I believe this is called "being mechanically minded". If you understand the physical rules and the components, you understand the inner workings. Good mechanics have this. Bad mechanics don't. Sadly being an auto mechanic pays little, but the skills are obvious in good programmers too.
HN user
5ilv3r
I get a lot of downvotes.
Lots of Intel apologists in this thread. I for one am excited by the idea of healthy competition in the processor market.
So the register says it's a hoax because their chip contacts won't confirm it. However, those chip contacts are probably a little grouchy about the last coordinated boondoggle, so I doubt they would admit to or deny anything at this time.
Ah neopets.... your character limits forced me to ditch frontpage and actually learn how to make html with notepad.
ecommerce retailers would peer with them directly and the entertainment networks would then be left holding nothing.
Facebook is notorious for making those connections impossible when they are truly needed most. It's a marketing tool with aggressive filtering, not a family message board.
You will never achieve social justice with hate.
Maybe this will even lead to something good for everyone, like more ethical diversity practices.
I did, it asked me. Was I being given a "personalized" application perhaps?
It's a very good argument. Behavior that is ok for one group should be ok for another group, and viceversa. That is a truth of equality.
Ethnicity and gender are on their job application form.
My argument was that centralizing trust as a service is unsustainable. That's all.
They could. That would be a bit tricky though since http libs usually use the shared system cert store.
A root lets you make a valid cert for any domain. It can be used to create a man-in-the-middle attack if paired with a proxy.
This is how the system was meant to work. The irresponsibility of the centralized CA infra has been known for a little while now, and it's time to let the users see how shaky this trust model really is. Let them have certs that are actually made by the companies they trust instead of some stupid third party.
Local seems to be the next frontier. As in, a storefront. What's old is new again (again)!
Native means it uses the os rendering engine and widgets. Electron is not that. I don't know when web devs decided they could put a website in a box and call it native, but it's not very nice.
I agree completely. One must know their tools before they can use them safely. Ask anyone who has used a saw.
No, not always. I just mean that sudo is a (very very popular) hack.
Uhg, ok I forgot some people don't know the code. The old adage is "On your first day as the new sysadmin, change all the root passwords". The idea is that a SECURE root is good, possibly better than no root (which is sort of a hack in itself). There are best practices for root passwords. Things like length, composition (no dict words), disabled for remote access, and care in who is allowed to have it.
Simply pretending root does not exist is a rather new idea and is not best practice. It's only for convenience.
Do you have any good history on this you can link to? Sounds very interesting.
The problem is that this is not a zero day in new technology. They made a jr sysadmin mistake. As a company who wants a reputation for good security, that is not acceptable.
Do you live in some horrible place where your neighbors will throw gas on your burning house unless you can quickly and quietly get the fire department there first, to put out the fire that the FIRE DEPARTMENT started?
Dude. That was your example.
Oh my goodness I totally forgot they had to build it first! /s
That may be true for cisco and juniper where upgrades must be carefully rolled out across globally distributed critical infrastructure, but this is APPLE. They need no such help. They can push to everyone, now, and it will be fine. Forcing their hand is safer than trying to hide a flaw a 3 year old could find on accident.
Time and time again we have been shown that the way to a company's heart is through it's PR department. This is a dev complaining to Apple like a lunchgoer would complain to Mc D's about a bad burger. Expect more of it.
Or he cares more about doing the right thing than about following best practices designed to protect the guilty under the guise of helping users.
You are comparing an arsonist to a fire department.
If setting a root password is a hack, I'm Donald Duck.
The US has no problem doing that as a service for other countries...