* Posts by alain williams

2855 publicly visible posts • joined 29 May 2007

US minister invokes Maggie Thatcher, says she would have halted Huawei 5G rollout

alain williams Silver badge

Re: You can see his point

No, they rely on Microsoft to do that

alain williams Silver badge

Pompeo has lost it ...

his ravings are becoming ever more the stuff of fantasies. Maybe he is smoking something really good, or perhaps spending too much time close to Trump has gotten him infected with some nasty brain worm.

He talks about Chinese law ... I hope that someone reminded him of USA law, in particular the Patriot Act.

US foreign minister Mike Pompeo to give UK a bollocking over Huawei 5G plans

alain williams Silver badge

Fuck off Pompeo

The UK is a sovereign state, we make decisions according to our own interests. We do not want to be bullied by another country: especially one that is wrapping up their commercial interests as a security issue.

I believe that Pompeo is trotting out this fake news on behalf of Trump - someone who shows no restraint on lying to get what he wants.

Please fix the proven spying in kit made in the USA before you complain about unproven spying in kit from elsewhere.

Can I get a RHEL yeah? Version 8 arrives at last as IBM given go-ahead to wolf down Red Hat

alain williams Silver badge

Too much damned javascript ...

noscript blocked about a dozen sites ... I enabled RedHat & a few and still nothing of interest showed.

I'll wait until details come out elsewhere rather than submit to whatever collection of tracking they are using.

The Year Of Linux On The Desktop – at last! Windows Subsystem for Linux 2 brings the Linux kernel into Windows

alain williams Silver badge

Bringing MS Spyware to Linux

As I see it this is the Linux kernel running under a MS hypervisor. This means that the MS kernel sees everything that goes in & out of the Linux kernel and is so available to be slurped up and exfiltrated via telemetry. MS can then inspect/sell as it wants. Your Linux system is now not secure.

You might think that this would be hard to do; but one of the most sensitive devices is the keyboard (think typed passwords). Snooping of this would be easy and the bandwidth needed to take and forward to the NSA would not be large.

So: do not use one of these machines to ssh to something precious.

Firefox armagg-add-on: Lapsed security cert kills all browser extensions, from website password managers to ad blockers

alain williams Silver badge

Oh ...

I can see all sorts of adverts down the side of El-Reg pages ... never seen them before!

It actually feels un-nerving to know that I am leaking all sorts of info as no-script, cookie-auto-delete & others are not protecting me :-(

UK is 'not a surveillance state' insists minister defending police face recog tech

alain williams Silver badge

Time to get a Theresa May face mask

Police are also continuing to build giant databases full of biometrically scanned images of innocent people’s faces

and walk round various shopping centers.

'I do not wish to surrender' Julian Assange tells court over US extradition bid

alain williams Silver badge

The USA wants Assange for what he did

please remind me if they have been after those who Assange exposed for doing wrong; eg the helicopter crew who laughed while shooting innocent people ?

This is a case of 'shoot the messenger' - there is a clear message to other who might expose USA wrong doing.

Microsoft promises to boil down its lengthy and confusing privacy controls… in 1,500-word announcement

alain williams Silver badge

Re: At Alain Williams, re: something to check traffic.

Isn't that what things like WireShark are for?

You won't see what is being sent as the telemetry is encrypted.

Microsoft is right to encrypt it as it may contain personal information. This is why a tool needs to be provided that the user can run on their PC.

alain williams Silver badge

Re: Microsoft privacy controls™©

Microsoft said it would split data gathered into "required" and "optional."

So: people cannot switch off telemetry. But will Microsoft publish a program that lets the PC owner see what data has been sent to Microsoft/NSA ? That program must be open source so that we can verify that it is telling the truth.

This is all rather ironic considering the fuss about Huawei.

Huawei, Huawei. Huawei, Huawei. Feeling hot, hot, hot: US threatens to cut UK from intel sharing over Chinese tech giant

alain williams Silver badge

This only shows to not trust USA intelligence

If they blab this probable bollocks about Huawei how much trust should we give to anything else that they say ?

What have we had: hacking from North Korea, Putin meddling in USA elections, Kaspersky Labs spying for Russia, ... ? I offer no opinion on any of these, but I down rate what the USA claims.

Of course, they say nothing about: Cisco routers tampered by the NSA and don't ask questions about what Microsoft telemetry is really about.

Sky customers moan: Our broadband hubs are bricking it

alain williams Silver badge

Sky been taking lessons from Microsoft ...

push out updates without adequate testing ?

Slack files for IPO, warns of bumpy valuation as it swerves big bank underwriters

alain williams Silver badge

No underwriters - no fat fees for bankers

I don't see a problem with that.

Ok Google, please ignore this free tax filing code so we can keep on screwing America

alain williams Silver badge

Re: Still using Google?

Google is doing the right thing here; the bandits are the likes of Intuit. They have an agreement with the USA tax people and then try to run around that agreement. They should be hit with a corporation changing fine - but this won't happen as they have paid too many politicians from their slush fund.

Wannacry-slayer Marcus Hutchins pleads guilty to two counts of banking malware creation

alain williams Silver badge

Re: So now he has admitted to creating nasty malware.

And telling lies

This is not a crime, if it were then 99% of our elected politicians would be eating porridge.

(Cue: discussion on if telling lies should be an offence. +1 from me.)

Old-school cruel: Dodgy PDF email attachments enjoying a renaissance

alain williams Silver badge

Very lacking in specifics ...

What operating systems, version; what PDF readers, etc ? Some details as to where holes have been found in the last year or few.

Eg: is MS Windows 10 any better than 8 ? What versions of MacOS ? What Linux distros ? Or do they assume that everyone runs MS Windows 10 ?

OK: can't predict the future, but knowing what has been vulnerable in the past can suggest what to avoid.

Facebook: Yeah, we hoovered up 1.5 million email address books without permission. But it was an accident!

alain williams Silver badge

''deleting the illegally collected details''

They might even do so, in an unusual fit of honesty; but what they will not do is to delete the social graph/connections that they have learned as a result - this is what I would like to see deleted.

Maybe punishment should be that Zuckerberg's address book should be made public, see how he likes that. Although that would be unfair on those who are exposed as talking to him.

Google hits brand slam stamping AMP with more crypto glam

alain williams Silver badge

How to make web pages load faster

Don't burden it with a morass of javascript - eg Google Analytics.

Supreme Court of UK gives Morrisons the go-ahead for mega data leak liability appeal

alain williams Silver badge

If Morrisons is liable for what an employee did ...

then is the USA Commander in Chief (currently one D Trump) liable for what was released by Chelsea Manning ?

Europe's home PC buyers reach for their collective smartphone, sigh: We don't need a new desktop. This is a computer, right?

alain williams Silver badge

Hardware just chuggs along ...

My main desktop is a 7 y/old AMD Bulldozer, 32 GB RAM. I have had to replace some fans, the PSU & a disk but that is about it; oh - I upgraded the screen a while back. I run Linux so upgrade problems are not an issue. It is still plenty fast enough. I expect to continue to run this for a few more years.

Laptop: a small HP Stream. Not a heavy CPU which means the battery lasts. Cheap: so that when I drop it under a bus I won't cry (much).

US: We'll pull security co-operation if you lot buy from Huawei

alain williams Silver badge

Fuck off USA

That is the only possible reply to a bully; then the rest of us refuse to share security data with the USA.

This seems to be as much about economic competition that security/spying.

It seems that the quality of Huawei code is poor, but that is a different/unrelated topic and seems no worse than the code in their competitors' kit.

Uncle Sam charges Julian Assange with conspiracy to commit computer intrusion

alain williams Silver badge

Is this the best that the USA can come up with ?

We all know that the USA wants to lock Assange up for as long as possible to frighten anyone else who is thinking if lifting the lid on unsavory actions done by (or on behalf of) the USA. This is all about punishing the messenger, not the guilty.

If they do get their hands on him: he will not get a fair trial - so the UK should refuse to extradite him.

It will be interesting to see how supine our politicians are ... yes, yes, I know that the judges will supposedly make the decisions, but it is likely that they will be heavily leaned on. I wonder what the deal will be ? Give them Assange and we won't need to take chlorinated chicken in a post Brexit trade deal ?

BTW: have any of those troops shown shooting up innocent people yet been put on trial ?

London's Metropolitan Police arrest Julian Assange

alain williams Silver badge

Does he yet have a ticket to the USA ?

This is what he was afraid of: the USA, somehow or another, finding a way of getting him over the pond. Once there he would likely spend a very long time in chokey, on some pretext of another. The real reason is that he embarrassed the USA by exposing things and some there want revenge.

RIP: Microsoft finally pulls plug on last XP survivor... POSReady 2009

alain williams Silver badge

I know places still installing them ...

It is quite fortunate that none of them are places where you need to worry about security; eg: ATMs.

Who had 'one week in' for a Making Tax Digital c0ckup? Well done, you win... absolutely nothing

alain williams Silver badge

HMRC taken advice from Microsoft ?

Just implement stuff and get the users to test it for them.

Google Pay tells Euro users it has ditched UK for Ireland ahead of Brexit

alain williams Silver badge

So this has nothing to do with ...

a more favourable tax regime in Eire ?

UK tech's gender pay gap: HP Inc closest to parity with 1.8% sliver – Civica, Huawei, Siemens straddle 40% chasm

alain williams Silver badge

Did these companies also report like-for-like comparison ?

All that the median number tells us is how many men/women go for the higher paid jobs or work longer hours - which, to an extent, is up to the individual. There might be some prejudice in the hiring and promotion of people, that will be harder to flush out as it will need careful analysis of the decisions made that result in a job offer or promotion.

A like for like comparison (ie job rôle, experience, hours worked) will tell us if there is real wage discrimination - this difference should be zero.

Ex-Mozilla CTO: US border cops demanded I unlock my phone, laptop at SF airport – and I'm an American citizen

alain williams Silver badge

A nice Anglo-Saxon name ...

Try getting in if you have a name like Muhammad, or (a few years ago) I recall a 6 y/old having huge problems because his name was Saddam Hussein.

alain williams Silver badge

Re: Don't travel to the US.

I read it, closed the page and Cookie Autodelete zapped those ad cookies.

Fortune favours the Brave: Privacy browser chap takes gripes over adtech body's website to Irish data watchdog

alain williams Silver badge

The next target ...

should be those web sites that ask you to opt OUT of receiving spam, etc. My understanding is that these should be opt IN.

Many do this, but start with Ryan Air.

Go on, feast your eyes on... HMRC's backend: 4,000 IT staff, its hookup with AWS and more

alain williams Silver badge

Why have HMRC given my tax records to the USA government ?

If all that data is held by Amazon, a USA company subject to USA laws, then how long before the NSA/CIA/... issues them with a National security letter demanding a slurp of all UK tax data.

How can they be so stupid ? Or don't they care ?

All this brouhaha about Huawei and we just give it to the USA!!!

Packet's 'big boy' servers given a shot in the Arm with 32-core, 3.3GHz Ampere CPUs

alain williams Silver badge

Please can we have a real speed metric

CPU clock does not tell you a lot. Different chips have different numbers of processors. Different processors do different numbers of IPCC (Instructions Per Clock Cycle). Different Instruction sets do different amounts of work per instruction (think: RISC/CISC, or x68_64 vs ARM vs MIPS vs mainframe ...). See here.

Work done is the only real metric. Something like SPEC is a good starting point. OK: different types of work load use the CPU in different ways so SPEC is not always that good, but it is a much better metric that clock speed.

This will make it harder for the journalists as vendors like to quote GHz as it is easy and many people don't know better. But most el-reg readers do know better ... so, please, can we have something more meaningful.

Huawei's half-arsed router patching left kit open to botnets: Chinese giant was warned years ago – then bungled it

alain williams Silver badge

Just crap software

Another example of crap software talked about y/day. I doubt that Huawei is worse than many vendors who ship other closed source on their kit. Huawei sells hardware, the software that makes it work is just an inconvenience and so will put as little effort (== cost) into it as it can get away with.

BTW: some will claim that this is an example of Chinese government back hole in Huawei kit; possible but I doubt it.

What bugs me the most? World+dog just accepts crap software resilience

alain williams Silver badge

Who bears the cost ?

You say it'll be more expensive

The real question is ''who bears the cost?'' The answer is ''not the development organisation'', eg not the vendor but its customers. So the benefit to who has to pay the extra cost for the reliability gains little, a bit less work for its call center maybe, but that is about it. Its customers however: waste huge amounts of time on work arounds or become frustrated - but does the vendor care ?

The other cost of producing reliable programs is time. The extra time taken means that the competition might get their product to market first and so get the customers and maybe even the market. One company that has used this ''get something that vaguely works and let the customers suffer'' method is Microsoft; it did this in its early days, got better for a while and is now getting worse again.

Another part of the problem is that customers getting redress is rare. We are pushed to accept major bugs. It is hard for the customer to go elsewhere, they have already made an investment, changing is costly - and anyway: will the competition be much better ? Probably not: commercial factors dictate not.

UK pr0n viewers plan to circumvent smut-block measures – survey

alain williams Silver badge

When the data breach happens ...

which, and how many, government minister's wife/husband will have been found ogling skin ?

Or fleece for the Welsh Assembly.

6 days to go, no sweat, just more than a million UK firms still to sign up to Making Tax Digital

alain williams Silver badge

MTD is still a complete fluster-cuck

Having to buy in (*) something to fill in 7 numbers on a web-form seems pointless

HMRC is pursuing the unicorn that by making everyone use an accounts package that tax fraud will be magically eliminated. They don't care a toss that it will cost all of us huge sums that bring us little benefit.

This is especially onerous for small businesses who do not need costly accounts s/ware, eg private landlords. It is also a pain for those who have written their own accounting programs.

From what I hear the amount of detail that will be required will increase over time, which means more time wasted entering, into accounts programs, information that is useless to the business, such as one purchases: supplier invoice numbers and VAT numbers.

Aussie engineer accuses 'serial farter' supervisor of bullying, seeks $1.8m redress

alain williams Silver badge

What a stink over a bully!

I hope that the court case clears the air.

NASA 'nauts do what flagship smartphone fans can only dream of: Change the batteries

alain williams Silver badge

It also seems that the astronauts ...

have the right to repair their kit. Hopefully this will be one of the spin off benefits from the ISS.

Facebook's at it again: Internal emails show it knew about Cambridge Analytica abuse 'months' before news broke

alain williams Silver badge

Thumbs up to the Reg hack

that dug up that Pinocchio in a suit image!

Debate around Huawei espionage fears in UK about as clear as those darn Brexit negotiations

alain williams Silver badge

Buy Huawei kit - install the open-source Network Operating System

They have the hardware that we need; just replace the firmware with something that we can trust.

(Assuming that the spyware was ever much more than smoke rings puffed from Trump's commerce department that Supports USA companies.)

Children of Wales to be prepped for the vibrant world of work with free Office 365 ProPlus

alain williams Silver badge

How much is the Welsh gov't being paid ...

to take on some of the function of the MS marketing department ? Pushing this stuff to school kids thus ensuring that it is what they will expect to use when they enter employment ... and complain if given anything else.

Oh, you mean Wales is paying MS, not the other way round !!!

Education should be about teaching kids how to use computers and a variety of software products.

Training is teaching kids to use one product.

How low our education has slumped.

Carphone Warehouse thwacked by UK Advertising watchdog for a Cyber Monday wobble

alain williams Silver badge

Premium rate calls

If you need to call that because of their screw up: you should add the cost of the premium call to any refund that you get. If they argue: add the cost of your time that they have wasted.

You can always find an alternative number at saynoto0870.com

Super Cali optimistic right-to-repair's negotious, even though Apple thought it was something quite atrocious

alain williams Silver badge

Where else will this apply ?

John Deere tractors & motor cars to start with.

What about broken firmware on 'phones, IoT devices, etc - many of which do not receive updates for very long - if at all.

PuTTY in your hands: SSH client gets patched after RSA key exchange memory vuln spotted

alain williams Silver badge

Re: PuTTY's days are numbered

I seem to recall PuTTY has had a mixed history when it comes to security (e.g IIRC there was a period where they had a trojanised copy hosted on the official website for quite some time before it got noticed).

PuTTY on MS Windows has a much greater problem than a, now fixed, trojan copy of PuTTY.

The whole operating system is a trojan, it has an in built key logger. You are supposed to be able to turn key logging off, but you can't completely switch off telemetry, what gets sent is encrypted (from the machine owner) -- so how do you verify that key stroke stealing is really disabled ?

I will not use PuTTY on a Windows machine - I would just not feel safe.

College student with 'visions of writing super-cool scripts' almost wipes out faculty's entire system

alain williams Silver badge

Kudos to the Head of Faculty ...

for helping to fix the problem *first* ... then think about bollocking the student.

I know too many managers who will rant, rave & place blame (not them) as the first thing that they do.

It's alive! Big Switch stitches together an open-source Network Operating System

alain williams Silver badge

Will Huawei start shipping boxes with this ?

It would make it harder for the USA to claim that Huawei networking kit is riddled with Chinese Gov't spyware. Especially if Huawei makes it easy for the local network admin to install his own compiled copy of NOS.

Granted the claim could be made that the hardware is spooked, but that is harder.

Next question: will CISCO also support NOS - so we can be free of NSA 'additions' ?

Facebook blames 'server config change' for 14-hour outage. Someone run that through the universal liar translator

alain williams Silver badge

Re: The worst thing about this outage...

I wonder how many more productive hours were done at work, school, ... as a result.

Maybe this should happen more often!

Amazon may finally get its hands on .amazon after world's DNS overseer loses patience

alain williams Silver badge

These new TLDs were always a stupid idea

It is an ICANN money making scheme, completely unnecessary.

2 weeks till Brexit and Defra, at the very least, looks set to be caught with its IT pants down

alain williams Silver badge

Effects of food import tax

good news for farmers, not so good for shoppers

But:

* UK farmers will become richer and thus pay more taxes, so the rest of us will need to pay less tax to 'balance the books'.

* Import tax also means less tax needed.

So at first glance it is good for tax payers, but the benefit will be felt most by the richer who will gain most by any tax cuts (assuming that this happens). Alternatively UK government could spend the extra tax receipts on helping the less well off - cushion them from price hikes.

But: it is all too complicated, and exposed to political whimsy, for anyone to predict with any accuracy.

alain williams Silver badge

You beat me to it ...

people keep on asking me if I think that Brexit will be a good idea. I always say ''I don't know as I don't know what the UK relationship with the EU will be after Brexit.''

Remember: all the brouhaha is about the *exit deal*, getting on to three years post referendum and they have hardly talked about what the post Brexit relationship will be. So how can anybody pass opinion on something that, for now, is a vague wish list ?

Refusing to talk about the new relationship until after exit strikes me as stupidity in the extreme; or perhaps political game playing.