mirrored image from https://66.media.tumblr.com/fd97db321d6ba38244e8278d8fb1fcc8/tumblr_naffcbPDvv1qzoybuo1_500.jpg without alt text, sorry
Figure 1. mirrored image from https://66.media.tumblr.com/fd97db321d6ba38244e8278d8fb1fcc8/tumblr_naffcbPDvv1qzoybuo1_500.jpg without alt text, sorry.

~ brew install smoked porter on Flickr.

August 16th, 2014 6:12pm

Proximate posts in the Tumblr collection
Newer httpshaming: Evernote checks for update over unencrypted HTTP, and the update packages are also downloaded over HTTP. But it’s signed code, right? What could go wrong? It’s trivially easy to perform a man-in-the-middle attack to prevent future updates from ever being received, or to redirect the user to unsigned or malicious code, that may or may not run. There is a DSA signature on the file at the update URL, and there’s signatures on the files and a certificate OU deep within the app contents… but that all assumes the user can get to the update, and download it securely. Good news for persistent threats, bad news for the millions of Evernote users who want to get critical security updates. This looks easy enough to fix.   (Submitted by Phillip Knoll) 19 August 2014
View my 2 latest photos on Flickr: https://flic.kr/u/2mJ1Jd/aHsk1m48N3 17 August 2014
This post ~ brew install smoked porter on Flickr. 17 August 2014
Older Post #94885483043 16 August 2014
danforth: That’s how I feel about this week. TGIF 16 August 2014
Proximate posts in the General collection
Newer Comment section reserved for Danny Marquardt to give me dat 17 August 2014
View my 2 latest photos on Flickr: https://flic.kr/u/2mJ1Jd/aHsk1m48N3 17 August 2014
This post ~ brew install smoked porter on Flickr. 17 August 2014
Older Twitter post from August 17, 2014, 500812289973288963 17 August 2014
The new pump works! 16 August 2014

Pizza Slow (high quality)

© 2026 gravely