* Posts by Kevin McMurtrie

3557 publicly visible posts • joined 15 Jun 2007

Native Americans urge Apache Software Foundation to ditch name

Kevin McMurtrie Silver badge
Facepalm

I'll just leave this here

Shutterstock same model

Cisco warns it won't fix critical flaw in small business routers despite known exploit

Kevin McMurtrie Silver badge

Hardly the first problem

I had one of those (RV042G I think) and it was hopeless to secure. If I reported a vulnerability, Cisco would send me a patched firmware file with a worse vulnerability. I crushed and disposed of it when the WAN ports had admin telnet permanently open with the default password. Giving it away for free would have been an act of cruelty.

Linksys WiFi APs followed shortly for the same reason.

Fat EVs may cause 'more death on our roads' – watchdog

Kevin McMurtrie Silver badge
Trollface

Re: Temporary Problem

Don't forget cheap fuel cells and good old fusion being just 10 years away (always).

Kevin McMurtrie Silver badge

Old people want "safe" cars

Older people want heavier and heavier cars for their perceived protection in crashes. Mandating a weight limit is probably the only way to go. These same people are future "wrong pedal" drivers that are going to launch their 700HP electric mammoths into others. You can't line every sidewalk in a city with bollards.

Another problem is all the people buying Teslas believing that a future software update will turn them into limos before they kill themselves with poor driving skills. A white Tesla 3 is the new Prius - the car that you watch carefully because there's a higher probability of a confused driver. (Or worse - Autopilot is on)

Haiku beta 4: BeOS rebuild / almost ready for release / A thing of beauty

Kevin McMurtrie Silver badge

Re: I wish them well

I saw the BeOS demo too. I recall that it was heavily dependent on the Metrowerks CodeWarrior development environment, which was my favorite IDE at the time. Metrowerks started releasing inoperative updates and that was pretty much the end of the BeOS demos. I never saw one again.

This was about the same time that MacOS and Windows were highly unstable, both in APIs and reliability. I ended up switching from C++ to Java for primary development.

AI-generated phishing emails just got much more convincing

Kevin McMurtrie Silver badge
Mushroom

"I hope this email finds you well."

Stop reading. View raw, reply, whois relaying IP, MX lookup reply e-mail hostname, A/AAAA lookup mail host, whois mail server IP, send abuse e-mail, and report to AbuseIPDB.

BMW updates 90% of EVs sold in the US over power software bug

Kevin McMurtrie Silver badge

Modern drivers are lucky

My 1988 Toyota Tercel died every morning while driving. Carburator air/fuel ratio was managed by a computer made of vacuum driven components and an equally crude electronic computer. Working together? No. The vacuum computer's changes corrupted the parameter mapping that the electronic computer learned from prior feedback. That was not so bad as long as the feedback loop was active.

The feedback loop needed a few seconds to work when coming off idle. Any change in conditions caused the car to stall in the middle of intersections, usually when a truck is coming.

A very complex hack was applied by Toyota to give the vacuum computer more gradual, finer grained adjustments. It didn't really work. To top it off, the atmospheric vents for this vast system of vacuum circuits was right next to the crankcase vent - the thing that coughs up a fine mist of oily soot.

Fixing car bugs with a software patch is modern magic.

US schools sue Meta, Google and friends over 'youth mental health crisis'

Kevin McMurtrie Silver badge
Trollface

Don't forget

5G, blue radiation from LEDs, vaccines, and whatever the aluminum foil on your head is blocking.

US pressures Asian allies to join crusade against Chinese chipmakers

Kevin McMurtrie Silver badge

Backstory?

Is this a convoluted response to intellectual property theft and government backed trade wars? Sometimes there are no correct answers for the problem you have because the problem is only a symptom of something else needing correction.

Oh, no: The electric cars at CES are getting all emotional

Kevin McMurtrie Silver badge

Re: "buttons replaced with touchscreens"

Yelling SHUT THE FUCK UP at my car's driver assistance system causes it to reply with, "Map, North facing up."

Kevin McMurtrie Silver badge

Re: fratzonic chambered exhaust

"eRupt transmission" - Standard equipment. There's a loud bang, some metallic clattering, and the car coasts to a stop.

"Fratzonic" - People nostalgic for the chug of a misfiring cylinder will find comfort in an electric motor with one cracked magnet.

Kevin McMurtrie Silver badge

I wasn't asking for that

I want to get to my destination quickly and gracefully. Big windows, nimble handling, reliability, and minimal fuss. I'd be home if I wanted a tech cocoon.

Microsoft said to be thinking of sinking $10m into self-driving truck startup

Kevin McMurtrie Silver badge

This has to be a tax, patent, or money laundering trick.

JP Morgan must face suit from Ray-Ban maker after crooks drained $272m from accounts

Kevin McMurtrie Silver badge

Big banks

That's what you get for using a big bank and not having a team of accountants watching it. You have to dispute every fee, protest every change of terms, and NEVER let your account balance decline enough that you become the bank's prey.

I'm sure they can hire a JP Morgan fraud investigator for... it's a lot and it's not targeted towards "smaller" customers. So sorry. Also, the balance went negative after the last fee for not maintaining the minimum balance. Your account is closed and the last 12 outbound checks are being reversed to recover past due fees to the bank.

OneDrive back on its feet, but ongoing Skype credit problem hasn't gone away

Kevin McMurtrie Silver badge

It was going into the crapper before that. I tried to make a call from a foreign country because that's exactly what people used Skype for. Skype locked my account "for security" and wouldn't unlock it until I gave them my original credit card number. That was an old card I no longer had. I said if Skype wanted to keep my money so !@#$ safe, they need to close the account and send a check to the address in the account.

I think Microsoft unlocked the account but the Skype client was hopeless at that point.

Citizen Coder? Happiness Concierge? Here come 2023's business cards

Kevin McMurtrie Silver badge
Meh

Being honest

"Senior Cynical Software Architect" sounds right but I'd keep "Senior Software Engineer" and "Staff Software Engineer" as a backups, because I don't think any of those titles are reliable enough alone.

Techies try to bypass damaged UPS, send 380V into air traffic system

Kevin McMurtrie Silver badge

Re: Critical

There's a big gap between the working voltage and the point where surge suppressors are fully active. 380V into a 220V system is in that gap. Everything should tolerate it just fine for several seconds. Then capacitors pop, MOVs protectors smoke, and the fuses finally trip from something permanently shorting.

600V to 4kV would have been simple blown fuses.

Here in 'Merica, elevated power lines are ordered from lowest voltage on the bottom to highest voltage on top. It makes tree trimming and comms repairs safe. If that top line falls into the lower lines, everything is toast. There will be a plasma fire in a large void where your protection components once lived.

Miniature nuclear reactors could be the answer to sustainable datacenter growth

Kevin McMurtrie Silver badge

Move fast and irradiate things

I bet nuclear safety is probably a lot like data safety - there are well understood technologies and processes that are nearly foolproof... but nobody has time for that.

Southwest Airlines blames IT breakdown for stranding holiday travelers

Kevin McMurtrie Silver badge

Failed while failing

Southwest received $7.2 billion of public subsidies to help them get their act together. Maybe it's time to look for criminal misuse of funds? Throwing money at contractors and cloud providers, if that was even done, doesn't count as money properly spent.

Stolen info on 400m+ Twitter accounts seemingly up for sale

Kevin McMurtrie Silver badge
FAIL

The hacker's first sales attempt

The sample data provided from the leak is the same junk that every criminal telemarketer on Earth is already sharing from hundreds of other breaches. Most of them are running various web services (form pre-fill, tracker-to-tracker handoff, etc.) that are themselves trivially exploitable. No value.

This twerp is taunting Musk thinking it's going to bring in retirement money. Usually it's best to start small, like selling your used car, to see how the game works.

Too big to live, too loved to die: Big Tech's billion dollar curse of the free

Kevin McMurtrie Silver badge

Don't forget Android

Android phones were another Trojan Horse to breach privacy. With regulations getting tighter, it's easy to imagine their value quickly drying up.

It looks like Google is trying desperately squeeze money out of Android by selling Cloud storage. They crippled microSd performance and usability to the point where apps needed to drop out of Play Store. You'll also notice that G-apps phones have declining storage capacity. Models for Google markets are usually 128 or 256 GB maximum with no microSd, regardless of price.

Luckily, there's a way out. Plenty of phones run fine without the G-apps and libraries. I wouldn't mind "Material You" being ripped from the codebase either.

Alphabet reshuffles to meet ChatGPT threat

Kevin McMurtrie Silver badge

Re: ChatGPT engine

Sites that are purely informational tend to block Google's crawler anyways. There's no incentive to let Google suck up your web site so it can be used for Google's advantage.

FCC calls for mega $300 million fine for massive US robocall campaign

Kevin McMurtrie Silver badge
FAIL

Didn't notice

I'm still getting plenty of scam voicemails. I just checked that the SMS phishing gangs with their complex and well established infrastructure on Amazon/Salesforce/HighSpeedWeb/OVH/Cloudflare/Google/Namecheap are doing fine too.

As even the FCC has said, they can invent any fine they like but they have no power to collect the money.

Kevin McMurtrie Silver badge

Re: In prison - with a phone

"Your cell has a phone because the governor would like to speak with you about a pardon. Don't miss the call."

Back to work, Linux admins: You may have a CVSS 10 kernel bug to address

Kevin McMurtrie Silver badge

Re: This does not belong in the Kernel

I could see ksmbd being useful for office LANs where fast file access over 10 Gbps Ethernet is needed. Samba usually has odd performance problems that come with being an ancient Apache project. NFS with user-level permissions is something nobody wants to figure out.

As long as ksmbd is opt-in and documented as experimental during development, what's to complain about?

Zerobot malware now shooting for Apache systems

Kevin McMurtrie Silver badge

Re: Built-in obsolescence

It's much worse. Several cloud hosting providers are completely OK with persistent botnet infections. DigitalOcean and OVH are not only enormous botnet hosts right now, but they've disconnected their abuse contact so they don't have to hear about it.

How can they do that? Backbones NTT, ReTN, Telia/Twelve99, and Tata don't seem to mind.

The Internet of Sh!t is expanding to include almost everything.

Paperwork decision scraps Google's $600m Minnesota datacenter project

Kevin McMurtrie Silver badge
Facepalm

The spokesperson

Those quotes sound so honest and sincere. I'm sure the Minnesota community is in good hands.

Digital Ocean dumps Mailchimp after attack leaked customer email addresses

Kevin McMurtrie Silver badge
FAIL

"Digital Ocean has vowed to learn from the experience"

It's December 2022 and I'm still waiting for that to happen. DigitalOcean now appears to be the largest botnet host on Earth. They still don't read abuse complaints, don't subscribe to public blacklists, or appear to be doing anything at all except watching their service burn to the ground.

Elon Musk to step down as Twitter CEO: Help us pick his replacement

Kevin McMurtrie Silver badge

Mr Broadus Jr.

https://twitter.com/SnoopDogg/status/1604656918844256257

This is going to be like the year that all of Hollywood ran for Governor of California and we ended up with Arnold Schwarzenegger. (That didn't go badly and I don't know how)

Carmack quits Meta, brands it inefficient and unprepared for competition

Kevin McMurtrie Silver badge

Re: (Senior) Managemant

Career stage matters. At first it's all about creating a career-defining product that's better than anything else out there. As time wears on they want out and have too much stock granted. Fuel the tech debt and burnout the staff. Fire half your team if it will bump up the stock price for a moment or pay for a bonus.

BBC is still struggling with the digital switch, says watchdog

Kevin McMurtrie Silver badge

Click here to watch a message saying you can't watch

At least www.bbc.com stopped advertising programs to the world, showing a streaming player, and then telling the world it can't watch. Na na na na...na.

I just tried it now and the US variant of BBC links to BBC local channel guides. Still not helpful. Maybe I should have left a network TV tuner in the hotel on the last visit?

Google debuts OSV-Scanner – a Go tool for finding security holes in open source

Kevin McMurtrie Silver badge

I just want to do some pruning

A hassle in the Java world is that some third party library will eventually reference an Apache library for API compatibility. Now 20 years of Internet garbage is going into the build. How many millions of critical vulnerabilities that imported isn't relevant. I want to know the best points to insert a manual dependency exclusion. Doing it manually is trial and error by checking for runtime failures.

NIST says you better dump weak SHA-1 ... by 2030

Kevin McMurtrie Silver badge

Trusted for deduplication too

Some will say that the odds of a SHA-1 collision for file deduplication are an impossible 1 in 2^160. On the flip side, math says that if you are hashing files with 100 million bits, there could be up to 2^99999840 collisions. I once saw a colliding cryptographic-strength UUID glitch a financial system. My trust is that large computer systems can brute-force their way through impossible odds.

Ah, I remember the good old days when computers were slow and a "1 in a million" bug was something you had a day or two to fix.

Musk bans private-plane-tracking @Elonjet on Twitter, threatens legal action

Kevin McMurtrie Silver badge

Duh

If you want a dorky name but don't want to be stalked, you need a name like "Usb Reviews" that will completely fail in search engines.

Rivian abandons electric van partnership with Mercedes-Benz

Kevin McMurtrie Silver badge

Probably for the best

Rivian needs to focus on cheap mass production. A deal with another car company to build something custom would have been a distraction.

Patch Tuesday updates spark errors when creating Hyper-V VMs

Kevin McMurtrie Silver badge
Trollface

Ah, good. Unintelligible copy&paste scripts on the Internet to fix security problems. I'll run those as soon as I use my credit card to release my free iPhone from the postal service and see what the guy in the van outside wants to show me.

AWS strains to make Simple Storage Service not so simple to screw up

Kevin McMurtrie Silver badge

Cursed IAM

Bidirectional grants in IAM, assumed roles, inherited roles, instance roles, deployment/tools roles, global bucket rules, and temporary access tokens. Multiply that by a ton of internal operation codes that no longer match APIs. You can see why an outsourcing company with a tight deadline is simply going to flip the switch to make it public.

Between that and needing to use a multi-part API for streaming uploads, I think the word "simple" might be misused.

US Air Force tests its first fully functional hypersonic missile

Kevin McMurtrie Silver badge

Re: Oh boy

Deliver a pizza anywhere in the world in less than an hour.

Then you'd have a billion dollar startup company.

Researchers smell a cryptomining Chaos RAT targeting Linux systems

Kevin McMurtrie Silver badge

Also OVH, Cloudflare, DigitalOcean, BuyVM, Amazon, Google, Starcrecium, ReTN, Tencent, most of China...

Cutting off hostile networks would temporarily collapse the whole Internet and ruin global economies. We're going for a slow and painful death by botnets instead.

Scientists shed light on oddball gamma rays from deep space

Kevin McMurtrie Silver badge

Re: Nuff not said

Hopefully it's not a whole lot faster than light at first. You wouldn't want to place a wormhole based on Earth-bound observations that are thousands to billions of years old. At some timescale, predicting where things are in the universe when you arrive is going to be like predicting were clouds will be tomorrow.

San Francisco investigates Hotel Twitter, Musk might pack up and leave

Kevin McMurtrie Silver badge

Twits already moving to Twexas?

https://bid.hgpauction.com/auctions/8421/herita10194

Looks like the landlord is already moving out. No espresso machines = no hardcore workers.

Kevin McMurtrie Silver badge

Popcorn

Pease don't use California, liberals, and San Francisco interchangeably. SF is very special.

Musk is big on Texas but he runs his companies like a Hollywood reality TV show. He's even monitoring public reactions to maintain a steady pace of outrage and drama.

Look like Bane, spend like Batman with Dyson's $949 headphones

Kevin McMurtrie Silver badge

Re: "Bladless Fan"

It's probably a Tesla turbine, soon to be called a Dyson turbine.

Legit Android apps poisoned by sticky 'Zombinder' malware

Kevin McMurtrie Silver badge

To hell with Google

Google Play Store prohibits apps from using APIs as a way to manipulate competition. I have apps that need fast microSD access but Google hasn't allowed that in over a year. They require apps to use APIs with severely throttled performance.

Download apps from F-Droid or the developer and they work perfectly.

I honestly don't think Google has a plan. They want to sell cloud services and siphon data but they're dumbing Android down so much that there's no advantage left over iOS. It's like a boring iPhone, but buggier.

Musk's Hotel California erected at Twitter HQ, as some offices converted into bedrooms

Kevin McMurtrie Silver badge
Go

Did someone say, "free housing?"

I know a lot of people who'd ditch their $2000-$5000 a month urban living costs for a bedroom in the office. The intersection of hardcore Musk fans, people who can write code, and people who'd live in the office is probably in the tens of thousands. It would be another step towards failure for the business but Musk would have the hardcode fanatics he personally needs.

You get the internet you deserve

Kevin McMurtrie Silver badge

There's a local newspaper that still exists. Their website has so many ads and trackers, at least 100 per article, that there's a nearly zero chance of successful rendering without an ad blocker. The site demands money but paying won't turn off their ads and trackers. In fact, you can make the site stop demanding money with an ad blocker because it's an outsourced test running client-side. I could be a nice guy and give them a subscription but their articles aren't any better than Tweets and bots. I just saw their science columnist describe a new energy harvesting system using the mystery unit of "megawatts per day." It was disappointing even after typos in the article's sub-header set expectations.

Rackspace confirms ransomware attack behind days-long email meltdown

Kevin McMurtrie Silver badge

Bad response

Taking so long to reply is going to drive away even customers that weren't impacted.

9n the flip side, DigitalOcean would have left them all running with the infections.

Lumen to double size of US network with six million extra miles of fiber

Kevin McMurtrie Silver badge

Re: Ah, CenturyLink

Lots of Lumen/CenturyLink/Level3 connects to Russia so we need more bandwidth for all the brute-force attacks coming in.

Musk says spat with Apple over App Store ejection threat for Twitter was 'misunderstanding'

Kevin McMurtrie Silver badge
Devil

Apple tour

Did it include the secret iCar factory?

Neuralink's AI brain chip could be in humans within six months claims Elon Musk

Kevin McMurtrie Silver badge

Re: Once Upon a Time In The Beginning ....

^ Beta tester