* Posts by Pascal Monett

16761 publicly visible posts • joined 10 Apr 2007

Open-source JavaScript project Babel 'running out of money' after employing paid maintainers, sponsors pull out

Pascal Monett Silver badge

Re: Open source stuff should be free ...

It is free. Nobody is paying to use Babel JavaScript.

But if you want the project to survive, you need to have people willing to give their time to that, and it is simpler and easier to attract developers if they get a financial incentive out of it - especially if you want the good ones to work full-time.

That being said, I'm sorry but $11k a month is not the kind of incentive I think is justified for an open-source project. Up to $4k could be justified, following the amount of work the developer contributes, but I think that is pretty much the high bar.

It's Open Source. A living wage, yes, but if you're in it for the money, go back to being a company drone. Either that or create a startup and go hit venture capital.

Blessed are the cryptographers, labelling them criminal enablers is just foolish

Pascal Monett Silver badge

Re: Will government idiots never learn? They might have to be taught by example

Total riots ? Probably not.

Some russian hackers making a fortune and leaving thousands in poverty ? Very likely.

Pascal Monett Silver badge
Coat

Re: Are banks criminal?

Absolutely agree. It's the first thing I want to say to any idiot with a public mandate. You want backdoored encryption ? Fine, let's start with your communications. See how you like that.

After all, leading is showing by example, right ?

Okay, stop pushing, I'm on my way out.

Pascal Monett Silver badge

Re: Kinda covers it all, no?

Not really. Not in my opinion.

Otherwise, our justice system would be quite simple : you committed a crime, you get executed.

There are degrees, and they must be taken into account. A group of thieves who stake out a house, find out when the occupants are gone, break in and loot the place and get gone will get less attention than a group who break in and murder everyone, then loot.

And that is logical.

Pascal Monett Silver badge

Yeah, but it's about managing incentive.

If the thief's incentive is rendered null because he wanted a radio and is not interested in that one, the you've succeeded in protecting your car.

If the thief is determined to search the glove box, well, too bad.

App Tracking: Apps plead for users to press allow, but 85% of Apple iOS consumers are not opting in

Pascal Monett Silver badge

Have you heard of Brave ?

Install Brave. Ads will be a thing of the past.

On a mobile phone, I feel this is especially important. You're the one paying the bandwidth.

NHS App gets go-ahead for vaccine passport use despite protest from privacy groups

Pascal Monett Silver badge
Coat

Re: I can't see that it erodes my privacy any further

I'm sure you'll find out soon enough.

Pascal Monett Silver badge

Ooh, equating Thatcher with Hitler.

That's a new one.

UK's Computer Misuse Act to be reviewed, says Home Secretary as she condemns ransomware payoffs

Pascal Monett Silver badge

"online child sexual abuse"

Yes, of course, obviously. You definitely need to mention online child sexual abuse if you want anything computer-related to pass into law.

Rude awakening for O2 customers after network runs surprise test of emergency mobile alert system

Pascal Monett Silver badge

"Cell Broadcast is not affected by traffic load"

After reading this article I was curious, I'd never heard about this technology before.

So I looked it up.

It is so reassuring to know that, when I'm desperately trying to call for help, my phone will be able to blare at me that I may be in trouble.

IBM wheels out AutoSQL, Watson Orchestrate in bid to fend off cloud irrelevance

Pascal Monett Silver badge

"bid to fend off cloud irrelevance"

I'm sorry ? Cloud irrelevance ?

Oh, you mean IMB's cloud irrelevance.

Okay, now I get it.

SolarWinds CEO describes overhauled Orion build system after that 'very small, unique' security breach

Pascal Monett Silver badge
FAIL

a “very small” number

Well of course, compared to 7 billion people on the planet, 18 000 is indeed a very small number.

Except that your 18000 customers just happen to include some of the most important organizations on the planet.

Oh, you forgot that point, didn't you ?

Well we didn't. And neither did they.

Intel throws sand in the face of 'musclebooks' with 10nm Tiger Lake tech

Pascal Monett Silver badge

"a new PC will be faster and smaller and lighter"

I don't want my laptop to be smaller.

I want my 17" screen.

I want 6 USB 3.0 ports.

I want a DVD/RW drive.

These requirements preclude you shrinking a laptop to the size of mobile phone.

Stop trying.

Tencent research team scores free powerups for electric cars with Raspberry Pi-powered X-in-the-middle attack

Pascal Monett Silver badge
Flame

"messages sent on the Controller Area Network"

And here I go again.

Sorry to grind the same organ again, but since when has it been a good idea to mix the network controlling the car with the network accessing the outside ?

Answer : never. But the beancounters argue for economy of scale.

Fuck them.

Beancounters are the bane of security and common sense.

Vietnam’s biggest industrial conglomerate quits smartphones and TV biz, bets on electric cars

Pascal Monett Silver badge

Vingroup, VinSmart

You'll excuse me if anything with the name "Smart" in it gives me a serious case of the hives.

I have no problem leaving that group to Vietnam. They can deal with it.

China’s digital currency adds support for AliPay – the Alibaba payment app with over 700 million users

Pascal Monett Silver badge

Re: Euro is useless as a transaction currency

I'm sorry that you have issues transferring Euros from Thailand.

I live in France. I work in Luxembourg. My main bank account is in Luxembourg. I have an international VISA card, obviously.

When I ask for a professional's intervention at my home, be it plumbing, electricity, delivering wood for the chimney, or remaking the shower, I pay by IBAN transfer.

I've never had any problem with it. I consider it to be secure and convenient. I am not unhappy either with the knowledge that VISA is not going to gouge a transaction fee out of it.

I don't know why Thailand has issues with IBAN transfers, but, as an insider, I feel that you need to look to your banks rather than blame the Euro for your issues.

Pascal Monett Silver badge

Re: those who have nothing to hide etc

I've got nothing to hide.

I demand to know what right you have to ask*.

* theoretically, of course

Samsung reveals DDR5 memory module that’s ready for Compute Express Link

Pascal Monett Silver badge

Don't get it

There are obviously many much more intelligent people than me that have worked on this (not difficult), but I fail to understand how something that has less connectors than a proper DDR5 RAM stick can be faster.

Can anyone enlighten me ?

Microsoft embraces Linux kernel's eBPF super-tool, extends it for Windows

Pascal Monett Silver badge
Coat

"Microsoft on Monday"

Totally off-topic, but that is a serious start to a 12 Days of Microsoft something or another.

Sorry I'm not smart enough to give the kick-off myself.

Pascal Monett Silver badge
Trollface

It's Borkzilla.

Obviously they'll find a way to ruin Linux, and then blame it.

Another platform on which Java will not run – platform 1 of Newcastle's Central Station

Pascal Monett Silver badge
Windows

"We assume it is just the modern way of doing things"

The "modern" way of doing things is to link your production code to some fookin' Git library and call it a day.

Don't go checking the code of said library to make sure that it does what it says on the tin, that would be actual work.

Train operator phlunks phishing test by teasing employees with non-existent COVID bonus

Pascal Monett Silver badge

Re: "They all still think that the attacks have poor grammar and spelling"

They most often do, and that is a major factor in sorting the wheat from the chaff, but the truth is in the link.

If the link you're asked to click on does not obviously belong to the corporate address the mail is supposed to be from, then good bye, nice try.

But if the link is to a verifiable corporate domain and you come tell me that it was a phishing exercise, I will rip you a new one.

Pascal Monett Silver badge

Re: Unfortunately,

I use Rules in my corporate mailbox. Every time someone sends out something that has absolutely no bearing on my daily job, I set up a rule to shove it into a folder labelled "Ignored".

Given that I am a freelance consultant, and only log in when I am asked to by the customer, such rules are pretty easy to set up. If it doesn't concern the project I'm on, it's ignored.

Pascal Monett Silver badge

Re: The whole intention of a phishing attack is to make it both believable and tempting

I'm sorry, how is it believable that you have to register for a company-wide bonus ?

Either the company gives the bonus, or it doesn't, but it does not make its employees register for one. I think that would be grounds for a lawsuit.

Not blaming the people who clicked the link, but I think this whole affair is going in the wrong direction.

Somebody should have complained about the principle.

43 years and 14 billion miles later, Voyager 1 still crunching data to reveal secrets of the interstellar medium

Pascal Monett Silver badge
Thumb Up

"It's been absolutely thrilling to work with a spacecraft that has such an incredible legacy"

I'll bet it is.

It is incredible that we've been able to do such things. It is indispensible that we continue to milk Voyager for every ounce of scientific data we can get while we still can.

And it is a tribute to Science and to the entire human race that NASA selflessly grants access to such data, instead of hoarding it.

I'm not saying that NASA has a habit of hoarding data, I'm saying that NASA is the embodiement of Knowledge, giving access without hesitation to any data it has on our Universe.

There are some forces for Good in our world, and NASA is one of them.

Overdue: After a 2-year £12m delay, Northern Ireland Libraries looks to close chapter on Fujitsu saga

Pascal Monett Silver badge

"Northern Ireland Libraries can look forward to new corporate desktops and peripherals"

Why do they have to have renewed hardware ?

As far as libraries are concerned, any hardware since 2010 is good to go, just slap Windows 1 0 on the desktops, load the environment and the job is done.

You don't need a brand new 4Ghz CPU and 8GB of DDR5 to look for a book.

Compsci boffin publishes proof-of-concept code for 54-year-old zero-day in Universal Turing Machine

Pascal Monett Silver badge
Holmes

"where in the design process should we start trying to implement security features?"

AT THE BEGINNING.

Jaguar Land Rover reaches for graph database in search of supply chain knowledge during chip shortage

Pascal Monett Silver badge

"you can't just stop the factory"

Um, in point of fact, if you are missing a critical component in your production process, I don't see that you have the choice.

Of course, you can likely make vehicles while you wait for tow bars, but when you make engines and you don't get the chips they need, you're gonna have to stop making them until you do.

This wonderful world of JIT production is going to have to get back to grips with the notion of stock (oops, a beancounter just fainted).

Quantum computing: Confusion can mask a good story, but don't take anyone's word for it

Pascal Monett Silver badge

QC Monte Carlo

It's a startup. Another one. Another in a long line of startups that somebody promises will change the world. Magic Leap, anyone ?

I'll believe it if they've actually accomplished something in 5 years' time.

Uncle Sam wants 'ethical hackers' to crack its planetary defenses, but don't expect a pay-day from this bug bounty

Pascal Monett Silver badge

"The US DoD has opened up all of its publicly facing systems and apps to investigation"

I'm sure the FSB will help with gleeful abandon.

They might not give much feedback, though.

UK's competition watchdog sniffs around AMD's proposed $35bn all-stock buy of Xilinx

Pascal Monett Silver badge

So AMD has $35bn to throw around

Good news. It would seem, however, that I'm going to have to revise my rating of AMD as "plucky underdog" and upgrade it to full-blown dog.

Even better news, actually. Intel is going to need to up its game.

Consumers will benefit.

China to enforce social distancing on peak of Mount Everest

Pascal Monett Silver badge

China sent a team

It's impressive to think that climbing the Everest is a life goal for many people, and these guys just go up like janitors to string a barrier.

"What are you doing this week, honey ?"

"Oh, just gonna climb Everest again. Be back by Wednesday, dear. Bye !"

Namecheap hosted 25%+ of fake UK govt phishing sites last year – NCSC report

Pascal Monett Silver badge

"a 28.8 per cent share of known UK government-themed phishing sites"

Methinks that NameCheap is going to be forced to clean up their act if they don't manage to do it on their own.

Now that they have been named and shamed by a government report, Kirkendall is not going to be bale to brush it off like an angry Twitter rant.

If you regularly host government scam sites, there's a good change the government is going to come and have a word with you.

China’s top three telcos advise of imminent delisting from New York Stock Exchange

Pascal Monett Silver badge

So they've been delisted from the NYSE

They're still listed elsewhere, meaning that US investors can still buy shares if they absolutely want to.

Obviously, big holdings and such are going to want to set their records straight, but Joe Schmuck who bought 20 shares is not going to be bothered about all this.

Microsoft reveals what a growth mindset does to the letter ‘A’

Pascal Monett Silver badge
Coat

"to small details like graphics and icons"

Nice to know that Azure is working so well they have to waste on the useless details like logos.

Then again, the marketing department has to have something to do.

Gone in 60 electrons: Digital art swaggers down the cul-de-sac of obsolescence

Pascal Monett Silver badge

Re: And you'll never find a Blue Ray of the Star Wars that you used to know.

Guilty of still having the first trilogy in two VHS versions, plus the DVD version, obviously.

Russian cyber-spies changed tactics after the UK and US outed their techniques – so here's a list of those changes

Pascal Monett Silver badge

Re: "what makes you think they have stopped now?"

Nobody but the NSA is saying that they've stopped.

Repeatedly, each time they're caught doing it.

British bank TSB says it will fix days-long transaction troubles tonight

Pascal Monett Silver badge

"El Reg readers excepted of course"

Except that there are still El Reg readers who bank at TSB. WTF ?

TSB is not a joke now, TSB has been a joke for over two years, if not more.

Anyone with an ounce of sense should have gotten the hell out of there by now. Changing banks is not that difficult.

On the other hand, in the UK, there is the question of finding a bank that is actually reliable.

That may be an issue.

'A massive middle finger': Open-source audio fans up in arms after Audacity opts to add telemetry capture

Pascal Monett Silver badge
Unhappy

Good-bye Audacity

It's a shame, but you had a good run.

You can listen right here to the whir of a robot helicopter flying on an alien world

Pascal Monett Silver badge

"Sounds below 80Hz and above 90Hz have been turned down in volume"

Almost disappointed. I think I would prefer listening to the actual recording.

Don't misunderstand me, this was another awesome video, but I would like to hear what is really happening, not just what NASA wants me to hear.

The untouched audio is reality. This is great, but I prefer reality.

We were 'blindsided' by Epic's cheek, claims Apple exec on 4th day of antitrust wrangling

Pascal Monett Silver badge
Flame

30% is extortion, pure and simple

As a freelance consultant, and a consultant for the past 25 years, I can vouch for the fact that 10% is an acceptable fee when someone is offering you a post somewhere.

And I'm talking about real work being done by a person through someone else's contacts.

If someone told me that I could have a contract somewhere but they were taking 30% I would laugh out loud and tell them to get stuffed. Yes, they have the contact, but I'm doing the work. I'm the one with the expenses.

In Apple's magic land, Apple believes it has the right to demand 30% of someone else's work which it is only just selling and reselling endlessly, having done nothing more than provide the platform to do so.

Come on. Apple is one of the companies in the world that has the most money in the bank. It's platform is proven and all it's doing is selling bytes. Bytes that someone else sweated to create. 5% is what Apple should be getting. Not a cent more.

Perl changes dev's permaban for 'unacceptable' behaviour to a year-long lockout after community response

Pascal Monett Silver badge

Wondering about that as well. Wikipedia explains that philo-semitism is basically "an interest in, respect for and an appreciation of Jewish people, their history and the influence of Judaism".

Of course, associating that with antisemitism makes me think that whoever it was was dishing out racial hatred under the guise of good words.

I guess that's possible.

Cisco HyperFlex web interface has critical flaw that lets attackers get root and execute arbitrary commands

Pascal Monett Silver badge
Thumb Down

"insufficient validation of user-supplied input"

Aka sloppy programming.

On a platform that is specifically touted to be the tool to manage VMs.

Well done, Cisco. With you around, who needs Huawei ?

Which? warns that more than 2 million Brits are on old and insecure routers – wagging a finger at Huawei-made kit

Pascal Monett Silver badge
Stop

"white-label devices sourced from China"

Meaning, UK ISPs dictating what kit they are willing to pay for happens to be made in China.

I'm not sure Huawei is the issue here. To me, the issue is UK ISPs that did not put the money on the table to get secure kit. If that had been in the specs, Huawei or not, the Chinese would have had to deliver.

NHS Digital booking website had unexpected side effect: It leaked people's jab status

Pascal Monett Silver badge

"run vaccine checks on the status of random people with no authentication"

Well thank goodness you're out of the EU now - that would have been a prime violation of GDPR.

But you've taken back control, so there's no problem, right ?

OVH outlines three-point 'hyper resilience' plan after Strasbourg fire

Pascal Monett Silver badge

"3.6 million websites across 464,000 distinct domains... taken offline."

Yay for Single Point of Failure. Nice to know that the ol' buddy is still alive and kicking.

I think that, in the past few months, we've had largely enough demonstrations that UPSs should be quarantined far from actual servers.

In any case, whether you appreciate OVH's customers or not, I think OVH has done a fine job of openness and transparency on this issue. We are far from the usual "only a small number of customers have been impacted / we take customer data security very seriously / etc".

I'm hoping that OVH will publich a complete, official DR report with step-by-step instructions. As painful as this was for some, it is a priceless opportunity for all other datacenters to check against their own environment and start implementing mitigations now, before it's too late.

Chrome on Windows turns on Intel, AMD chip-level defenses against malicious websites

Pascal Monett Silver badge
Trollface

Google Chrome security engineer

Making sure that only Google has access to all that delicious private data.

If you're the 1% and have 10 mins to spare this July, bid for a place on first Blue Origin space tourism launch

Pascal Monett Silver badge

I think it's a great idea

To let rich people be the guinea pigs for a change.

As for me, even I had millions I'll still wait for the first hundred successful flights before I sign up to sit atop a gigantic fireworks that just might go boom quicker than expected.

Facebook Oversight Board upholds decision to ban Trump, asks FB to look at own 'potential contribution' to 'narrative of electoral fraud'

Pascal Monett Silver badge

"repeatedly and falsely claiming"

That just about sums up OHSG's entire presidency.

UK's Department for Work and Pensions continues to move off Oracle Enterprise Data Warehouse in pursuit of a single version of the truth

Pascal Monett Silver badge

Re: Why should pension data be a secret

Because it has to do with personal revenue and that is generally considered private data ?

Are you ready to publicly post your yearly revenue ?

If not, that means that you wouldn't mind checking on other people's revenue, but you would mind people checking on yours.

In my book, that's called hypocrisy. Also, meddling in other people's business. There's a category of people who love doing that.

I don't need to know how much your earn, nor how much you pay in taxes. I do not consider that to be my business, there's an entire government branch that takes care of that.

As for my taxes, I pay them and that's all you need to know.