Jasvir Nagra

@jasvir

Formerly Head of Security Product , , author of Surreptitious Software, creator of Caja. I love good food, fine wine & awesome JavaScript.

Vrijeme pridruživanja: listopad 2008.

Tweetovi

Blokirali ste korisnika/cu @jasvir

Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @jasvir

  1. Prikvačeni tweet
    9. ruj 2019.

    I like & have been playing with some corner cases. Here's a fun one: Implied by "TS is a superset of JS" is that the subset behaves the same. So: Is it possible to write valid JS which runs differently when interpreted as TS? (A: Yes!)

    Poništi
  2. proslijedio/la je Tweet
    prije 10 sati

    Google Analytics, contributing to poor security literacy by talking about "encryption levels" and then saying they require SHA-256 and suggest you add a salt. Later suggesting salting is an alternative to hashing, which is similarly nonsensical.

    Poništi
  3. prije 17 sati

    If Alan Turing had built and started running a nine 9s uptime system in the early 40s, the expectation is it would have been down for about half a minute over the last 80 years.

    Poništi
  4. 2. velj

    Mood: If you, like me, regularly accidentally touch your yubikey on the terminal, join me in the safest Russian Roulette ever: echo "Tap your yubikey" && echo alias `head -c 12 <&0``head /dev/urandom | tr -dc a-z | head -c 32`='"rm -rf ~"' >> ~/.bashrc

    Poništi
  5. proslijedio/la je Tweet
    31. sij

    Google: We want to deprecate and freeze the User-Agent string. Also Google: You may need to patch your servers to serve different cookies based User-Agent after SameSite-pocalypse.

    Poništi
  6. 30. sij

    You can all get ready to cue the garbage collection puns - someone stole the literal trash bin from my house. I don't understand why someone might do this but unused objects are going to just accumulate now.

    Poništi
  7. proslijedio/la je Tweet
    30. sij

    The move by Chrome to make SameSite=Lax the default seems to have already triggered the expected response: many ad vendors already blanket-setting SameSite=None on most of their cookies (and some non-ad-vendors as well, generally presumably because they expect to be iframed)

    Prikaži ovu nit
    Poništi
  8. 30. sij

    I have not logged in in years but I have this horrific feeling they would have been somehow associating with my unlogged-in account my secret night time love of Perl. Unfortunately it's true my capability PL friends - I secretly love Perl.

    Poništi
  9. 30. sij

    I can't wait for 's take on the new characters.

    Prikaži ovu nit
    Poništi
  10. 30. sij

    I'm a Unicode fan & specs in general. It's beautifully written. But... unicode is headed feels like an alternate history novel where the language of the dominant culture is hieroglyphics. Future: Combining characters of slap/punch/high five of "woman in tux" & "man in veil".

    Prikaži ovu nit
    Poništi
  11. 29. sij

    Luckily for what I want it to do, it doesn't need it and I can just remove those permissions from it's manifest & massage the code a bit. I still wish I could do that from the UI & have the app get a mock instead so it wouldn't break.

    Prikaži ovu nit
    Poništi
  12. 29. sij

    After avoiding extensions on my personal account for all this time, the first extension I decide is so awesome that I want it there - of course asks for:

    Prikaži ovu nit
    Poništi
  13. 27. sij

    Δ My new team at just managed to convince me that my opinion of CSP has been overly pessimistic & in spite of it's warts, they are real world cases where the mitigation it provided was worth the pain of deployment.

    Poništi
  14. 27. sij

    I cannot tell what parts of this thread are trolling and what part serious but it's a worry when you realize the npm install base of core-js is ... Weekly Downloads: 23,084,948.

    Poništi
  15. proslijedio/la je Tweet
    22. sij

    Earlier today we published the details of a set of vulnerabilities in Safari's Intelligent Tracking Prevention privacy mechanism: . They are... interesting. [1/9]

    Prikaži ovu nit
    Poništi
  16. 21. sij

    The new google search UI results makes everything look like an ad to me. I wonder if this will initially make me hesitate more before clicking things, and then later once I'm used to it, more likely to click ads.

    Poništi
  17. 20. sij

    You'll notice that never talks about the thread count of the fabric of spacetime. Seems kinda suspect to me.

    Poništi
  18. 15. sij

    that because it has greek roots, "octopodes" maybe a justifiable plural for "octopus" vs the latin "octopi". Also "plural for jesus" has 25M Google hits. Also occasionally the NSA will find a bug so scary it'll rather report it vs save & exploit it. So an educational day.

    Poništi
  19. 12. sij

    I like going for runs and letting my mind wander of silly problems of little consequence. Today's mental math: How much treasure would pirates need to accumulate before it was worth sailing to some remote island to bury it rather than spending it all in one go.

    Poništi
  20. proslijedio/la je Tweet
    5. sij

    5pm in the middle of New Zealand summer, 2000km from the fires in Australia. This photo was taken by a friend in Dargaville.

    Prikaži ovu nit
    Poništi
  21. proslijedio/la je Tweet

    There's been loads of things to celebrate in the last ten years. Watch my full round up of the decade here: And catch 2019 Best Bits episode on Sky One tonight at 9pm.

    Poništi

Čini se da učitavanje traje već neko vrijeme.

Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.

    Možda bi vam se svidjelo i ovo:

    ·