寂寞的時候聽Norah Jones

Continue reading...

WordCamp HK 後記

上星期去了香港的首個 WordCamp。星期日晨早流流去到科學園的巨蛋演講廳,其實也是一大挑戰,哈哈!

雖說香港有很多自架 Blog 都是用 WordPress,但其實並沒有甚麼相關組織,有問題大概就是問 Blogger 朋友幫忙解決。因此預計這個 Wordcamp 大概會看到很


陣營

1. 文明單位: 失蹤。怪人。小說
嘉賓: 陳志華

出版小說的陳志華,還是有點緊張。我想他需要一點時間,去習慣大家把他當成一個作者,除了作品以外,還會問你原因、問你背景、問你意見。

2. 文明單位:
嘉賓:葉輝

七點

從功夫拳腳朝拜到底 《從印度到中國》(Chandni Chowk to China)


電影節當真密食過三番, Bollywood Masala 電影連續第三年上陣. 《從印度到中國》( Chandni Chowk to China ) 是美國華納兄弟 (Warner Bros.) 投資的大製作, 加上首套御准到北京萬里長城拍攝吊威也的電影, 不受注目是騙人的. 勢估不到的是, 這套印片竟然
Continue reading...

什麼都沒有發生,直到世界重新開始

在電影中寶和芳有兩代真愛女性的傳承關係,芳問寶「你真係要學?」的鏡頭,令人想起人魚公主故事裡人魚公主向巫婆討啞藥換雙腳去見王子,不過是個反童話: 是啞公主(窮)學說話去拒絕王子(霉),而傳授的是前代的公

Why 'sender stores message' is easier for spammers than real mail servers

In my first entry on 'sender stores message'schemes for email, I asserted that spammers would have no problem makingsure that their servers are not crushed under the load of everyonetrying to read the spam email from them, yet in SenderStorageProblems Isaid that real mail senders would have such problems.The difference is that the two groups have very different problems, andthe spammers can cheat. Let's look at what the two look like.

Real mail servers of any significant size will be dealing with tensof


關於跑步,村上說的其實是……

因為愛不釋手,不用一星期,便用搭船的時間讀完關於村上春樹的新書『關於跑步 我說的其實是……』,讀完後再將書翻兩翻,發覺尾聲的這段內容頗有意思,於是把它記下來。

『今年冬天可能又會到世界的某個地方去,跑一次


印度老土合家歡《Hum Aapke Hain Kaun...! 》


Bollywood電影絕無中間位置, 喜歡的人會接受電影的騎呢、不合理、甚至愛上定時定候出現的熱爆歌舞. 討厭的人清一色批評為老土、悶蛋、無深度. 兩種心態說明了Bollywood電影的娛樂功能. 閒閒三小時, 有齊七情六慾悲歡離合, 最重要是
Continue reading...

Lady First 專欄 (41)

空中奇遇Craig David


數天前與Lady First仝人晚飯(嗯嗯,難道你以為那三位美女是不吃不喝長期節食做運動的麼?她們的生活就是食買?蒲囉,不過就係唔肥之嘛),艾莉陳懶親切的問我:「陣間要唔要見我個David呀?」

我打了一個突,她的

Why ssh needs to verify host keys

Suppose that your ssh does not check host keys and an attacker has notso much successfully impersonated one of your machines as persuadedyou to connect to his machine instead of yours, without you knowing.How does the attacker 'win'?

We can see the obvious wins by what ssh turns off if you have StrictHostKeyChecking set to 'no' and a key fails to verify. First,the attacker wins immediately if they can get you to type your passwordto their ssh daemon, since they can just have their ssh