1,489 karma · joined July 27, 2016
I recently developed an ElasticSearch plugin and I was positively surprised at the security model: plugins have to declare the permissions they intend to use and the user has to explicitly grant them when installing the plugin.
As far as I know, Javascript doesn't have low-level access to connections, not enough to run even a stub TLS 1.3 implementation.
It might be especially interesting when many users share the same connection, effectively achieving broadcasting - the CDN pushes the data to one client, and it broadcasts it to the local network.
Example usage:
iptables -t nat -A OUTPUT -p tcp --dport 53 -j DNAT --to-destination 1.2.3.4
iptables -t nat -A OUTPUT -p udp --dport 53 -j DNAT --to-destination 1.2.3.4For a concrete example, a programmer in Seattle has much higher opportunities than the same programmer in rural Burundi, so he can put the same effort into much more work, and ultimately be much more relevant in supposedly meritocratic governance.
However, the original post is not concerned with opportunity due to geographic location or access to technology, but rather to a bias where code submitted by programmers with a feminine username and profile picture is approved less often than average. Note that the linked study does not refer to Mozilla explicitly, though.
>The use of the term “meritocracy” to describe communities that suffer from a lack of diverse representation is increasingly seen as problematic: it proceeds from an assumption of equality of opportunity.
Is there evidence that the assumption of equal opportunities does not hold for Mozilla? It seems to me that they went to great lengths to ensure equality of opportunities.
Advertising makes most popular the products with a higher marketing budget, not necessarily the better ones. For example, search for "youtube downloader": at least the first ten results link to shady websites and apps which offer a crappy wrapper around youtube-dl, which is the ultimate youtube downloader but unknown by non-programmers. Even among wrappers, the clean versions are not as popular as the advertised and SEO'd crap.
One evil is better than two.
Turns out it's just the government getting its piece of the cake.
I'm not OP, but I would be very surprised if the attack was the root cause for strengthening their spy agencies. In the United States we have seen time and again that laws for a stricter surveillance are passed with the pretext of anti-terrorism or anti-child pornography; Japan could very well be using such a case to justify their surveillance needs.
You could build and use a service with no regards for your personal privacy - it's your service after all, and it's your business if your data gets leaked. But could you offer such a service?