Yesterday it got into the forties in the afternoon so Kasey & I snuck in a walk.
Here’s a great view from the other side of the moon, courtesy of NASA and the Lunar Reconnaissance orbiter.
Here in Kansas we are experiencing signs of Spring, buds appearing on trees, snow melted, and yesterday I got my first chigger bite.
Muller was a go to guy for many climate deniers the last decade, so it’s nice that he’s finally discovered that the Malankovitch cycle, vulcanism, and other half baked theories of global warming are wrong, and that only CO2 accounts for our warming. Of course scientists knew that back in the fifties, and Isaac Asimov tried to convince folks back in the sixties, however the right is still in fossil fuel funded denial to this day.
The other day I saw someone online boast about how they knew some obscure English etymology fact as they proclaimed that they ‘didn’t even have to look it up!’ Their pride in their knowledge of a trivial fact was a revelation for me: my generation usually takes great pride in their knowledge of facts, as if knowing something obscure were of value by itself. However does knowing facts matter as much in this day and age, and does knowing more facts than your neighbor make your life better anymore than having more beer caps would?
Before you automatically object, please take a moment to weigh some values against the facts you treasure.
First – Is it better to know things, or is it better to know how to know new things? Is it better to commit things to memory, or is it better to commit patterns, learning tools, logic, faces, friends, beautiful moments, and art to memory? Is the knowledge that you have as important as the journey to gain it?
Second – Any bare fact in and of itself is pretty trivial – and gaining that fact is more trivial still. This thudded home to me with great force on my last vacation as I watched a couple unfold a map, and pore over it, trying to find some location. Meanwhile their teen kept trying to interject and they kept hushing her. It took the teen pushing her phone screen with a pinpointed map on it in her parents face for them to recognize that she had just asked her phone and found the spot they’d both been arguing over and trying to find for ten minutes. She’d done it in seconds.
Third – Our memories are fallible, and we all have built in biases. These are inescapable conditions of being human. What we think we know is sometimes wrong. e.g. My wife tells me I’m wrong a lot. I think it was Socrates who said something akin to “The unexamined life is not worth living” so why don’t you examine your assumptions and “knowledge” on occasion?
Fourth: Our biases aren’t all socially evolved conditions of being human, some are built in by purposeful lies. That’s known as propaganda, and propaganda is driven by fear and hate. Propaganda only works with the ignorant, or the with the willfully ignorant who never test their knowledge, challenge their assumptions, or question what they hear.
Fifth: Your human perceptions are also flawed, maybe that song’s not really about a cross-eyed bear. (mondegreen – you could look it up.)
So why think you know some fact, or take a guess, when instead you can just ask Google, Siri, Alex, or even Bing? Why not double check even if you think you know? When I thought I knew the quote author above I was a bit wrong…. Yes, it was Socrates sort of, but only as paraphrased by Plato’s recollection of his speech at his trial. I just learned something new that I thought I already knew. So there’s the power of augmenting your intelligence. Finding that out was as simple as asking my pad.
Perhaps to my generation facts are of more value simply because of the efforts you had to go to just to obtain them – as my many trips to the library for my high school debate team attest to… nowadays finding things out has become trivial with all of the online data tools and search engines that we have at our beck and call.
In this millenium why shouldn’t you Google, ask Siri, or Alexa, almost anything just to double check? Why wouldn’t you augment your intelligence with the biggest brain and knowledge base on the planet: the Internet? Please take a New Year’s resolution to start asking Google and Siri more, start augmenting your feeble human intelligence, in this coming year stop handicapping your brain friends. Be not proud of what you know – instead be proud that you are smart enough to look it up.
Crossposted to LittleGreenFootballs.com .
A stunning collection of several timelapse photo series taken from the ISS.
Microsoft legal has a philosophy that local laws ought to apply to data — the only part that gets fuzzy under this approach is cloud data that is mirrored in multiple servers across multiple nations.
This discussion and case is highly important for the future of technology – if one country can by fiat demand that only country of origin laws apply to US companies doing business in foreign countries, what kind of reception and business can they expect? If your data is not secure when housed in US data farms, where will the data farms go? There will be lots of fallout from this case that could affect US employment. Right now businesses seek secure and stable locations that have class A networks for their data farms – if we fall behind in laws protecting data, and in network, we aren’t going to see many cloud farms built here.
The major market share players for PaaS and SaaS cloud services are Amazon, Google, and Microsoft – if the NSA continues to take an “All your base are belong to us” approach then that’s not going to continue.
Microsoft’s fight against the US position that it may search its overseas servers with a valid US warrant is getting nasty.
Microsoft, which is fighting a US warrant that it hand over e-mail to the US from its Ireland servers, wants the Obama administration to ponder a scenario where the “shoe is on the other foot.”
“Imagine this scenario. Officers of the local Stadtpolizei investigating a suspected leak to the press descend on Deutsche Bank headquarters in Frankfurt, Germany,” Microsoft said. “They serve a warrant to seize a bundle of private letters that a New York Times reporter is storing in a safe deposit box at a Deutsche Bank USA branch in Manhattan. The bank complies by ordering the New York branch manager to open the reporter’s box with a master key, rummage through it, and fax the private letters to the Stadtpolizei.”
In a Monday legal filing with the 2nd US Circuit Court of Appeals, Microsoft added that the US government would be outraged.
For in depth coverage of these positions
Brad Smith and Jonathan Zittrain on Privacy, Surveillance, and Rebuilding Trust in Tech | Noblesse Oblige
Some key concepts come up in this discussion of trust and corporate principles in the Post Snowden age of the internet. Pay attentions to Microsoft’s conclusions on when to redirect government subpoenas and when to deny extraterritorial requests.
“…but secret courts with secret decisions are NOT part of the American legal tradition” — Brad Smith — Microsoft’s general counsel and executive vice president of Legal and Corporate Affairs on the need for reform of the FISA court.
So I have this feeling often while taking photos — and then I try to do something different, but actually doing something different that’s not been done before is exceedingly rare because … 7 billion. Let me repeat that: Seven Billion. Now say it again like Carl Sagan would, then feel the hope and despair.
One of the key arguments in the brand X case was that broadband providers didn’t just offer transmission, but also packaged information services such as e-mail, and thus were information providers. However you then have to ask what’s the essential difference between voicemail and email other than media format?
It’s an important discussion especially at this juncture; telephony has always been held to higher standards for stability and reliability than broadband. Now that broadband is consuming wired telephone service with VOIP and media conferencing services, it’s time to ask public safety questions like: shouldn’t broadband be at least as dependable at POTS was?
e.g. If the area power goes out and you have POTS, your phone will still work due to an infrastructure that includes batteries, UPS’s, and Generators at strategic nodes to keep phone system electric current available during power outages. If your cable goes out you have no such system to keep your phone in service, indeed if you want a battery for your cable modem in most cases you have to ask. If the area power goes out, your phone dies if it’s over a broadband pipe.
Before net neutrality became a left-wing cause célèbre, it had an unlikely champion: U.S. Supreme Court Justice Antonin Scalia.
In 2005, Scalia in a dissent wrote that the Federal Communications Commission should classify broadband providers as a more heavily regulated Title II telecommunications service—a position in sync with a statement from President Barack Obama on Monday as well as with calls from groups such as Free Press and Consumers Union.
“After all is said and done, after all the regulatory cant has been translated, and the smoke of agency expertise blown away,” Scalia wrote in 2005, “it remains perfectly clear that someone who sells cable-modem service is ‘offering’ telecommunications.”
Justice Ruth Bader Ginsburg and since-retired Justice David Souter joined his dissent in National Cable & Telecommunications Association v. Brand X Internet Services.
via National Journal
Google’s getting ready to phase out SSL 3.0 in Chrome 39 due to it’s vulnerability to “man in the middle” attacks like those presented by Poodle.
If they are going there, then you need to move as well. While Google’s move will protect consumers using Chrome, it’s not going to help you if a hacker gets into your network using an old browser that allows downgrade to SSL 3.x or lower short keys and your apps still accept that.
If you still allow old versions of ssl (aka secure sockets layer, now superseded by TLS 1.2,) to be used in your enterprise due to outdated applications or hardware deficiencies then you need to migrate to TLS 1.2 and disallow insecure SSL 3.0 and lower connections that might still use short cryptographic keys. (SHA 256 or better is the current NIST recommendation. See table on page 67.)
You also need to be very aware that several well known web services and applications just one or two versions down sometimes come with older versions of SSL embedded in Apache Tomcat services. A good scanner such as Nessus will reveal that an insecure version of Apache (or whatever) SSL is being used with shorter keys, but it won’t tell you which app is the culprit so you are going to have to monitor the transactions to trace them back if you are not sure which one it is. This is especially true if your app vendor is not coming clean about it. Longer keys also take more server resource to crypt/decrypt so be prepared for a potential performance hit after you upgrade.
From Lucian Constantin at InfoWorld:
The decision comes after Google security researchers recently discovered a dangerous design flaw in SSL 3.0. Dubbed “POODLE,” the vulnerability allows a man-in-the-middle attacker to recover sensitive, plain text information like authentication cookies, from a HTTPS (HTTP Secure) connection encrypted with SSLv3.
Even though POODLE is the biggest security issue found in SSL 3.0 so far, it is not the protocol’s only weakness. SSL version 3 was designed in the mid-1990s and supports outdated cipher suites that are now considered insecure from a cryptographic standpoint.
HTTPS connections today typically use TLS (Transport Layer Security) versions 1.0, 1.1 or 1.2. However, many browsers and servers have retained their support for SSL 3.0 over the years — browsers to support secure connections with old servers and servers to support secure connections with old browsers.