Web DOS Attack

A hash collision vulnerability exists in a number of frameworks, including PHP, Ruby, and ASP.NET.  Microsoft has released a patch to fix ASP.NET. Rafael Rivera criticizes the relatively short amount of time before full disclosure and links to a cutesy Microsoft video on the topic.  My problem with the video is that, although some companies…

Advertisement

EPD: Duels And Ordeals

There are two chapters remaining in Extraordinary Popular Delusions and the Madness of Crowds.  This one is a relatively long chapter, and pertains to duels and ordeals.  Mackay, naturally, is opposed to dueling as a way of solving problems, considering it something animals do but civilized people don't. A while back, I brought up Pete…

The Volt: Low-Wattage

An analysis is out stating that the Chevy Volt costs taxpayers a quarter million dollars per vehicle sold thus far.  That number is a little misleading in that they're amortizing one-time expenditures, so it would go down over time as more vehicles are sold.  But then again, considering that the total number sold is well under…

Security Notes, Part 1

Who knows what you have downloaded?  The Internet knows.  This tracks Bit Torrent downloads by IP address, so it's not perfect, but it does give you an idea of just how public your activities online are. Security Theater now provides free sno-cones. Good news:  another CA has been compromised.  But don't worry:  nothing bad came…

Curmudgeonly Notes

While everybody else is off swapping gifts, here are some notes of varying degrees of curmudgeonliness: If one graph could scream out "We are doomed!" it would probably be this one.  Entitlements are a structural problem, and the main problem is just how broad-based the most dangerous ones are.  Neither Republicans nor Democrats are going…