It's a bit weird from a security point of view that self-XSS is protected in Firefox & Chrome (https://bugzilla.mozilla.org/show_bug.cgi?id=994134 & https://bugs.chromium.org/p/chromium/issues/detail?id=345205), but navigation data-uris are not.
345 karma · joined July 28, 2011
https://twitter.com/bwbroersma https://github.com/bwbroersma
[ my public key: https://keybase.io/bwbroersma; my proof: https://keybase.io/bwbroersma/sigs/AVR1zyAY5CAHxvzuZt6pxxsgv3FcWUgJ04r_Nd5Gex0 ]
It's a bit weird from a security point of view that self-XSS is protected in Firefox & Chrome (https://bugzilla.mozilla.org/show_bug.cgi?id=994134 & https://bugs.chromium.org/p/chromium/issues/detail?id=345205), but navigation data-uris are not.
"Secure Exam Proctor Exam Environment: You can generally utilize the Secure Exam Proctor for taking a proctored examination without revealing any Personally Identifiable Information about yourself. The types of information collected depend on the exam settings and can include video, audio, desktop recording, and websites visited. The aforementioned data is encrypted and will not be used by Proctorio in anyway. This information may be used by "Authorized School Officials" to review the actions of Students during exam administration. Proctorio may collect additional information set forth below in the "Aggregate Information" and anonymous information. Aggregate and anonymous information will be used to improve the quality of the Secure Exam Service. Note: Proctorio utilizes zero-knowledge encryption to keep your information safe."
Is there a better FOS alternative?
The Wuala service did had a lot's of deadlocks, either on server or the client side, and customer service was not done secure: please send over the log files (included file names) or the client storage block, etc...
Would there be anything against using multiple large anycast DNS providers?
It's only something worth solving if it hits the log files.
Edit: See link below: https://privateforms.net/embed/rNKlzL
So you get jquery, moment, bootstrap + datatimepicker, kbpgp and a few lines of glue to use kbpgp to send and XMLHttpRequest, basically:
kbpgp.KeyManager.import_from_armored_pgp({
armored: '-----BEGIN PGP PUBLIC KEY BLOCK-----\n' +
/* key */
'-----END PGP PUBLIC KEY BLOCK-----'},
function(err, keyManager) {
kbpgp.box({msg: '**form=data**', encrypt_for: keyManager},
function(err, encryptedString, encryptedBuffer) {
//send result;
}
);
}); SELECT '{"k1":"v1"}'::JSONB || '{"k1":"v2","k2":true}'::JSONB
=> {"k1": "v2", "k2": true}In 9.4 this is the 'best way' I know:
SELECT
('{' || STRING_AGG(
'"' || COALESCE(j2.key, j1.key) ||
'": ' || TO_JSON(COALESCE(j2.value, j1.value)
), ',') || '}')::JSONB
FROM JSONB_EACH('{"k1":"v1"}') j1
FULL OUTER JOIN
(SELECT * FROM JSONB_EACH('{"k1":"v2","k2":true}')) j2 ON j1.key = j2.key SELECT * FROM "access" a WHERE a.
But it's a nice tool! (:"One kale sample reported thallium at 1.14 ppm, nickel at 20 ppm, and aluminum at 120 ppm. (As has been widely reported, aluminum is often suspected as a cause of both autism and Alzheimer’s disease.)"
It's pretty controversial claim that aluminum is related to Alzheimer's disease http://www.webmd.com/alzheimers/guide/controversial-claims-r...
I looked at the Twitter & Facebook but they looked pretty dead. No replies @comododesktop (https://twitter.com/comododesktop/with_replies), idem for FB account (https://www.facebook.com/ComodoHome), no replies on the comments I see on FB.
Also both FB & Twitter are about non CA-products, so I was hoping for a security contact form, email address, chat or phone line..
2) indeed have a backup certificate ready (might be non EV), this is especially a must if you use HSTS [1] (which you should use BTW) it is actually a (low priority) government recommendation (B5-6) in The Netherlands [2], but that might have something to do with the government heavily using DigiNotar which got compromised and had it root certificates revoked by Microsoft which caused some communication issues..
[1] https://en.wikipedia.org/wiki/HTTP_Strict_Transport_Security
[2] https://www.ncsc.nl/binaries/nl/dienstverlening/expertise-ad... (in Dutch)
Process
- Know where your key is
- Know how to generate a new CSR from that key
It's adviced to use a NEW private key, in case there was a private key compromise you didn't know about.Also see https://www.ssllabs.com/downloads/SSL_TLS_Deployment_Best_Pr... (point 1.2).
BTW there is NO reason to regenerate the CSR if you reuse the private key.
If your registrar currently accepts DS records, please
send an email with subject "DNSSEC REGISTRAR UPDATE"
and body containing company name, country location, URL,
what TLDs you accept DS records for, whether your Web
interface supports DS records, whether you provide
DNSSEC signing services to dnssec@icann.org and the
Security team will add your registrar to this DNSSEC
page.Based on pricing ($9.99/.com) and a growing irritation with GoDaddy, I finally moved my domains to Dynadot:
They have a (custom) 2FA app and 2FA SMS. BTW this friend referral https://www.dynadot.com/?s9N6j7d9G8B07i73 gives you & me $5 after purchase.
Based on pricing ($9.99/.com) and a growing irritation with GoDaddy, I finally moved my domains to Dynadot:
They have a (custom) 2FA app and 2FA SMS. BTW this friend referral https://www.dynadot.com/?s9N6j7d9G8B07i73 gives you & me $5 after purchase.
If you have multiple batteries you can deinstall the program and run it again, since it caches the battery serial number (also after reboot).
-----
From the FAQ:
Q4. Do I have to return my defective battery?
Answer: No. However, by accepting a replacement battery you are committing to recycling your battery in an approved manner.
Q5. If my battery is recalled, how long will I have to wait for it?
Answer: Orders will typically be processed and shipped within 3 business days. Delivery times will vary based on country.