HN user

4mnt

277 karma
Posts3
Comments33
View on HN

If the cookie is set through HTTPS, the browser won't send it when loading HTTP resources.

If the cookie is set through HTTPS and does not have the Secure flag set, the browser will happily send it along when loading HTTP resources.

[dead] 11 years ago

It might be a good idea to delete this thread since this bug is in the openssl client, which is not as widely used as the library.

The site cannot detect that you have an extra root certificate lying around on your computer. If you visit the website without the Superfish program installed, you just evaluate the SSL settings of your browser.

That is: MITM SSH connections to these devices without getting any warning. Of course you first have to get in a position to MITM the person who connects to these devices.

The second is because there isn't any way I know of to have Chrome start in clean mode (with no bookmarks, etc. from personal use).

Chrome has user profiles [1], which are even easier to use than what Firefox uses.

[1]: chrome://settings/createProfile

I'm pretty sure $login can be set to true/false somewhere on top of the file as 'configuration'. Only it gets overwritten by the call to extract().

It was not meant to be user input

No sound, as it does not travel far enough and is easily disrupted by any other sounds in the area of the detector. I think it is just waiting for input of an electro-magnetical wave, then timestamps it and sends it to the server. The server can calculate the position with just the difference in arrival time to each station, and the position of those stations.

Do you mean a directory name cannot contain a hyphen (-)? Or perhaps you did mean a slash (/)? I have never heard nor encountered about a package manager or filesystem that does not allow the use of hyphens.

Linux-ng 13 years ago

Why not just disclose it responsibly to github without using it on other people's accounts?

Linux-ng 13 years ago

I don't think you can create a github repo over ssh. _If_ linus' key was stolen, he has bigger problems than just a fake github repo.

Linux-ng 13 years ago

Not completely. s/minix/linux/ on the original announcement