We still have to keep VMs of ancient build environments around on the off chance that we need to service a really old version of something we ship (and certifying it on a newer build kit would be entirely too much effort) so I feel ya.
On the plus side one of the big pushes from security happening when I got laid off was to either get off the old stuff learn to deal with them being very locked down, isolated and audited like every 3 months.
These guys easily have the money to rebuild an open source app thatās been abandoned by a vendor, but they donāt have the technical or legal resources to reverse-engineer a closed source app tied to specific hardware & build it over again from scratch, &etc.
Um that is if I actually did know of any huge metropolitan hospitals still totally reliant on old versions of IE and Windows. Because I totally donāt, of course. Totally. If I did, the NDAs and BAs I am signatory to would totally prevent me from naming names or even talking about any such thing other than totally hypothetically. This is all just rumors, yeah, rumors I heard, thatās all. Iām sure thereās no truth in it whatsoever.
Up here, anyway, the problem in the medical arena tends to be that only specific versions are certified, so you canāt change it without recertification. Open source or otherwise.
HIPAA/HiTech regulations, in the US, pretty much makes using unsupported software illegal, but that only applies to the management of Legally Protected Health Care Information.
So I canāt use OpenBSD to host your health insurance or treatment data* but I can use Uncle Joeās Fly-By-Night Heart Surgery Software from 1987, no problem!
I guess we really canāt expect sane regulation from an industrialized nation that adamantly refuses to allow single-payer health care,** though.
* unless I contract or build a maintenance organization to provide OS support for it.
** apparently because itās just too cheap, reliable and simple for massive insurance company profiteering.
For a mobile device and particularly an Apple device, definitely. They
update aggressively which is also why every IT security professional I know
carries a modern iOS device.
To be 100% clear ā is it happening after you like a post? Because thatās what I fixed and the code is still there to check for that case.
Iām wondering if itās something else that is refreshing the top post.
Interesting! Every security professional I know wouldnāt touch one with a ten foot pole. They mostly run heavily customized android loads.
Theyāre probably not very good, then:
https://twitter.com/4Dgifts/status/793554938844643328
Android is a disaster, security-wise. Itās ok-ish if you have a new device you bought directly from Google and thus gets official updates fast from the source, but far from great.
The login page is borked for iOS 9.3.5 so I canāt even enter my password on the iPad II
Can you screenshot it? Iām curious what the āborkedā means.
When I try to enter the username or password the login dialog disappears off the bottom of the screen ā¦ might be able to use a saved password via iCloud but canāt enter anything ā¦ is there a video capture app for iOS? I could video it but not screenshot it
Youāre willing to judge people you donāt know (who are running custom OSes) based on the twits of other people you donāt know talking about non-customized OSes, and also you prefer to trust people who are running Apple OSes with built-in back doors? To each his own, I guess.
I personally run straight android straight from Google on my tablet, but then again I donāt put anything I care about on my tabletā¦ :shrug:
Itās happening when I reply to a post. I havenāt tried liking.
So it is a separate bug then. Iām trying to reproduce it but I canāt seem to do it. Does it happen every time you reply? Is it immediately after the reply, or like 30 seconds later?
[quote=āMedievalist, post:55, topic:86506, full:trueā]
Youāre willing to judge people you donāt know (who are running custom OSes) based on the twits of other people you donāt know talking about non-customized OSes, and also you prefer to trust people who are running Apple OSes with built-in back doors? To each his own, I guess. [/quote]
As someone who does security for a living, I advocate that people who really want secure to use client-side encryption (like iPGMail), donāt use iCloud, backup to an encrypted removable drive, donāt use biometrics, use two-factor auth, donāt display mesages in the lock screen, and use third-party apps as little as possible.
Most people donāt need to be that careful. 2FA, donāt display messages, no iCloud, and local backups is enough for most people.
If you need a cloud storage option, Iāll trust Apple (who make $0 off of your personal details) over someone like Google who still make the vast majority of their income from mining personal data and details for advertising any day. It doesnāt make them inherently bad actors, but they have a MUCH greater incentive to do things like mine your email, photos and whatnot for marketable data than a company who derives no revenue from such practices.
Good advice, and youāve touched the critical principle - data security is fundamentally an economic and psychological problem.
You have to make it more economically and psychologically attractive for people to not hack your systems, because all security can be defeated by the $5 wrench method. If itās possible for someone to make eleventy million dollars by hacking my phone, then the costs of hacking my phone need to cause more harm to them than eleventy million dollars is worth.
Securityās one of my professional hats, too.
We need a new thread if weāre going to keep this up, but Iām out for the weekend. Gotta put a new roof on the house and no, that is not a euphemism!
Itās happened to me once, as well. When it did, it was the first reply to a fresh topic.
so, Iāve seen this happen too, especially the dreaded āGET THE BOING BOING NEWSLETTERā problem where the post text disappears completely. I wish I could find a pattern, though - Iām not sure whatās causing it. But it is happening.
Next time I see it Iāll pay close attention to browser and application states and report more details.
Not every time I reply, but itās immediate. Unlike @nimelennar my replies werenāt to fresh topics, though.