... crypto key swap

@waldo: Your comment would have been a bit clearer if you had included a link to the other article(s) you had read.

@david: the link was already posted... it was the one in the reg's article ;)

waldo kitty
Facepalm

Re: ... crypto key swap

thank you AC... t'would be nice to have a few thumbsups on my original post... i read both articles several times to make sure i was reading things correctly before i made my post...

waldo kitty
WTF?

um... guys... you should read the original article... this one has things mixed up between two different attacks... there's also not any encryption key on the system util the creatins have busted in and modified the database access to use their encryption key... before that, the data is plain and unencrypted... seriosuly, read the original article... carefully and closely...

BY JUPITER: The science behind Friday's Solar System light show

waldo kitty
WTF?

Re: Flash

Yes - I know. I'll add an editorial note in a sec.

errrmmm... that was 2 hours ago by the time on your comment but i just read the article and there's no note about flash... ???

Lost SPACECRAFT believed FOUND ON COMET

waldo kitty
Holmes

Yeah, but how do you pronounce it?

Pee Inn Gee just like is it spelled :)

Facebook kills pic of Mohammed weeks after Zuck's Je suis Charlie!

waldo kitty
Devil

look at it this way...

FB follows local laws of a region and if they don't allow such to be displayed or written there, then sobeit... FB won't display that subject matter there... that doesn't mean that they will prevent folks in those areas from putting that subject matter up... everyone else will be able to see it except those fools over there with their heads buried "where the sun don't shine"* O:D

.

.

.

.

.

.

.

.

.

.

.

* get your head out! that reference is to sand... not arses :lol: ;) ;) ;) :lol:

Scary code of the week: Valve Steam CLEANS Linux PCs (if you're not careful)

waldo kitty
Megaphone

Re: i think the moral of the story is...

And don't keep your backup volumes attached for longer than is necessary to run a backup.

exactly! plug the media in or otherwise make the connection to it avaiable first, then do the backup, finally disconnect from that media... and no, rsync can also kill ya when it sees the files is should be keeping updated are gone and removes them from the remote...

LOHAN's Plucky Playmonaut touches down at Spaceport America

waldo kitty
Thumb Up

Re: You sure must love driving

Agreed. That is some of America's finest boring wasteland you had to drive through.

drive? you should try walking across it... i walked* from Amarillo TX to Tucumcari NM and then on to Albuquerque NM over a few days... back in the '80s... it was quite the experience :)

* cross country hiking, actually... i had left south Georgia for Orlando FL a few weeks earlier... left Orlando and was in Houston TX in a few days after getting a ride just west of Jacksonville FL... all this with a ~8 stone backpack strapped to my ~11 stone self O:)

Google vows: Earth will vanish in 2015

waldo kitty
Facepalm

If this means the end of Google Earth that is truly bad news.

not google earth... the old plugin based google earth api that allows one to use and display google earth stuff in a web based browser app... there's still the google maps stuff, right? they don't use the same api, afaik ;)

Who wants to be a millionaire? Not so fast, Visa tells wannabe pay-by-bonk thieves

waldo kitty

Re: Same old response

They would have to state that clearly with every card sent out and probably provide the secure wallet or shield as well.

which means that they should provide such protection at no charge when they send the cards out... if they go the cheap way, then a new one with each card... but that's going to be more costly in the long run as it is with everything else cheap...

eg: i'd rather pay $120 for a pair of boots that last 2 or 3 years than $10 a month for a new pair of cheap boots... once you pass 12 months, you're spending more... sadly way too many folks can't fathom that...

BOFH: Stop your tiers – when it comes to storage, less is more

waldo kitty
Devil

Re: Ahh

Gotta love it, unlimited storage, cheap, but a real bitch to find/restore anything. Sometimes we muse about redirecting (L)user home folders path!

why muse? mount /dev/nul on top of their home directory and watch what happens ;)

DRUPAL-OPCALYPSE! Devs say best assume your CMS is owned

waldo kitty

"So when are sysadmins supposed to sleep!"

1. real sysadmins never sleep.

2. who says sysadmins are supposed to sleep?

3. who is watching over the system if the sysadmin is inadvertently sleeping?

=) =) =) =)

Ad-borne Cryptowall ransomware is set to claim FRESH VICTIMS

waldo kitty
Facepalm

Re: Complacency

Terry 6: Agree, but then I also wonder who clicks on these adverts. I may be wrong but I am guessing they're not ads for the more mainstream types of product.

clicking is not required in many cases... they're known as drivebys and they bounce you along the distribution chain while supposedly gathering the mess to be displayed in the ad... just visiting a site with malicious ads and getting hit by one of those ads can land you in a world of hurt...

the icon is not aimed at you personally...

Google+ goes TITSUP. But WHO knew? How long? Anyone ... Hello ...

waldo kitty
Devil

Re: Google+ goes TITSUP. But WHO knew?

g+ is conversation.

really? seems to be more trolling and/or proselytizing to me...

waldo kitty
Boffin

Re: I also notice that....

NoScript is in action

With the afore mentioned AdBlock, there's much less to deal with. The two together are pretty much an unbeatable combination ;)

YARR! Pirates walk the plank: DMCA magnets sink in Google results

waldo kitty

Re: Hang on ...

WTF is page 2 ???

isn't that that other model agency? you know? the one that's not Page 3 ;)

ICO warns UK broadcasters over filming using drones

waldo kitty
FAIL

Why is this different from using a telephoto lens on a camera?

unless you are up in a tree, that telephoto lens can't accidentally take a photo of someone in the privacy of their 4th floor bedroom while trying to get an aerial shot of a building or even a crowd gathered below... or 3rd floor or 2nd floor... and these drones can go quite a bit higher, too...

Unless the drone is flown into places that you cant walk into, i.e. onto private land, then there are no new privacy implications vs a guy with a camera, drones are noisy, you will not miss one!

really? they use fuel powered engines in them? or perhaps they are quiet running electrical motors with battery packs? ;)

Lords take revenge on revenge porn publishers

waldo kitty

How to get $542m from Google: Dress as a SPACEMAN with dayglo dancers – Magic Leap

waldo kitty
Facepalm

Re: "wearable computing systems"

i fail to see how a shirts, jacket, pants or even shoes that have computing capabilities ranks with the glasses things... i'm waiting for the shirts or jackets with gps and mapping to you can find your route just by looking at your sleeve... there's certainly nothing glassholish about that, is there?

Sun of a beach! Java biz founder loses battle to keep his shore private

waldo kitty
Pint

how many...

... appeals are allowed? this appears to be a win for the peasants on the first appeal and there's talk about appealing the decision which takes us to two appeals...

got my beer and popcorn... this might be interesting to watch...

As bankruptcy looms for RadioShack, we ask its chief financial officer... oh. He's quit

waldo kitty
Pint

Re: Retail bankruptcies are never fun

The funny thing is that I do remember when they were at least a reliable choice when you wanted something electronic, and they even had their own factories making components back before that got offshored. That's kind of the only reason they're not bankrupt yet...those early years let them build up huge reserves. Kind of like Dell, or to a lesser extent, IBM...still plugging along but a shadow of their size and influence during their "golden age."

on the factories thing... yep! they would find some product that was very good and they might have that company make the same product but with the tandy or radioshack name on it... if it went really well, they would buy the factory and start making the products for everyone else...

do you remember their batteries? the red and green ones? yup, same exact product as the name branded batteries they sold right beside them... came out of the same factory and the same production line at the same time... each was simply diverted to the separate labeling lines...

do you remember their cassette tapes? same thing! they sold them beside memorex tapes... guess who made the memorex tapes... yup! radioshack did :)

waldo kitty

Re: Another one bites the dust...

They had a niche but weren't satisfied to stay in it.

agreed hugely... they really screwed the pooch when they got greedy and started chasing everything else... i used to go to them to purchase chips and electronics parts for building projects but one can barely get any of the good stuff they used to have yesteryear... they need to return to their roots if they truly want to stay around...

Super Cali goes ballistic, Uber Pool is bogus: Ride sharing biz is illegal in the state, says regulator

waldo kitty
Coat

Re: It wasn't supposed to be this way

>Car sharing for profit without a licence is illegal.

This case goes one further, it's car sharing with individual passengers paying different fares to go to different stops. That is known as a bus.

really? all the city bus transportation rides i've ever taken charge one flat fee for riding the bus no matter how far you were going... some even gave "continuance" passes for use on the next bus you might have to get on at a transfer station since you had already paid the fee for the ride to your destination...

my coat because i've got another bus to catch...

ATTACK of the Windows ZOMBIES on point-of-sale terminals

waldo kitty

Re: Chip and PIN

NeilPost:Yet another reason US banks need to stop resisting Chip and PIN, and PCI/DSS being implemented - works very well in Europe, where Card Scraping is almost unheard of [...]

perhaps you missed this little bit'o'news from yesterday??

http://www.theregister.co.uk/2014/07/09/teenytiny_skimmer_found_in_gullets_of_atms/

seems these devices are predominant in Europe...

Aerospike: Thanks for that $20m, VCs ... next we'll OPEN SOURCE our NoSQL database

waldo kitty

What's in a name?

when i first read this, my immediate association was with the aerospike rocket engines.

https://www.google.com/search?q=aerospike+engine

YOU'RE HISTORY: Ancestry.com goes titsup for TWO DAYS

waldo kitty
Boffin

I think of many targets that would be ideal for a DDOS but a genealogy site?! Doesn't seem like something I can imagine many hackers would gain much kudos from their peers for taking out of service!

@ Amorous Cowherder: ummm... there's huge amounts of identity information to be had on any genealogy site... not everyone listed is dead, ya know? ;)

Code Spaces goes titsup FOREVER after attacker NUKES its Amazon-hosted data

waldo kitty
Facepalm

Re: Backups

They had perfectly good backups - the backups didn't fail, someone with the authority to do so deleted them! They could've stored their backups in different locations across different servers but if you let someone get in and delete the backups, that is a process fail, not an infrastructure fail.

the main point is that true off-site backups cannot be accessed via any sort of wire or radio signal... off-site backups are exactly that... off-site... that means manually placed there in their fireproof box and manually removed from there when the next set is put in OR they are needed for disaster recovery...

Elon Musk's LEAKY THRUSTER gas stalls Space Station supply run

waldo kitty
Alien

wait... what??

[...] the next launch opportunity on Friday April 18, [...]

All of this is now on hold until the next launch window this Thursday. [...]

the alien because there's some weird time warp in effect or something...

Quadrillion-dollar finance house spams Reg reader with bankers' private data

waldo kitty

Re: example.org

example.org is not the only one available, either... me@privacy.net is also available and has been for several decades... if me@privacy.net doesn't work, simply add a number to it... they're all flushed into the bitbucket...

Angela Merkel's phone was being listened in on by FIVE foreign powers

waldo kitty
Thumb Up

Re: The real question here is

how many of the buggers knew how many other buggers were on her phone? And did they know their IDs?

well played, sir... well played :)

Super-stealth FLYING CAR prototype seen outside GOOGLE HQ

waldo kitty
Black Helicopters

Moller Skycar

personally, i think i'd rather have the Moller Skycar... it just looks better for one thing... it has been in development longer, too... the 400 over the 100 or 200 but the 200 looks nice, too...

http://moller.com/dev/index.php/sky-car/m400-specs

Autopilot guides Texan plane home from a dizzying 30,000m

waldo kitty
Boffin

"It was going something like 350 mph"

unless my calculator is broken, you're about 140mph slow on that guesstimate... 790kph = 490.8832mph

still, that's pretty fast and one would think there would be a bit of stress but we also have to look at the mass of the vehicle... more mass means more stress, right? ;)

Beat this, cloud giants! Musk rocket flings 1TB hard drive into SPAAACE

waldo kitty

Re: So it's running into technical limitations then?

If you don't get all your data up(down)loaded then you have to wait for (probably longer than) 90 minutes?

depending on the passes over your location, you might get three good ones... maybe four but the middle one or two will be your best since they are the highest over head... the other passes will be your worst for signal propagation since they will be closer to each horizon...

waldo kitty

Re: Why maths is important

www,heavens-above.com

obviously that should be www.heavens-above.com ... sorry for the typo :?

waldo kitty

Re: Why maths is important

Assuming that this thing can sustain 340Mb/s for the 90 minutes it will be in the same hemisphere (unlikely but lets play their game)

ummm... the satellite is in LEO (Low Earth Orbit) so that's 90 minutes for one full orbit around the earth... then there's also the walking pattern where each orbit is offset by X degrees due to the rotation of the earth under the satellite... you might want to take a look at some screen shots of satellite orbit footprints... i'm sure that www,heavens-above.com and www.n2yo.com have some you can look at ;)

Page: