Posts by jpgoldberg@ioc.exchange
(DIR) Post #APPh8eEYt3CCU2n6P2 by jpgoldberg@ioc.exchange
2022-11-09T01:35:49Z
0 likes, 0 repeats
On a Lyft ride recently, the driver had some things to say about election security. And thus I had a captive audience.
(DIR) Post #APPlmQCgrz6SMz8XZo by jpgoldberg@ioc.exchange
2022-11-09T03:24:14Z
0 likes, 0 repeats
I'd like to create a keybase proof for my existence here. Keybase doesn't seem to know about ioc.exchange. Any recommendations on how I can do this?
(DIR) Post #APPqi9jieVFhuTN4Ai by jpgoldberg@ioc.exchange
2022-11-09T04:20:58Z
0 likes, 0 repeats
Being a moderator is very hard. They will make calls that I don't always agree with. (I have no opinion on the one I am sub-tooting). The admin acted in good faith with good intentions.Please support a moderator unless you see a systematic pattern of really bad judgement. Recognize that there will be tough calls and even the occasional blunder, but let's not make a hard job harder by dissecting each one.
(DIR) Post #AQKkjBjFI3Qd6nGydE by jpgoldberg@ioc.exchange
2022-12-06T15:08:38Z
0 likes, 0 repeats
In which I am quoted.https://insight.scmagazineuk.com/seven-mistakes-cisos-still-make“When assessing assets, there has been a tendency to ignore data about customers/users/visitors, as leaking that data doesn’t directly harm the business [...] That thinking leads to the Equifax situation in which data on millions of non-customers was very badly protected. You are responsible for protecting that kind of information along with things that are more directly assets.”
(DIR) Post #AR5Gd5czCA48FndaIS by jpgoldberg@ioc.exchange
2022-12-28T23:59:30Z
0 likes, 1 repeats
I and my employers, #1Password, have never directly criticized a competitor before. But #LastPass's claim that it would take "millions of years" to crack the data made available from the breach needed to be addressed explicitly.I also take the opportunity to explain why 1Password's distinct security architecture would keep users safe if we were to be breached.https://blog.1password.com/not-in-a-million-years/
(DIR) Post #ARzqvy5USbWIuHhNE8 by jpgoldberg@ioc.exchange
2023-01-25T08:38:34Z
0 likes, 0 repeats
@WPalant @nadim I have some sympathy for @bitwarden here. More than 7 years ago we (1Password) said about our use of PBKDF2 that we will move to an appropriate successor when when one is settled on. I thought at the time that we put in all the right hooks in our protocol to make switching easier.Lesson: Crypto agility is hard, even when you think you've planned for it.
(DIR) Post #AWf2TQFxKzNcXrJpVQ by jpgoldberg@ioc.exchange
2023-06-13T19:57:57Z
0 likes, 0 repeats
@twylo I don’t have anything preserved, but I do have fading memories. At Cranfield University in 1993 the way we provided WWW access to Windows 3.11 was- Banyan VINES with TCP/IP- Hummingbird X11 server for Windows 3.11- Mosaic running on DEC OSF/1 Unix. I find it amazing that it worked at all.
(DIR) Post #AX5byUuVwDNNCfGXZo by jpgoldberg@ioc.exchange
2023-06-26T17:00:18Z
0 likes, 0 repeats
I was just asked to send a voided check to some service. But I accidentally wrote "void *" on the check. Does this mean they will have full access to anything and everything in my bank?
(DIR) Post #AXlBNUtnEbfhsm1Xvs by jpgoldberg@ioc.exchange
2023-07-16T18:20:56Z
0 likes, 0 repeats
@tomjennings @mattblaze @SteveBellovin @geofft @marcelias @20002ist additionally, such verification schemes may be transparent to a few mathematicians, but are not so to most voters.(I used to be an advocate of these. I’ve since come to better understand how fragile public confidence in the systems may be.)
(DIR) Post #AXlCBbrlbXAxyDyIdM by jpgoldberg@ioc.exchange
2023-07-16T18:28:43Z
0 likes, 0 repeats
@tomjennings @mattblaze @SteveBellovin @geofft @marcelias @20002ist that is typical of proposals by those (including my past self) who tried to solve a couple of salient problems without recognizing other problems that existing systems solve.The voting booth solved the problem of voter coercion/buying so well that we have forgotten that it was once an enormous problem.
(DIR) Post #AlLkKgTRWH48Hg8sG8 by jpgoldberg@ioc.exchange
2024-08-26T05:59:33Z
0 likes, 0 repeats
@interfluidity, that was a perfectly normal conversation when I was in 4th grade.
(DIR) Post #Ao158H5gf3g3dA7EIa by jpgoldberg@ioc.exchange
2024-11-14T00:19:57Z
0 likes, 0 repeats
@futurebird, sure I get annoyed by the fact that the LaTeX Reddit is populated by Overleaf users. But that’s nothing compared to CS students not compiling and running their code locally. Maybe I’m just old. (Ok, I am old, but I don’t think it is just that.)