* Posts by Dan 55

16877 publicly visible posts • joined 13 Jun 2009

Kill off SSL 3.0 NOW: HTTPS savaged by vicious POODLE

Dan 55 Silver badge
Alert

Re: smug

Poodletest doesn't get it right with Firefox - it is vulnerable.

See other post somewhere above.

Dan 55 Silver badge
Alert

Re: From ISC

I would say that https://www.poodletest.com/ is not 100% reliable, at least with Firefox and probably other Gecko browsers.

Firefox is vulnerable - check at http://zmap.io/sslv3/. To fix set security.tls.version.min to 1 in about:config and Shift-refresh the test page.

Same goes for Android versions.

Firefox 34 when released will disable SSL 3 if you don't do it manually now.

Sway: Microsoft's new Office app doesn't have an Undo function

Dan 55 Silver badge
Trollface

Re: it's an beta release

Some dev you are, you can knock it up at the last minute, just like security.

Dan 55 Silver badge

Re: HyperCard anyone?

Was going to say the same, but it sounds like it doesn't have a scripting language so what use Sway is going to be is anyone's guess. It just seems to be PowerPoint Lite.

I think HyperCard came out earlier, late 80s.

South Korea faces $1bn bill after hackers raid national ID database

Dan 55 Silver badge

Re: proof of identity

Spain's got something similar. People have been known to forge ID cards with their own photo, apply for loans, and saddle the original person with the debt (credit history goes by ID number, see?).

One number is for life, there's nothing you can do to change it.

The latest ID cards are chipped, which is a horrific Java bodge-job which authenticates to government and bank websites and fails more often than it works. In fact it fails so much that most government websites also authenticate by other means (mobile text message, PIN via letter, filling-in known details, etc...) otherwise nothing would get done online.

Windows 10: Forget Cloudobile, put Security and Privacy First

Dan 55 Silver badge

How easy is it to turn on in the release version?

With a registry hack and copying a dll or two from the beta version can the monitoring be turned back on?

If I judiciously add an entry in hosts can I divert the upload elsewhere?

This is MS we're talking about so I wouldn't like to place a bet on it...

Dan 55 Silver badge

Although it was a stupid idea, you can change a checkbox and nothing gets hidden ever again.

Unfortunately there's no unstupid option for the ribbon. Stuff is hidden in drop-downs and odd groups and tabs and you are forced to learn where they've been arbitrarily placed.

At least the Mac version still has the menu so the ribbon can be safely ignored.

Netscape Navigator - the browser that started it all - turns 20

Dan 55 Silver badge
Windows

Re: Ah, Netscape Navigator! I knew it well, Horatio

Demon Internet, 14.4K, KA9Q, jumpers for goalposts...

None of those Winmodems in those days.

Dan 55 Silver badge
Windows

Re: Cello and Winsock

Netscape on Windows 3.1 was an unbeatable combination, at least until there were too many images on the page, the whole UI failed to redraw properly, and finally Windows displayed GPF dialog after GPF dialog before disappearing up its own fundament.

So, even then, it was still a better user experience than Windows 8.

Of COURSE Stephen Elop's to blame for Nokia woes, says author

Dan 55 Silver badge
Mushroom

Re: So...

Yeah, you think that perhaps that a better outcome would have been Nokia keeping the handset division, 30000-or-so people in gainful employment, and churning out phones people wanted?

He inherited a company with the highest marketshare in the world. So far he burned two platforms and a toolkit (Symbian, MeeGo, and Qt), transitioned over to a dead-end platform (WP7), failed to persuade existing customers to transition over from Symbian to WP7, bought another platform (Meltimi), burned it, tried to sell the handset division to Microsoft and failed, started a new platform (WP8) without giving WP7 users an upgrade path so they wondered off to Android or iOS, started a new platform (Nokia X) as a way to force MS's hand, got Nokia's handset division sold, received a tonne of cash, burned another platform (Nokia X), and got 15000-or-so people fired. Microkia is now an irreverence in the handset market. Luckily Nokia (the parent company) came out of it relatively unscathed and able to jump back into the market in a year's time.

Whether or not he was a Trojan horse, and possibly he wasn't due to needing two attempts to sell the handset division, he certainly was a piss-poor CEO with a history of running companies into the ground and selling them off on his CV.

EE TV brings French broadband price war to the UK

Dan 55 Silver badge

Re: Vodafone España

That might be a reason to avoid Vodafone in Spain if the rest had better customer service, but they're all about the same.

Dan 55 Silver badge
Trollface

Re: Seems very complicated

That is a good question. Because many people already watch TV with a phone in their hand?

Now you/your kids/your grandkids can watch TV from their bedroom / the garden / the toilet without needing to install another TV (along with aerial cabling etc) in those places.

I thought you were supposed to be listing the pros, not the cons.

Xiaomi boss snaps back at Jony Ive's iPhone rival 'theft' swipe

Dan 55 Silver badge
Facepalm

Re: Correction...

HTC even invented a time machine to copy the iPhone 6, the bastards.

See what Apple are up against?

Rebellion sees Chromium reverse plans to dump EXT filesystem

Dan 55 Silver badge

Actually it is. Try using a Mac with FAT, or Windows with ext - it'd probably be an achievement if it boots.

And dropping ext support because they couldn't figure out a way to rename ext-formatted disks in the file explorer shows you the kind of brains they have behind Chrome, Chrome OS, and Android.

Slap for SnapChat web app in SNAP mishap: '200,000' snaps sapped

Dan 55 Silver badge

Re: A question

I'm not claiming the picture disappears, I'm saying that on first run an SMS should be used to pass a credential which is then used later for logging in. Attempts to log in using the API by the third party would fail as they wouldn't have it.

Dan 55 Silver badge
WTF?

Re: A question

Why aren't Snapchat using OOB verification to generate a credential based on the mobile phone (e.g. IMEI or phone number) which a third party will not be able to access even if people are stupid enough to put in their username and/or password.

Was Nokia's Elop history's worst CEO?

Dan 55 Silver badge

Re: Um, no...

Qt 4.8 couldn't have fixed anything, Elop had burned Nokia's platforms by that time.

If anyone was ever in doubt after the burning platforms memo, all they needed to do is look at the his CV and they'd have known what was going to happen. And sure enough, it did. It's not a conspiracy theory, it's putting two and two together.

Dan 55 Silver badge

Re: Um, no...

Of course Nokia's smartphone market share had fallen, the smartphone market itself had grown.

The figures (60% to 35%) differ from Tomi Ahonen's. You might say he's not impartial but he makes a very convincing argument.

Dan 55 Silver badge

The outsourcing to Accenture happened after Elop arrived.

Dan 55 Silver badge

Um, no...

That'd be why the graphs of whatever you care to mention kept going up till the burning platform memo, when devs abandoned Nokia followed closely by customers. That's why he went with WP although neither devs nor customers followed him. That's why the N9 got rave reviews but was sold as little as possible and in hardly any of the markets which mattered. That's why he got a clause paying him millions if he sold the handset division. And that's why he made Nokia X just to force MS' hand after the first attempt to sell Nokia to MS failed.

EE TV: Network snubs 'Auntie's antique' for mobe-happy set-top box

Dan 55 Silver badge

Re: So wait...

Charging more for nothing special? That's mobile thinking.

Twitter sues US government for right to disclose NOTHING

Dan 55 Silver badge

Re: Will they come to get me?

In the interests of transparency I am pleased to be able to disclose that yesterday I received between 0-249 NSLs and FISA orders and today between the hours of 0:00-11:59 I received 0-249 NSLs and FISA orders.

Adobe spies on readers: 'EVERY page you turn, EVERY book you own' leaked back to base

Dan 55 Silver badge

Re: Plaintext over http?

Of course they do, that's why Flash and Reader get updates every two weeks.

Britain’s snooping powers are 'too weak', says NCA chief

Dan 55 Silver badge

Re: Belt & Braces

I can only assume they want to retcon snooping message and call content into law, since they've already got every piece of harmless and useless metadata you could possibly think of.

Apple tries to kill iWorm: Zombie botnet feasting on Mac brains

Dan 55 Silver badge
Meh

Apparently it's bad form to use Apple products and be critical of them.

That still doesn't mean the built-in malware protection isn't as flimsy as two yoghurt pots connected with a piece of string and they're not off the stupid scale for making the bash update a manual install.

Dan 55 Silver badge

Re: admin password needed

Neither Gatekeeper nor XProtect work for drive-by downloads via browser or plugin vulnerability, apps which download something but don't set the quarantine attribute on whatever it is they've downloaded, or stuff off DVDs or USB sticks. Both rely on a lot of things playing nicely which is not a given with malware.

Dan 55 Silver badge

I still haven't got last week's bash update. I hope they're faster with this one.

Windows 10's 'built-in keylogger'? Ha ha, says Microsoft – no, it just monitors your typing

Dan 55 Silver badge
Happy

Re: That means Trevor Pott was right

Well, the person ahead of everybody else would be the one who read all of the EULA from start to finish to find the buried paragraph and deciding not to hit install.

Did anyone do that? By 'anyone' I mean anyone on this planet.

Nokia Lumia 735: Ignore the selfie hype, it's a grown-up phone

Dan 55 Silver badge
Meh

It was a model that I rarely saw in public

Is anyone actually able to tell the difference between them in the street? AFAICT there's the cheap design, the not cheap design, and the one with the camera transplanted from the 808.

That N9 really paid for itself, they haven't designed anything since then.

No, Big Data firm, the UK isn't teeming with UBER-FRISKY GIGOLOS

Dan 55 Silver badge

Re: That's not the reason you're looking for

I consider the country I'm living in one of the PIGS. My country isn't one of the PIGS.

Dan 55 Silver badge

That's not the reason you're looking for

The EU in its infinite wisdom wants drugs and prostitution added to the GDP figures because it's legal in some places and not in others and that means things aren't harmonised.

So they add estimations to the GDP where necessary to get nice harmonised figures.

The estimations are arrived at differently in each country anyway and are in all probability extremely generous.

So things still aren't harmonised.

It's not about harmonisation, it's about putting lipstick on the pig that is the EU economies.

Doctor Who becomes an illogical, unscientific, silly soap opera in Kill The Moon

Dan 55 Silver badge

Re: Agree

According to Whackypedia this wasn't written by Moffat but Peter Harness. Perhaps it wasn't a good idea to give a script where an important event like this happens (Doctor and Clara falling out) to someone who's never written a Doctor Who episode before.

Incidently why bother with torrents when there are programs like Get iPlayer Automator about?

Marriott fined $600k for deliberate JAMMING of guests' Wi-Fi hotspots

Dan 55 Silver badge

Now would be the time to investigate Bluetooth/USB tethering...?

Vanished blog posts? Enterprise gaps? Welcome to Windows 10

Dan 55 Silver badge

Re: Windows 7 with a flat theme

Has Flip 3D come back from the dead? I actually found it useful but didn't realise till it was gone in Windows 8.

EU blesses $19bn Facebook-Whatsapp marriage

Dan 55 Silver badge
Facepalm

Launching a new app is fairly easy and does not require significant time and investment.

Yes, you only need to burn through VC funding keeping the server side running and paying the bandwidth until the app reaches critical mass, which WhatsApp achieved by waiving subscription fees year after year.

Desktop, schmesktop: Microsoft reveals next WINDOWS SERVER

Dan 55 Silver badge

Re: User Interface

No, but you might be confusing PowerShell ISE with PowerShell.

Dan 55 Silver badge
Facepalm

Re: User Interface

Yes, the Windows 10 version now comes with CTRL-C/CTRL-V actually copying and pasting, it's that advanced.

Microsoft's nightmare DEEPENS: Windows 8 market share falling fast

Dan 55 Silver badge
Meh

Re: No silver bullet

Can you copy from the TIFKAM calculator and paste to desktop apps yet?

Still, if all else fails I suppose you can turn the monitor on its side to get it to run in scientific mode.

Apple tool: Buying an iPhone in a carpark? Find out if it's STOLEN

Dan 55 Silver badge
FAIL

Fandroids converting to the iChurch in the pub carpark need not apply

The entire iCloud website is so keen to tell you to go away if you've got an Android browser thanks to browser sniffing (even though Safari, Android Browser, and Chrome are all webkit based so the differences should be minimal) that if you check http://www.icloud.com/activationlock/ from an Android browser you get the same error message.

Hello Apple! Think of the use cases!

One Windows? How does that work... and WTF is a Universal App?

Dan 55 Silver badge

Apart from TIFKAM apps where access to Win32 is not allowed unless the app is by MS, so any vaguely complicated software is impossible to write for TIFKAM.

IoT on Windows. Is that a funny?

Dan 55 Silver badge

Re: They're sort of there...

Don't you mean TIFKAM apps (Modern UI apps)? Because there is no common API, the APIs supported by Windows Phone 8, Windows 8, and Windows RT are all different and nothing I've read leads me to believe that Windows 10 APIs have finally been unified across different devices.

Dan 55 Silver badge
Meh

They're sort of there...

There's one store which holds apps for each platform, VS now generates apps for each platform, but... the APIs are still different although maybe less different than in Windows 8 and a desktop version and a TIFKAM version of the same app will still be as different as chalk and cheese.

How does that work in the code then? Spaghetti programming held together with ifs? Huge abstraction classes for each device type?

Still, to all intents and purposes most users now think the same version of Windows is running on loads of different devices and the same app runs everywhere. Yay, Marketing's done it again.

Apple finally patches Bash Shellshock vuln that WAS NOT A WORRY, OK?

Dan 55 Silver badge

Re: Why Bash at all?

You can enable the root user with Preferences > Users & Groups > Login Options > Network Account Server > Join > Open Directory Utility > Edit > Enable Root User.

Dan 55 Silver badge

Re: Not available

You're confident that MacPort's bash 4.3 is 100% backwards compatible with Apple's bash 3.2 so it won't disrupt the other Apple stuff which calls it?

http://tiswww.case.edu/php/chet/bash/COMPAT

Dan 55 Silver badge

Re: Not available

Yeah, but that's not the system bash. Check the path. You've got two copies of bash and one is unpatched unless you've installed Apple's bash update.

Dan 55 Silver badge

Re: Not available

MacPorts won't update the system bash, so you've still got a problem.

Microsoft WINDOWS 10: Seven ATE Nine. Or Eight did really

Dan 55 Silver badge
Devil

Re: tiles on the start menu?

Yes, but you know there's a non-small chance of MS forcing a minimum of one tile in the start menu in the release version.

Consumers agree to give up first-born child for free Wi-Fi – survey

Dan 55 Silver badge
Trollface

Re: Commentards worrying

Posting to The Register.

Dan 55 Silver badge

So that's yet another thing missing from Android...

The option to mark saved wi-fi connections as trusted (i.e. home or work ones where you'd happily sync your e-mail, contacts, calendar, and so on, and update apps and the phone) or untrusted just suitable for something like a quick browse to find train times.

New EU digi-commish struggles with concepts of net neutrality

Dan 55 Silver badge
Meh

With this man in charge, anything could happen

In 2020... Nobody is disadvantaged but if you want to download at more than 1Mb/s, you will have to have to pay more so that culture is not disadvantaged too. A part goes to the ISP, a part goes to a pool for approved EU 'culture providers', and finally the rest is tax.

I'm just throwing that out there.