* Posts by Mishak

648 publicly visible posts • joined 16 Apr 2021

Page:

Tesla wins key court battle over Autopilot crash blame

Mishak Silver badge

Autopilot

I guess too many people have seen "Airplane!".

Let's take a closer look at these claims of anti-ransomware SSDs

Mishak Silver badge

"if in a few minutes a significant chunk of data on the disk is being written"

Like when I run a script to apply "clang format" to code blocks on 10k+ pages (text files) in a wiki?

Please let there be an "off switch"!

SpaceX's second attempt at orbital Starship launch ends in fireball

Mishak Silver badge

Starship was empty and not loaded with the rated 100 tons

Maybe, but it did have several hundred tons of propellant on board.

Mishak Silver badge

were they trying to separate the first stage by just shaking it off, or something?

Yep, that's just about how stage separation is supposed to work. I think Tim Dodd (Everyday Astronaut) covers this in one of his excellent videos.

Mishak Silver badge

Re: restart supplies

I did, a few hours after it was released. Raptor 2 does not use any consumables for ignition. The exact process has not been disclosed due to ITAR.

Mishak Silver badge

Care to explain the "thumbs down"?

It is a fact that none of these test articles are intended to fly more than once.

Mishak Silver badge

Re: Why did it take three loops to find the launch abort button?

I guess it is also possible that they were still receiving telemetry that was worth recording.

There's nothing worse than ending a long debug session just before you would have seen the cause of a problem...

Mishak Silver badge

Re: Starship hasn't had the most successful history?

Not only that, SN15 only had "feet" for landing rather than lander gear with shock absorbers - they were designed to crush on landing, and would not completely protect the hull from damage.

Another "clue" that they were never intended to fly again was the lack of support mechanisms to "safe" Starship once it was on the ground. In fact, it was much better when they were destroyed as they could just sweep away the bits - with SN15 they had to wait until all of the residual fuel had boiled off before they could approach.

Mishak Silver badge

restart supplies

Nothing needed for a restart other than (basically) a spark plug, so there should be no issue with attempting to restart any engine.

Mishak Silver badge

Re: Why all the cheering before the last 10 seconds?

There was a pause at T-40 to sort a couple of minor issues (booster tank pressure had not reached flight level, purge needed on Starship) - the count on the stream resumed at T-30 (and you could hear cheering).

Mishak Silver badge

5 engines out by the end of it

There were 6 showing as "out" at one point, so it looks as if one may have been restarted - either that, or an instrumentation glitch.

Mishak Silver badge

Wrong

There is real risk for SpaceX, as they are on fixed-price contracts.

As far as I can remember, SpaceX has only lost two flights (and those were in the early days), which is a lot less than ESA (who do have a good record).

Mishak Silver badge

Re: Starship hasn't had the most successful history?

'Tis but a scratch.

SpaceX feels the pressure, scraps first orbital launch of Starship

Mishak Silver badge

Popcorn at the ready

There's an idea - cover the pad in kernels and reap the reward after the launch.

Mishak Silver badge

The money SpaceX gets...

Is for the provision of services via fixed-price contracts*, not for the supply of pork to fill the barrel.

Sure, they also take advantage of available tax benefits, grants and awards, but these are insignificant when compared to the amount that Musk, the shareholders and other investors have put in over the year.

* Some of which are for R&D, such as on-orbit refuelling - though I doubt the contract will cover the actual costs for this.

Mishak Silver badge

Especially when something like this was planed for, and there is a backup window in a couple of days.

Rust Foundation so sorry for scaring the C out of you with trademark crackdown talk

Mishak Silver badge

The Rust community forked the language under the name Crab

They do want to make it hard for the functional safety community to adopt, don't they?

EU lawmakers fear general purpose AI like ChatGPT has already outsmarted regulators

Mishak Silver badge

"ChatGPT has already outsmarted regulators"

Hardly a high benchmark.

Firmware is on shaky ground – let's see what it's made of

Mishak Silver badge

How far do you go?

Should the firmware for a safety-critical sensor be made available so the device can be hacked?

If so, how does anyone who ends up with one of the devices know that the software has not been modified and that it still satisfies its functional safety requirements? Who is legally responsible if the failure of a modified device leads to an accident?

Or are we only talking about firmware in "consumer electronics"?

Python head hisses at looming Euro cybersecurity rules

Mishak Silver badge

Something needs to be done to protect consumers

But this isn't it, and open-source authors should not be covered.

However, any company that uses open-source within a commercial product should be responsible for ensuring that it is appropriate for the job - which means ensuring* that it does not introduce security or safety vulnerabilities into any product that they place on the market.

* "ensuring" does not mean that it will be defect free, as it is generally impossible to show that is the case. What is required (from a legal perspective) is evidence to show that the chance of a failure is as low as is reasonably practicable (which depends on the the cost/value of the product and costs/risks associated with failure) - which basically comes down to ensuring that development complies with a standard and that artefacts are produced to demonstrate how compliance with that standard has been achieved.

I'm sure there will be a lot of "but that slows us down" and "that stifles innovation", but it doesn't have to. Sure, it will have an impact up front, but it does not have a negative impact on timescales if appropriate processes are used.

CAN do attitude: How thieves steal cars using network bus

Mishak Silver badge

I'm calling bollocks here

The figure did include the boxes, relays, fuses, connectors and the like that were needed in the days before functionality was moved to electronics (there was some for fuel injection, but that was the exception).

This was "for real", and was for a top-of-the-range Merc (I don't remember the model). It was disassembled by the OEM I was working with and placed on large, wooden panels all along the walls of one wing of the electrical design centre for "competitive evaluation" (the OEMs exchanged models as they all did this, and this made the process a lot cheaper)!

Mishak Silver badge

1) the attack is widely known on the internet

Like the Kia Hack

Mishak Silver badge

Re: Network isolation

Back in the early 2000's I designed a CAN "firewall" that basically did that - though it was really there to prevent experimental / development / prototype hardware from corrupting the powertrain CAN.

It's not easy to do though, as you ideally don't want to introduce latency into the messages - I managed to get it down to about 12uS, which was about as good as you could get at the time using "store and forward".

Mishak Silver badge

It would be interesting to see how long it takes "LockPickingLawyer" to get one off.

Mishak Silver badge

Yes, they're not worth a lot if sold for scrap. However, if they are broken down and sold as spares*...

* Which is often why it is well worth negotiating when selling for scrap, as this is what a lot of the scrap (or "breakers") yards do.

Mishak Silver badge

And it's not just the number of wires

When I was contracting with an automotive OEM about 20 years ago, it was not uncommon for the (pre-CAN) wiring harness (+ switches and the like) to weigh in at close to 100Kg. The amount of fuel needed to keep accelerating that mass is not insignificant - especially when the design is on the edge of legislated fuel economy figures.

Mishak Silver badge

Re: Oh my god

Not really, as CAN is a hard real-time bus (which means messages are very time critical). For example, I work on systems where a specific CAN message is sent out 1000 times a second and is used to trigger events in other nodes (setting outputs, sampling inputs). Most nodes run on low-end microprocessors (which are very cheap - you don't want to have to spend an extra few £/$ per node when there are lots of them).

Mishak Silver badge

Yep

Either stolen or repossessed!

Mishak Silver badge

Even that isn't always enough

"Transcript" of a conversation at a place I once worked (names "randomised"):

Eve: "Hi Steve, I see you're having trouble with that flashy Toyota Supra again"?

Steve: "What do you mean"?

Eve: "They're loading on to the flatbed now".

Steve: "****".

The car had all sorts of locks and immobilisers, but it still went missing.

Mishak Silver badge

Re: Easily solvable....

I'm not sure how that would help here, as CAN doesn't have anything equivalent to MAC ids?

It's not that easy to protect CAN messages:

1) Some form of payload validation/encryption could be added - this is not really practical, as a lot of systems still use the original CAN protocol, which only supports 8 byte payloads.

2) Some more recent CAN hardware allows the authorised sender of a particular CAN identifier (message) to invalidate any attempt to generate a spoofed message (basically, the "owner" of the identifier intentionally corrupts any transmission that it does not initiate). In this case, the thief would have to disable the security node before the spoof would work.

3) Split the vehicle architecture so that there are multiple CAN buses (this is quite often the case anyway), and ensure that it is not physically possible to access any bus that is security-related from outside of the vehicle. This would not prevent this type of attack, but it would mean that the security system would have a chance to activate some other defence mechanism as it would be able to detect an intrusion via the alarm system.

Apple squashes iOS, macOS zero-day bugs already exploited by snoops

Mishak Silver badge

iOS 15.7.5 also released

Looks like this fixes the same issue for 6S and 7 users.

SpaceX calendar marked with big red circle for 'first Starship launch' this month

Mishak Silver badge

New Reg unit required

16.5 million pounds of thrust - where's the metric for the rest of the world?

Though I think we need a new Reg unit of measure - "UK power grids"; Starship will, for the first 2.5 (ish) minutes of flight, be producing more power than the whole of the UK power grid can provide running flat-out.

Australian bank stops handling cash at the counter in some branches

Mishak Silver badge

Re: Opening hours

Used to be the same in the UK - and they also closed for lunch, so no quick trip to the bank then either!

Mishak Silver badge

Opening hours

My "local" branch is now only open from 09:30 to 16:30 Monday to Friday, so the only way anyone who works out of the area can get to it is by taking time off.

I can no longer think of a reason not to dump them and move everything to an online-only bank.

I recently tried to open an account for a business with a different bank in the same town (during the day), and was told I would have to make a 1 hour (each way) trip to another branch as local branches are no longer able to process business applications. I went with Starling instead - everything done online in a matter of minutes with no paper form-filling. It's time for the dinosaurs to go extinct...

Defunct comms link connected to nothing at a fire station – for 15 years

Mishak Silver badge

He was out on strike with Pat.

British govt tech supplier Capita crippled by 'IT issue'

Mishak Silver badge

"people familiar with the matter," said the outage affected ... video conferencing

Productivity should go up then.

Microsoft wants to stick adverts in Bing chat responses

Mishak Silver badge

Re: Bing appeared on Skype for me yesterday

I had this appear earlier on in the week.

First thing I tried in response to the "Can I help you?" message was to ask it "How do I remove Bing from Skype".

That didn't work, as it wanted me to accept T&C's of use before it would reply.

Right-click, delete on the bot in the contacts list seems to have sorted it (Mac version).

Mishak Silver badge

Repeat after me

The Internet is not just for advertising!

Uptime guarantees don't apply when you turn a machine off, then on again, to 'fix' it

Mishak Silver badge

Not support related, but...

I was once contracting for a large company. We were all sitting in the large, open-plan office when the "get ready to leave" alarm sounded (it was a big place, and a fire alarm in one block would set this off when it was triggered as a "heads-up").

Shortly after, we noticed a slightly unpleasant smell, followed by sore throats, coughing and streaming eyes. We unilaterally decided that, as it appeared as if we were being poisoned, it was probably a good idea to put on our coats, pick up our laptops, and evacuate the building.

Many minutes after we left, the alarms changed to "evacuate" - a transformer in a large UPS had got upset, and the combustion products were getting sucked into the ventilation system.

The permanent staff were forced to go though mandatory fire drill "retraining" as they had clearly failed to follow the procedures by evacuating before they were told to do so. They were also told that putting on coats and taking laptops was against the evacuation policy, which they had just been told was not in force when they left the building...

Microsoft promises it's made Teams less confusing and resource hungry

Mishak Silver badge

"To optimize navigation"

Stop moving everything around in the interface each release?

Mishak Silver badge

"On average, a typical user switches ten thousand times per month"

Let's say it takes 5 second to make a switch.

That means about 40 minutes are spent "playing about" with Teams every working day.

I thought this was supposed to be a "productivity aid"?

Did I miss something?

Errors logged as 'nut loose on the keyboard' were – ahem – not a hardware problem

Mishak Silver badge

Yes

Most tests should be written against the requirements in parallel with development. It may be necessary to add a few more to complete the coverage, especially when MC/DC is applied.

Mishak Silver badge

I see this a lot

Safety-related projects often have a requirement to achieve 100% code coverage. I've seen some where automation is used to generate the test vectors, and they are blindly accepted without verifying that the results are actually correct ("but we've got 100% coverage") - all that has been proven is that the code works as it has been written, not that it works correctly.

Mishak Silver badge

Otherwise know as...

Goodhart's Law

SpaceX tries to de-orbit Amazon's request for a satellite broadband shortcut

Mishak Silver badge

If he was picking on the ULA

Unlikely, as BO are supplying BE-4 engines to them.

Mishak Silver badge

"SpaceX may have been in receipt of US taxpayers funding"

In the form of being paid for services or to carry out specific research (on-orbit refuelling), rather than a handout.

Mishak Silver badge

OneWeb

I think they have one more launch (from India) to complete their initial constellation - they have written off (and replaced) the satellites that are currently "stuck" in Russia.

Microsoft's Copilot AI to pervade the whole 365 suite

Mishak Silver badge

Huh?

How did you work out that wasn't the actual sales and marketing team?

Google stops selling its biz-grade augmented reality specs

Mishak Silver badge

"support will end on September 15"

And this is where legislation is needed - you market a product, then you will provide support for the people that buy it for its lifetime (defined in law, not by the company). Either that, or provide a full refund and compensation.

Google taps Fastly to make cookie-free adtech FLEDGE fly

Mishak Silver badge

Let's create the "I'm not interested in ads and don't want to be tracked" interest group.

Is it just me, or has the internet been ruined by the advertising industry? Sure, it helps to "pay" for "free" sites, but it seems to have become the only purpose for a lot of sites.

Page: