If it's about running programs from the internet you haven't code reviewed, then you could just review the sources and the installer before running install.sh?
1,203 karma · joined September 20, 2012
If it's about running programs from the internet you haven't code reviewed, then you could just review the sources and the installer before running install.sh?
At least they had learned something from the bloody Tienanmen massacre, and this time instead sending military to murder piles of unarmed civilians carried out the murders a bit more covertly.
Typically bloated code comes from legacy and years of organic growth. I'd imagine almost any 30k LOC project in any language that has been developed more than just a few years could be rewritten in a small fraction of the original size, now that you actually know what the end result must do, a luxury you don't have on the first go.
"in David and Goliath, Malcolm Gladwell draws upon research that shows it’s actually more advantageous for a student to attend a college where they can be in the top 10% rather than in the bottom half of the class. It’s the top students at every college who receive the kind of attention from faculty and access to special programs that pave the way to more opportunity after college."
I personally don't think that Uber is that much worse than the old taxi companies, and it should continue making a steady profit despite losing its luxury of unilaterally dictating their terms and wages to the drivers.
For malware to be really tricky to remove you'd have to start infecting hardware firmware like BIOS or harddrive controllers, like IRATEMONK or IRONCHEF from NSA TAO do.
https://msdn.microsoft.com/en-us/library/windows/desktop/dn8...
The AV MITM certs are not exactly Dell- or Lenovo-bad, as they are all uniquely generated in each installation, so you can only fake traffic on computers you have Admin access - and then you don't need Avast for that.
However, the real issue is if these MITM-proxies render compromised, expired or otherwise insecure TLS-connections "secure".
The bare minimum should be to respect the cert storage of the computer, although that will fail with any application with its own storage, like Firefox. To me this feels like it has too many points of failure to increase security instead of lowering it, so you really would focus on detecting malicious content based on other things, like the host reputation, files that land on disk, or maybe having a browser plugin that would see at least some of the decrypted HTTPS content.
"Suddenly, two months ago, we received a phone call from the city explaining that traditional parking companies were not happy with the way we were poaching business from them and that we had to slow down our growth. We ignored this warning. Ten days later, we received a phone call from the police department telling us that our permits had not been granted and they gave us a warning because we were operating illegally in most of our locations."
Then in the late 90s they had the bright idea to start splitting it off into smaller and smaller channels until all you had was a "your small local part of the world"-version of MTV, and the magic was gone.
Of course then the VPN provider is the single point of failure, but if it's trustworthy enough only folks with proper court orders should have access to my traffic. And it's an extra ten bucks per month or so.
Funny how this needed explaining back then. The story was also accidentally right, the NSA was indeed breaking those "complex algorithms" already during development!
Despite the misleading title, I imagine affecting the quantum behaviour of atoms with lasers has all kinds of nice use cases!
Doing small things to fix these flawed expectations has nothing to do with dismissing others as little girls who only care about nail polish. Articles suggestions like changing the course name from "programming in java" to a more descriptive "creative problem solving with python" hardly warrants such criticism.
The views of the value of studies also differ quite a lot, but luckily it's way more common for uneducated parents to value a better education for their kids than the way around. It of course helps that all studies are free and students in universities are actually paid to attend (though less than they would get for being unemployed).
What average uni students want to study actually does not affect the quality of teachers as much as you suggest. In 2014* a total of 1649 applicants took the entrance exam for becoming a class teacher in Helsinki University, and 146 were selected among them. I don't believe many of the 146 best applications would rather study engineering or biology.
http://www.studentum.fi/Kasvatustieteellisen_paeaesykoe__d62...
http://googleonlinesecurity.blogspot.de/2014/07/announcing-p...
The headline is kinda silly in the sense that if Project Zero focuses on any software in the world, they'll most likely find exploitable vulnerabilities. With Kaspersky the ridiculous thing is that they have stuff compiled without /GS, which e.g. since VS2005 has required you to actively disable it, as it's on by default.
Saying that twitter, google or facebook ads cannot be blocked is just bogus. People use them on normal web browsers that quite easily could block them. The reason they're not blocked is that it's not worth the hassle, because the ads are clean, small and polite. You know, better ads.
Such better ads are not patented, and switching to pleasant text ads like the industry leaders leaders did would make ad blockers a marginal phenomenon.