Re: Will the community just lay down and get screwed?
That is the company we think they are.
42029 publicly visible posts • joined 16 Jun 2014
"If my next computer asks me for an age to create an account, I type in a random date from the 1970s and move on without a second thought."
And if that were all it would be annoying but not serious but that would be utterly pointless without being able to verify your age. In order to do that you would have to provide whatever is deemed necessary for some company that some US state legislatures thinks are good enough for them. If different states disagree it might be a separate company for each state.
GDPR? So many letters as far as they're concerned.
That's what this is about.
Why should I, in the UK, have the OS of my computer, used only by myself, have to include this simply to oblige Dan55 and some computer-illiterate US state legislators? And if it's made a legal requirement there it very likely would have to be incorporated because the same distro is available anywhere?
"The eejits have never understood the concept of advertising!"
The Beeb is littered with advertising. Advertising its own products, that is. it's not just the slots between them. Go to the BBC News website and you'll find a chunk of it is "news" about storylines or "news" about some new programme. Click on what appears to be a genuine news item and it might well be an advert for a current affairs programme that covers the story.
Definitely they know about advertising.
In the UK closing final salary pension schemes was closely related to the Brownomics policy of making the future buy votes by taxing dividends on pension schemes' investments and forcing schemes to take "contribution holidays"* so that more corporation tax could be collected. IIRC there were changes hat took the value of its pension fund into consideration into valuing a company; as companies' pensions schemes were investing in each others' companies this, indirectly reinforced anything changing a company's value, a positive feedback loop.
Once interest rates fell (due to coupling them to inflation based on a measure that excluded housing costs which underwent rampant inflation as a result of the cheap money) the funds were suddenly undervalued and couldn't support final salary schemes. Having introduced the feedback loop to amplify any changes in valuations this gave those valuations a sharp kick downhill with no brakes leading to the crash.
* The employees kept paying but the employers temporarily stopped paying if the funds were over-valued measured against current commitments and interest rates. Removing those payments increased profits.
We've known since the 1950s Miller-Urey experiment that the sort of conditions that would have prevailed on the early Earth could synthesise the ingredients of that famous primordial soup. Whether they're also available in asteroids is interesting but far from essential for biogenesis.
The trick steps are assembling RNAs from ribonucleotides. doing it reproducibly by copying, linking it to protein synthesis, doing so with reproducible base-sequence to amino acid mapping and having the proteins catalyse the copying. You need to add on doing it so as to have the proteins catalyse other functions such as harnessing environmental energy sources in a way that can transfer the energy in useful sized quanta for these processes. Then you need to be able to wrap the whole thing up into packages and have the proteins catalyse the various steps to produce the packaging materials. You need to regulate all these operations within the packages. And all that's before we even introduce DNA (all the critical bits of protein synthesis are RNA based: messenger RNA, transfer RNA and ribosomal RNA).
I remain unconvinced about that one. Proteins do not start as stretched out chains of amino acids that fold up when released. They're built one amino acid at a time in a specific sequence. As more are added the degrees of freedom of the orientation of each new residue must be very quickly limited. Is guessing really computationally cheaper then emulating the actual process?
"they wouldn't just fling code changes to a live Government service like shit to a wall now would they?"
Take, for example, DVLA's vehicle taxation site. DVLA sends a renewal form with a 16 digit code split into 4 fields with spaces between, just like a credit card. The site has a page where the reminder number can be entered. It also has a page where the credit card number can be entered. They both handle 16 digit numbers the same way, right? And they follow the robustness principle,* particularly in entering the numbers the way they're shown in print, right?
Wrong. They handle the two different. The credit card number is handled robustly**, the reference number has a hard limit of 16 characters, including the spaces if entered.
* "Be conservative in what you do, be liberal in what you accept from others" https://en.wikipedia.org/wiki/Robustness_principle
** Probably with code taken from an approved example from the credit card numbers would be my guess. Even so, the best sites put the spaces in automatically which DVLA don't.
"And how do you decide what they can watch or access without supervision on a device without parental controls?"
Like somebody said up-thread, if you want to retrofit something like that, it's your decision. The problem here is that we have legislators in US states (not even federal legislators, for what that's worth) dictating that this S/W goes on every computer. Yes, every computer. If there were California or New York variants made to suit their laws there'd be nothing to prevent someone bringing an out-of-state machine into the jurisdiction or being really evil and downloading an OS from somewhere else. So every OS is going to have to comply.
Why, in the UK, am I going to have to use something that requires me to verify my ID as a user with whoever some US state legislating thicko thinks is appropriate to their neck of the woods? Because that, in their deep ignorance, is what they're demanding.
"First, where is the identity in setting up an account on the device as admin and specifying the child account's age? You won't be able to tell me because there is none."
It's your PII as a user and the child's that some of these legislatures want along with every other user's. If they can't identify each and every user then they can't tell whether that user is under whatever age limit is set in that jurisdiction.
It's no good your arguing that this or that particular jurisdiction is OK because it isn't so extreme. That way you're allowing them to divide and conquer. If this goes ahead every OS, and that means every distro, will have to cover all the use cases including the most restrictive ones or else they're at risk.
That's the problem.
"I see no reason why Google needs to know the parent's real name, address, and credit card number so a parent can enable parental controls on a device that they own."
Neither does anyone else - except Google and the rest. They see a reason. They want you to do it.
My PC doesn't have any under 16s using it. Even if I let my grandchildren use it (they don't need it, they've got their own) they're over 16. Why should it need to have unneeded parental controls grafted into the OS just because some US state legislators are technologically ignorant?
"They don't know how this can be made to happen, but they know it can be if only the industry is made to think about it hard enough."
All they have to do is to commission a proof of concept good enough to stand critical inspection by security experts. Once they've demonstrated that it's possible we'll believe them.
"back then, he could separate male from female anesthetized flies in a dish at dozens to hundreds per hour"
Per hour? The damn things kept waking up long before then. I found they could bestunned (possibly) by a gentle knock on the head with a seeker. That made it a bit easier. Then there was the time somebody (not me) left the bung out of the bottom of the anaesthetiser and all his flies just came out and flew everywhere. Given the number of flies in the average lab population one emulated fly doe look a bit sparse, even if it were possible to emulate it in real time.
According to the linked article the Salesloft breach was heft of OAuth tokens. Please explain to me again how involving a 3rd party (or longer) supply chain provides better security than a strong UID/password combination that carries out all validation on the protected computer and how a chain can be stronger than its weakest link. For avoidance of doubt an email address is not a strong UID.
"People who scored higher on the Corporate Bullshit Receptivity Scale tended to perform worse on tests measuring analytical thinking, cognitive reflection, and fluid intelligence."
"Analytical thinking" is fine. "Cognitive reflection", border-line but surely "fluid intelligence" must be one of their test phrases that escaped and was slotted in to see what the paper's audience made of it.
They mention a feedback loop. The worst feedback loop isn't that, it's the fact that those who fall for the bullshit are the ones that get promoted to spout more of it themselves, the rest of us are in the awkward squad. I've long held what I call the workers and wankers hypothesis of how employees divide. Each type, in charge, will appoint and promote its own but there's a distinct risk that a wanker will get promoted by mistake and when that happens the business is doomed because they'll eventually take over and there'll be nobody left to do the work.
In defence of salesmen, as a customer I always found Leitz microscope salesmen knew their stuff and at least some of them had been service techs. They made a point of visiting on a regular basis although it was unlikely that they'd make a sale on any particular occasion. On one occasion in my QUB days we mentioned that SWMBO's x10 objective wasn't parfocal with the x40. He pertly dismantled it, changed the spacing of the internal elements and used some of her nail varnish to lock the internal threads.
Rather later, after we'd lost our entire lab equipment in a fire we had more or less carte blanche to get back up and running ASAP if not sooner. The day after the fire, a Sunday, I ended up ringing his successor from home to work out out a big order with the paperwork to be sorted out later. I don't know whose orders he managed to divert to us but we had a delivery almost before we'd sorted out a place in the surviving part of the building in which to put stuff.