Wednesday, March 7, 2018

Vulnerabilities written in stone

from here

While there may be tricks and kludges out there enabling you to write smart contracts that can be updated, it's not a property they have by default because they're stored on the blockchain. On the other hand, being prone to errors is a property they do have by default by nature of them being code (all code has bugs, nothing is perfect).

The reason patches become mandatory

found on Reddit

When they're big and intrusive and they just keep coming over and over again it's no wonder people get sick of them and don't want to put up with them anymore. It's only a matter of time before people start trying to interfere with the update process, but the vendor can't fix problems without the update process being in place. Therefore customers and vendors eventually enter into a kind of adversarial relationship with respect to updates, where the vendor actively works against the customers (potentially misguided) interests.

Tuesday, March 6, 2018

Talk about dressed to kill

from here (image source)

On the one hand it doesn't look physically comfortable, but on the other hand some people just aren't emotionally comfortable without weapons to protect themselves with.

Keeping your kids safe and secure

found on Distinguished Baloney

Putting teachers in charge of preventing every threat that your kid might face is pretty much this. I'm not sure how a teacher is supposed to actually teach like this, but I guess learning isn't the point of school anymore.

Monday, March 5, 2018

Malware naming is the real joke

from here

I suspect the name Mirai was based on the character from the Naruto anime/manga, but it translates to "the future" which I further suspect is not the name the anti-malware industry would have selected if they'd have known. Either that, or there are some lame punsters in the anti-malware industry and this is exactly the joke they were making with that name.

At least they have a sharp sense of humour

posted to Instagram by the TSA

The puns are strong with this particular TSA employee. I can only assume this isn't one of the ones who got their job from  a pizza box.

Also, who tries to sneak a comb-knife past security in a sheath that clearly says "comb knife"?

Friday, March 2, 2018

Someone might step on a brick

from here

I'm going to go out on a limb here and say that I don't believe in Lego terrorism. Whatever threat may have been made, it was almost certainly empty. If the teen had current access to a real gun he most certainly could have posted a picture of that instead. Heck, he could have even googled for a picture of someone else's gun, but instead he used a picture of a child's toy. I don't know how anyone takes such a threat seriously.

Some assembly required

found on Izismile

Presumably this cartoon can actually be found at Speedbump.com (as suggested by the lettering at the top) but I couldn't find it there, nor most of the artist's other work either.

Thursday, March 1, 2018

Someone forgot the meaning of the word "private"

from here
Not only does Trustico not appear to understand the meaning of the word "private", but they also appear to not understand the meaning of the word "compromise" as they claim the private keys they had (which should only have been in the hands of their customers) had never been compromised. They were either compromised by someone else and Trustico acquired them that way, or Trustico always had them and compromised them by emailing them to DigiCert. There is no way they weren't compromised by the time DigiCert got them.

Now that's sick-urity

found on Team Coco

The Skunklock is an interesting idea, but if it catches on I think people should just paint their regular U-locks to look like Skunklocks in order to fake the bike thieves out.