This really doesn't make sense to me. While it may work for very young children, it seems broken for anyone who has their own gmail address. Enter my own password to turn off safe search? sure!
- Chris Schrier
BSoD Belt Buckle: A Problem Has Been Detected And Your Pants Have Been Shut Down To Prevent Damage To Your Privates - http://www.geekologie.com/2009...
essentially, while the best place for content is above the fold, todays users are so used to scrolling that it does not make a large negative impact. There is some great rationale and tips, though.
- Chris Schrier
essentially, while the best place for content is above the fold, todays users are so used to scrolling that it does not make a large negative impact. There is some great rationale and tips, though.
- Chris Schrier
Sorry - I ran out within a few seconds thanks to Twitter. If I get more I will check to see if any of you still need one. Given the volume of people who now have accounts I'm sure you can find one. :)
- Chris Schrier
schrierc: Wishing everyone I follow in Google Reader allowed their icon to be visible so I could have an avatar without adding them to chat. - http://twitter.com/schrier...
On September 24, 2009, Cold Stone Creamery will host the “World’s Largest Ice Cream Social.” From 5:00 p.m.-8:00 p.m., you can stop by for a free 3-oz. serving of Jack’s creation—sweet cream ice cream mixed with brownie, sprinkles, and fudge. Sounds yummy. For those of you who don’t know, the event is a fundraiser for the Make-A-Wish foundation.
- Chris Schrier
Elance security breach: We recently learned that certain Elance user information was accessed without authorization, including potentially yours. *sigh*
The data accessed was contact information -- specifically name, email address, telephone number, city location and Elance login information (passwords were protected with encryption). This incident did NOT involve any credit card, bank account, social security or tax ID numbers.
- EricaJoy
They totally could have but I'm fairly certain I used a throwaway password for Elance. I'll have to double check when I get home.
- EricaJoy
from IM
Nah, MD5 hashes are one-way, GENiE, if I remember correctly. You can't derive the source data from the hash itself, but it's possible to produce hash collisions "easily" in some cases, and you don't know if they're salting it, or using other data in addition to the actual password in an unknown form to produce it.
- Tyson Key
(Feel free to correct me on that, but that it's the impression I've got after reading stuff about MD5 ages ago, and experimenting with md5sum)
- Tyson Key
However, if the security was sloppy enough that they were breached (and didn't notice for this long) I doubt they were doing anything aside from basic MD5 encryption. Hope I'm wrong though.
- EricaJoy
from IM
I bet they're probably using weak passwords on their database servers, and have scripts infested with XSS and SQL injection attack vectors, but I've never even visited their site to confirm.
- Tyson Key