* Posts by Dan 55

16865 publicly visible posts • joined 13 Jun 2009

Rise up against Oracle class stupidity and join the infosec strike

Dan 55 Silver badge

How could you get a bunch of nerds to lobby the government and be taken seriously? It's a tough question.

Dan 55 Silver badge

Re: Nice idea

I do feel I have professional responsibility for the quality of my work and I am unhappy when it is not as good as it can be, but my higher ups don't or rarely bare any responsibility for the overall quality of the project. Costs will overrun, features will be missing, time will be short, security will be an afterthought. Until they do have, nothing us surfs do will have any effect.

It's also very difficult to prove that extra effort has avoided deaths. After all, even though the uConnect thing was bad the auto industry is notorious for weighing fines and insurance payments against redesigning a car. Industry practices like that are why we are ignored and told to get back to the keyboard.

We can all rant and get angry but we all have to put food on the table and there's more we come from. Individually we can do nothing apart from say something and be ignored or say a lot and be fired for being a troublemaker. Walking out of job after job becomes unsustainable.

Why are we not the experts of the work we do in the same way that architects, scientists, doctors, or engineers are? Perhaps that might be the first question worth answering.

Dan 55 Silver badge

Re: First, I stand for TLS, not SSL.

They only changed the name to TLS to please Microsoft anyway...

Dan 55 Silver badge

Nice idea

But if you are consistently taking longer to produce work than the time allotted because you're doing work which wasn't asked for, you've got a problem.

You can go into all the whys and wherefors but if they don't want it done the only thing you can do is take it to his boss and get fired for your trouble.

What's left apart from professional associations, unionising? Good luck with that, organising programmers is like herding cats.

Dan 55 Silver badge

Re: Your vehement invective is pointless; there is only one fix for this malaise...

Because keeping Larry in yachts and SadNad in... whatever it is he likes is so much better...

Patching a fragmented, Stagefrightened Android isn't easy

Dan 55 Silver badge

Re: "it needs to push carriers to push over-the-air updates promptly after fixes become available."

WiFi calling is SIP and Android's got a built-in SIP client. The same could be achieved on standard Android by T-Mobile making their SIP settings public.

Dan 55 Silver badge

Re: "it needs to push carriers to push over-the-air updates promptly after fixes become available."

Well, the problem is also somewhat Google's in that Android isn't very modularised. What changes do phone manufacturers make apart from changing the theme and adding a few applications? It shouldn't be enough to make updating costly and slow.

Dan 55 Silver badge

Re: REM had the answer in 1992?

Automatic for the People... Do I win a prize?

Mozilla-Microsoft spat latest: Firefox yanks Cortana away from Bing

Dan 55 Silver badge

Re: I'm Mullah-levels of mad

I believe it's because it's so easy to go after contact forms, almost nobody's legal because the law is an ass...

http://www.bonillaware.com/web-internet-lopd-proteccion-datos

Apple and Google are KILLING KIDS with encryption, whine lawyers

Dan 55 Silver badge

You're a little out of date. Home and Pro have Bitlocker, and the key is uploaded to Redmond. If you don't have or open an MS account, no Bitlocker for you.

Enterprise has Bitlocker and doesn't upload the key.

Dan 55 Silver badge
Black Helicopters

I notice that with Windows 10 uploading your recovery key to Redmond, they're not complaining about Microsoft.

Thirty five Flash Player holes plugged (and there's one quick fix)

Dan 55 Silver badge

Firefox can deny Flash for everything (plug-ins tab in the window that opens when you choose the add-ons menu option) except for the sites you enable it for in the page info menu option.

Dan 55 Silver badge

Re: Article that'll never happen:

Perhaps it could be like the old SNL gag that they did every week...

"Adobe's Flash plug-in still has security holes."

Another day, another SNAFU.

Dan 55 Silver badge

Cloudflare's fantastic DDOS protection. It makes sure that the server is up 24-7 by denying all connections.

Spanish developers strike gold with ‘Mr Mayor’ dodgy dealings gaming app

Dan 55 Silver badge
WTF?

"Now if they had written this about Franco, it might have been a little bit more than simply shutting down the company..."

For which they can be thankful?

Dan 55 Silver badge
Devil

They're so going to get shut down when their own mayor hears about it and takes it personally.

It's 2015, and someone can pwn Windows PCs by inserting a USB stick

Dan 55 Silver badge
Facepalm

I like the way they separated the Edge bugs from the IE bugs. Same CVEs though. Whatever could that mean?

HTC caught storing fingerprints AS WORLD-READABLE CLEARTEXT

Dan 55 Silver badge
Trollface

Re: I wonder how many people will be bitten by these biometric shenanigans

The password will be a DNA sample.

BlackBerry can't catch a break: Now it's fending off Jeep hacking claims

Dan 55 Silver badge

How could any OS be responsible for security...

... if someone was numpty enough to write a server which opens a port, lets people connect without authentication, and acts on commands?

W is for WTF: Google CEO quits, new biz Alphabet takes over

Dan 55 Silver badge
WTF?

Re: I missed it.

I'm waiting for Steve Bong to explain what all this means.

Intel left a fascinating security flaw in its chips for 16 years – here's how to exploit it

Dan 55 Silver badge
Trollface

None of this matters anyway

As yet nobody's published hard evidence on ring -3 which was implemented at the NSA's request.

Citrix warns that Windows 10's Edge browser borks Receiver

Dan 55 Silver badge

Re: Can't they do it the iOS way?

AIFAIK all browsers support linking a protocol in a link (e.g. telnet://server.name) to an application (er, telnet). Citrix could make one of their own up (e.g. citrix-receiver://whatever) which would link to Receiver.

I very much doubt that Edge, as basic as it is, doesn't support this.

Dying cipher suites are stinking up TLS with man-in-the-middle vulns

Dan 55 Silver badge

LibreSSL has had Dual_EC_DRBG removed from it, the article appears to refer to that.

Indian carriers forced to send TXT for every 10 megabyte download

Dan 55 Silver badge

Perhaps this is why Android One was a failure

A 10MB data bundle wouldn't last five minutes with all that background data transfer that seems to be so necessary on the Android platform.

Get thee behind me, Satanic mills! Robert Owen's Scottish legacy

Dan 55 Silver badge
Flame

Social agenda

Not sure why the mill might have been more profitable without the social agenda if profits rose precisely because he bought the mill and implemented the social agenda.

Funny how things seem to be going backwards from those basic premises that industrialists themselves implemented then because they understood the bigger picture. E.g. I don't see any mention of zero hours contracts as a good thing in that quote. Odd, that.

Aussie bloaters gorging on junk food 'each and every day'

Dan 55 Silver badge
Coat

Re: These include chocolate, of which Australians "eat the equivalent of 32kg" per year.

Australian chocolate is bordering on Hershey's, so yes they would be eating the equivalent of chocolate.

Yahoo! parties! like! it's! 1999! with! retro! billboard! revival!

Dan 55 Silver badge
Devil

Re: The cynic yahoo bashing gets old

Yahoo Mail is the only one without push apart from a proprietary thing for iPhones. There is no client that will give you push mail on Yahoo apart from the rather terrible Yahoo Mail app or the not particularly good MailDroid which appears to have reverse engineered their push in some way.

In 2015.

Oh, they also manage to renovate their webmail interface every five years or so and make it worse.

Windows 10 climbs to 3.55 per cent market share, Win 8.1 dips

Dan 55 Silver badge

Re: Bringing Up The Rear

I'll say it again, you're comparing one version of Windows with all versions of Linux. The one version of Windows grows at the expense of the other versions of Windows.

Dan 55 Silver badge

Re: Check again in September

DVD playback on updated Windows depends if you had it before in 7 or 8 (with media centre). If you didn't have it before or it's a new install you have to cough up.

Rather poor that MS can't push the boat out and just include the codec. Apple does.

Dan 55 Silver badge

Re: Windows 10 is a no brainer update

"Even then, how can you be sure they won't silently be "accidentally" re-activated by some update or service pack at some arbitrary point(s) in the future."

You can't, Windows 7 had an update which made it send more telemetry data. A second update silently changed the CEIP setting to on to reflect this, but even turning it back off again you're not sure any more because trust has been lost,

Dan 55 Silver badge
FAIL

Re: Bringing Up The Rear

You're not comparing all Linux with all Windows.

Safe as houses: CCTV for the masses

Dan 55 Silver badge

Re: NETATMO Ts and Cs

Non-exclusive rights for everything apart from privacy and publicity which you've waived... Which would mean they get exclusive rights.

As Netamo are a French company they should get slaughtered by the CNIL for not respecting family life or residence. Or maybe even marital situation if it puts their right to have an affair in danger. Well, in theory, but the practice remains to be seen, as is ever the way in France.

Dan 55 Silver badge

Re: NETATMO Ts and Cs

"You hereby waive any rights of publicity and privacy with respect to the UGC."

Ye gods, that can't be legal surely?

Dan 55 Silver badge

Re: Hmm,no Nest

I can only imagine the positive comments an article about putting a Googlecam in your house would receive.

Dan 55 Silver badge

Re: Nice photo framing...

Ceiling Cat TV?

Dan 55 Silver badge
Meh

I have no idea why commercial camera solutions can't record to a NAS and you just log onto your NAS to see the pictures taken. It's not as if it's difficult to configure with the likes of Bonjour which means your NAS, your base/camera, or both should be announcing themselves on the network and the base/camera's webadmin/an app on your smartphone should let you point it to the NAS share.

Well, no idea apart from recurring subscription fees.

Carphone Warehouse coughs to MONSTER data breach – 2.4 MEELLION Brits at risk

Dan 55 Silver badge
Thumb Up

Re: Why 90,000 customers out of 2.5 million?

That'd explain why some records are encrypted and others aren't.

Dan 55 Silver badge
Holmes

Why 90,000 customers out of 2.5 million?

It'd be nice if they could say which kind of customer their card details taken. Are they the easily led astray who paid for phone insurance or some other 'value added service' with a recurring payment?

Perhaps middle-aged blokes SHOULDN'T try 34-hour-long road trips

Dan 55 Silver badge
Meh

Re: A few things

There is another option - no saving on Earth is enough to compensate sharing the road with Germans driving along the Autobahn in Audis approaching light speed or Southern Europeans who are taught your breaking distance is the space where they put their car after overtaking you while someone else tailgates you.

Dan 55 Silver badge

Re: Lane merging

If Portugal is like Spain the rule seems to be "does it fit into the least amount of space possible?"

Dan 55 Silver badge

Pop quiz

What you going to do after six months with your car on Czech plates? Won't they get you when you register for Portuguese plates?

Windows 10 is FORCING ITSELF onto domain happy Windows 7 PCs

Dan 55 Silver badge

Re: tenforums.com

Does method 2 steps 1 and 2 from the accepted answer stop the update? I assume if the registry keys are set the download won't restart afterwards.

http://answers.microsoft.com/en-us/windows/forum/windows_8-update/downloading-windows-update-stuck-at-0/cdb1a9be-7e4c-4de2-8e4b-47379d6a3d9a

Dan 55 Silver badge
Holmes

Re: tenforums.com

If you've uninstalled everything else to do with Windows 10 but the 3Gb iso still keeps downloading then that probably means it's a BITS job.

If BITS doesn't give up after deleting the folder then you'd need to brush up on your PowerShell to kill the job.

Dan 55 Silver badge

Re: tenforums.com

There's also...

HKLM\Software\Microsoft\Windows\CurrentVersion\WindowsUpdate\OSUpgrade

DWORD: ReservationsAllowed = 0

If you set that to 0, wipe the C:\$WINDOWS.~BT folder, and restart, maybe that will do it?

Dan 55 Silver badge

Re: tenforums.com

Try also...

HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate

DWORD: DisableOSUpgrade = 1

And disabling CEIP.

Seems to return everything as it was before.

Dan 55 Silver badge
Flame

Re: We haff ways of MAKING you inztall!

This forced 3Gb download is great for people working with a mobile connection.

Maybe a workaround for Windows 8 is to mark all WiFi connections as metered.

Dan 55 Silver badge
Flame

Re: They're sneaky even to WSUS users

These KBs are just being downloaded time and time again...

KB3035583 - GWX Update installs Get Windows 10 app in Windows 8.1 and Windows 7 SP1

KB2952664 - Compatibility update for upgrading Windows 7

KB2976978 - Compatibility update for Windows 8.1 and Windows 8

KB3021917 - Update to Windows 7 SP1 for performance improvements

KB3022345 - Telemetry [Replaced by KB3068708]

KB3068708 - Update for customer experience and diagnostic telemetry

I suppose the way around for home users is to install WSUS on their own computer at home. Should this really be necessary?

As I ranted before, the fuckers have turned Windows Update into Coupon Monkey adware.

Want to download free AV software? Don't have a Muslim name

Dan 55 Silver badge
Black Helicopters

Re: Sophos? Curious choice for a "Reg reader"

I'm rather disappointed that Sophos, being a UK company, didn't detect the name and silently offer an alternative download which Ccs everything to Cheltenham.

Virtually no one is using Apple Music even though it is utterly free

Dan 55 Silver badge
Headmaster

It's an outrage

That someone from the UK uses the word "sucks" to mean contemptible.

Microsoft vacates moral high ground for the data slurpers' cesspit

Dan 55 Silver badge

Re: 10 is exhibiting virus like activity.

Take your pick, but it often comes back...

https://superuser.com/questions/922068/how-to-disable-the-get-windows-10-icon-shown-in-the-notification-area-tray