* Posts by EnviableOne

2001 publicly visible posts • joined 28 Jan 2016

UK COVID-19 contact-tracing app data may be kept for 'research' after crisis ends, MPs told

EnviableOne

Re: Corrona App - Whats the rest of the story ?

they are sending the TSSI in the contact packet, and recording the RSSI on the recieve end.

if you know what the sending and reciving devices are, with both of those you can work out the distance.

its not exact science, environmental variables, but its better than trying to work out Time of flight.

theres a lot of work gone on into the idea recently, and signal loss is a pretty reliable measure of distance.

EnviableOne

but they consider themselves data Scienists

even though the rest of us consider them less than useless

EnviableOne

Re: Well that's great confidence from GCHQ

not NHS IT, this is App Upcock's little un needed and un wanted digital quango "NHS X", what the X satnds for nobody knows.

the ICO havent signed it off, NHS Digital (the real NHS IT) won't approve it for their app store, not sure i'd approve it for install on our devices, seems not to be secure by design and default.

Comms giant Telefonica confirms O2 in talks to merge with Virgin Media

EnviableOne

S2D2

Telefonica have been looking to offload O2 for years, and Liberty look to be a good fit, it would give them a proper quad threat package with their own physical network, that would compete with BT/EE/Plusnet and increase their subscriber count while decreasing the cost base for existing VM mobile customers.

Beardy only has about a 2% stake in VM, just so liberty can continue to use the name.

the three deal was struck down as it would have left only 3 MNOs instead of 4, nothing to do with the MVNO market. to be fair the BT aquisition of EE was a far greater threat to competition.

Singapore to require smartphone check-ins at all businesses and will log visitors' national identity numbers

EnviableOne

anyone showing a fake version of said ID card, barley distinguishable from the real thing or gaining access via an exploit in the virtulisation platform,

or considering it's "Cloud" anyone obtaining a warrant under legislation in the cloud provider's country of origin, and recieiving said information from the "Cloud" provider.

Academics demand answers from NHS over potential data timebomb ticking inside new UK contact-tracing app

EnviableOne

Re: Guys, what’s all the fuss about.

Together People Please lets not allow this to happem

Everyone Matters Including System providers

both as bad as each other

to be fair, with the IPA they dont need an app to do tracing, well government dont, for some reason the NHS got missed off the list of agencies that can get a streeam of your telephone meta-data, but the Marine Management Organisationare on there....

Three things in life are certain: Death, taxes, and cloud-based IoT gear bricked by vendors. Looking at you, Belkin

EnviableOne

[I'll] never ever buy Belkin again

The question is Why did you buy it in the first place?

They have always been inferior products at vastly inflated prices.

EnviableOne

Re: Consumer rights act 2015

not so, the product sold included the means to manage that product, which they are discontinuing.

Though the device still functions, you now have no means to control that function or benefit from it.

Which now means the product is not fit for the purpose for which it was sold.

Hence covered by the Law

Outages batter UK's Virgin Media into wee hours as broadband failures spike 77% globally

EnviableOne

zero outages in the UK

yeah riight tell that to people having issues in Azure UK cos teams was hogging the resources

Wakey-wakey! A quarter of IT pros only get 3-4 hours' kip – and you won't believe what's being touted as the 'solution'

EnviableOne

Re: What is 'the cloud'?

Gave up calling it "the Cloud" years ago, got a TLA for it now

O ther

P eople's

T in

its not an amorphos blob in the ether, its trusting someone else not to have fat fingers...

We're going on a vuln hunt. We're going catch a big one: Researchers find Windows bugs dominate – but fixes are fast

EnviableOne

Re: Howabout a breakdown of OS vs Browser bugs maybe?

the problem with winders is IE/Edge are baked in and hard to get rid of, so if they got bugs, your windows got bugs, at least they get fixed though.

UK snubs Apple-Google coronavirus app API, insists on British control of data, promises to protect privacy

EnviableOne

Re: Fear not people...

Relax App Hancock is in charge, it wont work

EnviableOne

We are expecting everypme to get tested who might posibly have it.

in order for the whole system to work, people need to be tested, even if they dont think they have it, and tested more than once, seeing as the current test only tells you if you had it at the point of testing.

the testing regieme needs to be geared up substantially, and the issuing of a declaration token with a result is trivial.

EnviableOne

but i joined the National data opt-out, so they can't use my data for research (yet another field added to the big database in the AWS CLOUD)

EnviableOne
Black Helicopters

Re: Correction

i refer you to the bulk interception warrant granted under the security services exception to GCHQ previously.

They already know where you are....

EnviableOne

Re: Correction

if this is going to be used for contact tracing and case linkage, you're gonna need to have atleast 28 days of data to ensure the 14 days of history from an encounter with someone within the last 14 days, thats if you expect testing to be on the spot, currently we are looking at 48-72 hrs for a result after the terst, so your gonna need 31 days of encounters....

pile this with the range of bluetooth and the number of bluetooth enabled devices in the avarage built up area (not under lockdown) and this is going to eat storage

EnviableOne

Re: Stupid Decisions

the unique ability for civil servants to scope creep a contract so it never gets delivered will never cease to amaze me....

EnviableOne

immunity

according to the studies i've read, the levels of antibodies in the system i the young are nigh on non-existant, so getting infected confers no immunity, however as the age of the infectee increases, the bodies specific responses are more triggered and anti-body counts and immunity persistance rise.

EnviableOne

Re: Oh, Grandma what big eyes you have.

and whos national data opt-out is incompatable with GDPR (which requires explicit consent)

US threatens to turf out four Chinese telcos amid concerns over national security... and COVID-19, doctors, schools, jobs, communists, etc

EnviableOne

S S 7

Three characters why this wont affect national security

EnviableOne

Re: Pot meet kettle

even if they dont own them and aren't in the US

(CLOUD Act)

Lords: New IR35 off-payroll tax rules 'riddled with problems, unfairnesses, unintended consequences'

EnviableOne

ok, so simple scrap capital gains and NI, put 12% on income tax, include capital gains in income in the year they are realised.

income is purely net remuneration, however paid, over the tax year, taxed at 0,34, 57 and dare i say 80% .... (top 1% of earners)

Nine million logs of Brits' road journeys spill onto the internet from password-less number-plate camera dashboard

EnviableOne

Location of DPIA

in the cellar, down the non-existant stairs, where the lights are off, on display in the bottom of a locked filing cabinet, stuck in a disused lavatory with a sign on the door saying “Beware of the Leopard"

Spyware maker NSO can't claim immunity, Facebook lawyers insist – it's time to face the music

EnviableOne

US law does not apply internationally

CLOUD Act

EnviableOne

Re: end user

been to a nuclear power station recently ....

Zuck loves free speech so much Facebook will censor 'anti-state' content in Vietnam after telcos 'crippled' access

EnviableOne

Rely on them every day ....

Really, does anyone rely on facebook, its such a den of lies damn lies and statistics, that you cant trust a word.

After intense scrutiny, Zoom tightens up security with version 5. New features include not, er, spilling video calls to network snoops

EnviableOne

Better, but still not fit for a secure channel

ok so moving from CBC to GCM is more secure, but they still decrypt in their cloud, and they still have bad default settings on passwords etc

Encryption is fine, that handles the Integrity angle, but what about the authentication for the confidentiality part, ok there is options for 2FA, but nothing is by default

and the measly 3 nines of uptime for the availability part....

Zero-click, zero-day flaws in iOS Mail 'exploited to hijack' VIP smartphones. Apple rushes out beta patch

EnviableOne

yet again

Another reason iThings are not enterprise devices

Microsoft 365 invites users to 'Ask Me Anything' – as long as it doesn't require a clued-up exec to deliver clear answers

EnviableOne

Re: The problem

surley a Boatload should be the price of a new yacht?

$250,000,000 was the cost of the Hydrogen powered one Bill Gates was supposedly buying, and consequently was the cost of Steve jobs Venus....

House of Commons agrees to allow Zoom app in Parliament, British MPs will still have to dress smartly

EnviableOne

Re: Worrying reaction from some MPs on BBC News last night

still 300 years aheam of JRM

EnviableOne

Re: Costs...

thats not even for 650, thats only 120 participants, and 50 in the house, bet its the 50 man room system for the house thats the most expensive factor.

EnviableOne

teams has a limit of 4 participants per view, shortly increasing to 9

if you are going to get a representative mix of parliment, its just not enough, zoom or webex can support 25/30 per screen and also have much better interoperability with non-microsoft products

EnviableOne

if you have a decent implementation of SVC and a semi-decent media multiplexer, you can keep the bandwidth down.

there are several solutions that they could use for kit on site, but for rapid deployment why they didnt go with Webex I don't know.

EnviableOne

Dont use cisco UC its expensive hard to configure and relies on Call Manager.

Webex is the toool for this job 1000 participants is childsplay, and 15 to a screen in grid view.

with webex, the speaker could control the entire house remotley

New York Attorney General probes Charter over claims it forced staff to work in offices amid coronavirus pandemic

EnviableOne

hang on aren't these the Cheeto in Chief's banner company for protecting american jobs

in which case i'm not supprised, CEO probably still thinks its a Hoax.

Baby, I swear it's déjà vu: TalkTalk customers unable to opt out of ISP's ad-jacking DNS – just like six years ago

EnviableOne

VM customer service is variable

RF: nthell the originators of the the worst level of support an ISP can provide.

the reason they are variable, is due to you occasionally getting someone who originated from Telewest, who actually cared about their customers occasionally....

Tor Project loses a third of staff in coronavirus cuts: Unlucky 13 out as nonprofit hacks back to core ops

EnviableOne

Someone needs to catch up with TSMC

certain US firm with issues getting anything below a 14nm process node to work .....

Open letter to Internet Engineering Task Force: Back off Cisco, not all members want to 'play to your tune'

EnviableOne

Failiure of competition

Its all down to the lack of effective competition doing something different with the weight behind it

the rest of the networking vendors wokrk in their specific nieches or get floated around between vendors.

Cisco are stifling inovation and holding up standards, as they can't keep up. they are still promoting 3 tier enterprise networks with chassis at the core ffs.

Great ideas from other vendors like extensions to previous protocols, designed to be extended, that solve issues, and dont need new ASICS or another box in your data centre, wither on the vine, as without the standard definition IETF can provide, the rest of the market can't adopt them in an interoperable way.

Europe publishes draft rules for coronavirus contact-tracing app development, on a relaxed schedule

EnviableOne

Re: iOS update would be a blocker on the Apple–Google scheme

From iOS 10.3 there is an MDM API call to force iOS updates.

Now if it comes to this, i belive apple could fire off this process without the users permission to force an upgrade to 13.19

it may be a massive imposition on some, but i'm sure you comuld proably find a clause in the T&Cs that would allow them to do it.

Google habe a simillar function that they can push the core enabling patches in the Android system layer

EnviableOne

Re: The Oxford paper doesn't say 60% is really enough

Surley Eve should be infecting Bob, Alice is a whitehat afterall

Quantum computing heats up down under as researchers reckon they know how to cut costs and improve stability

EnviableOne
Coat

Re: Wake me up...

or Matt Groening's Futurama .....

ICANN's founding CEO and chair accuse biz of abandoning principles in push for billion-dollar .org sale

EnviableOne

Re: Incredibly shady...

"The best leagl system money can buy"

Pentagon watchdog sets phasers to none, clears $10bn JEDI contract process but leaves door open for lawsuits

EnviableOne

Re: I can’t get too worked up

the contract only actually guarentees $1m and 2 years, which is peanuts for both Microsoft and AWS

Microsoft throws extended support lifeline for folk stuck on car-crash Windows 10 1809

EnviableOne

Re: They can't even have sensible version numbers

they do have proper build numbers, They are just not very marketable 10.18362 10.19041

its easy enough to say you got an old version, 1903 was released - March 2019

you need the new one 2004

Wanted: An exit strategy from the overt surveillance of smartphone contact tracing

EnviableOne

they really dont need this info, using mobile metadata, they can work out who you are, where you go and who you meet with.

EnviableOne

Re: Scary and Scarier

most people have a phone and herd immunity only requires about 80% coverage

if you look at mobile usage currently 6.8 billion own a mobile or 95%+ of the world populations

and 99%+ of these run either android or iOS

the next two OS are KaiOS at 0.32% and Tizen at 0.16%, and apparently 0.1% still use windows mobile

so by covering Android and iOS you cover approximatley 94% of the world's population, which is more than enough to protect the other 6% (herds and all)

EnviableOne

Re: Scary and Scarier

some of the lower end ones, but definatley not the flagships, aa keep this relativley up to date.

https://www.androidauthority.com/best-android-phones-removable-battery-697520/

Zoom adds Choose Your Own Routing Adventure to keep chats out of China

EnviableOne

4 or 9 whats the difference

when you need classroom size meetings, 9 makes no difference, you need multiplexing like Webex/Zoom with 25+ or 30+ if your a state school

You can wipe those smiley faces off: Unicode technical website is going to be out for 'a couple of weeks'

EnviableOne

Is it just me

Or is it a big hole in unicode that there is no standard symbol for the windows icon

beacuase you can't guarentee things will display ÿ in wingdings and

not everyone knows the key with the logo is refered to as the "windows" key

Taiwan may turn traffic advice app into massive tracking system

EnviableOne

Re: de-anonymisation

without actually identifying the individuals, it relies on individuals to take heed of the notifications generated, which has mixed response.

from my understanding the app will log the BD_ADDR of any devices in close contact, and hold the contacts for 14 days, then if the app is set Tested positive, notify the devices that are in that list.

the problems come from identinfying how close the contact is and how to send that notification,

and the not unreasonable idea that google might use app_ids to track people.