<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title>Disqus - Latest Comments for markjaquith</title><link>http://disqus.com/by/markjaquith/</link><description></description><atom:link href="http://disqus.com/markjaquith/comments.rss" rel="self"></atom:link><language>en</language><lastBuildDate>Mon, 11 Feb 2019 23:56:41 -0000</lastBuildDate><item><title>Re: Laravel 5.7 From Scratch: Custom Events and Listeners</title><link>https://laracasts.com/series/laravel-from-scratch-2018/episodes/32#comment-4333412173</link><description>&lt;p&gt;Looks like a solution is being developed here: &lt;a href="https://github.com/laravel/framework/pull/27419" rel="nofollow noopener" target="_blank" title="https://github.com/laravel/framework/pull/27419"&gt;https://github.com/laravel/...&lt;/a&gt;&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Mon, 11 Feb 2019 23:56:41 -0000</pubDate></item><item><title>Re: IoT Home Router Botnet Leveraged in Large DDoS Attack</title><link>https://blog.sucuri.net/2016/09/iot-home-router-botnet-leveraged-in-large-ddos-attack.html#comment-2877196820</link><description>&lt;p&gt;How do you know traffic was coming from the routers and not from a compromised device behind the routers? Isn't NAT mostly undetectable from the outside?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Mon, 05 Sep 2016 09:17:27 -0000</pubDate></item><item><title>Re: PHP Revolution: HHVM and WordPress 3.9</title><link>https://kinsta.com/blog/hhvm-and-wordpress/#comment-1348023104</link><description>&lt;p&gt;I've been playing with HHVM and WordPress 3.9 today. Its performance is really impressive. But I don't think it's ready for production use quite yet. For instance, WordPress cookies aren't set properly when using HHVM (you'll be logged in the backend, but not on the front of your site). I opened a ticket for that. &lt;a href="https://github.com/facebook/hhvm/issues/2494" rel="nofollow noopener" target="_blank" title="https://github.com/facebook/hhvm/issues/2494"&gt;https://github.com/facebook...&lt;/a&gt;&lt;/p&gt;&lt;p&gt;But I expect that it'll be ready for tentative production use real soon. The great thing is that it's super simple to switch between PHP-FPM and HHVM... just a one-line change in your Nginx config.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Sun, 20 Apr 2014 23:31:41 -0000</pubDate></item><item><title>Re: Why We Built Pantheon With Containers Instead of Virtual Machines</title><link>https://pantheon.io/blog/why-we-built-pantheon-containers-instead-virtual-machines#comment-1305254065</link><description>&lt;p&gt;Pretty sure you just responded to a spam comment that scraped content from this very blog post. :-)&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Thu, 27 Mar 2014 01:30:13 -0000</pubDate></item><item><title>Re: The npm Blog — npm's Self-Signed Certificate is No More</title><link>http://blog.npmjs.org/post/78085451721#comment-1264983695</link><description>&lt;p&gt;I could maybe understand if it was because of the moderately course language (their house, their rules). If that's the case, they should ask @Rob Colbert if they could asterisk-out those bits and let the comment stand. Because they sure as heck need to be called out on the things Rob called them out on.&lt;/p&gt;&lt;p&gt;But then, @Sarah Nadav used even stronger language, and her comment is still standing.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Fri, 28 Feb 2014 16:37:35 -0000</pubDate></item><item><title>Re: No, Rubbing Vicks Vaporub On Your Feet Does Not Prevent Coughing</title><link>http://www.geekosystem.com/vicks-rubbing-feet/#comment-1125171042</link><description>&lt;p&gt;You seem to be confused about this. Menthol is an effective cough suppressant. I don't think there's any doubt about that. Try this as an experiment: put VapoRub on a child's feet. And then put your cheek to their cheek, so your head is the same distance from their feet as their head. Inhale. Can you smell the menthol? See, children's feet aren't very far away from their head. For the purposes required, it's close enough.&lt;/p&gt;&lt;p&gt;The reason for putting it on their feet instead of their chest is practical. You can put socks on their feet, denying them access to the VapoRub, and making for easy clean up in the morning. When it's on their chest, they have easier access to it, and can spread it around, making a mess.&lt;/p&gt;&lt;p&gt;I'm the most skeptical person you'll ever find. I think you got overenthusiastic here.&lt;/p&gt;&lt;p&gt;Now, as stated in the Facebook status, yeah, that's a bit much. "100% effective"? Almost nothing is 100% effective. But if menthol works as a cough suppressant, and if the child still has access to menthol vapors when the VapoRub is on their feet, maybe it's not a crazy suggestion.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Fri, 15 Nov 2013 18:16:18 -0000</pubDate></item><item><title>Re: Developing for WordPress? Keep your shit secure</title><link>http://mikejolley.com/2013/08/keeping-your-shit-secure-whilst-developing-for-wordpress/#comment-1002613508</link><description>&lt;p&gt;I do agree with you in principle. The issue is that we usually don't have access to a good caching layer that could be used at this scale. On client sites where you control the stack, you might be able to make a different decision.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Thu, 15 Aug 2013 14:50:02 -0000</pubDate></item><item><title>Re: Developing for WordPress? Keep your shit secure</title><link>http://mikejolley.com/2013/08/keeping-your-shit-secure-whilst-developing-for-wordpress/#comment-1002177280</link><description>&lt;p&gt;There is no faster-but-still-secure method in WordPress core. It's an expensive thing because HTML is not regular. Regular expressions can't parse HTML. If the normal avenues of injecting the data are protected, then you are good. If someone else has access through some other flaw, then they could just compromise posts or comments anyway, as core does KSES on save for those.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Thu, 15 Aug 2013 08:14:12 -0000</pubDate></item><item><title>Re: Developing for WordPress? Keep your shit secure</title><link>http://mikejolley.com/2013/08/keeping-your-shit-secure-whilst-developing-for-wordpress/#comment-1001881940</link><description>&lt;p&gt;Nice post! Do note that KSES functions shouldn't be run on output on the front end… they’re too slow. If you need to allow *some* HTML, then use KSES on save and make DARN sure that there is no other way to get data into that storage location.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Thu, 15 Aug 2013 01:42:06 -0000</pubDate></item><item><title>Re: Sass vs. SCSS: Which Syntax is Better? - Articles</title><link>http://thesassway.com/articles/sass-vs-scss-which-syntax-is-better#comment-1001380472</link><description>&lt;p&gt;So Sass is better, but SCSS will win? :-)&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Wed, 14 Aug 2013 16:47:22 -0000</pubDate></item><item><title>Re: CDN Serving Dynamic PHP Pages</title><link>https://lesterchan.net/blog/2013/08/12/cdn-serving-dynamic-php-pages/#comment-999654112</link><description>&lt;p&gt;If you can have multiple rules, you could also explicitly whitelist your /wp-content/ directory. Pretty cool that you can define rules that run at the CDN level! Is this strictly a "call us for pricing" add-on?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Tue, 13 Aug 2013 17:35:46 -0000</pubDate></item><item><title>Re: Tracking: The NSA's Secret Surveillance Programs</title><link>http://www.fastcompany.com/3012652/tracking/tracking-the-nsas-secret-surveillance-programs#comment-924716400</link><description>&lt;p&gt;Not if it's encrypted. All your Facebook browsing is over SSL, so it's not expected that anyone would be able to see what was going on, even if they intercepted the traffic.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Sun, 09 Jun 2013 20:47:35 -0000</pubDate></item><item><title>Re: Bradycardia &amp;amp; Cardiac Arrest for WordPress 3.6</title><link>https://katz.co/wordpress-heartbeat/#comment-895794924</link><description>&lt;p&gt;Google has the ability to write servers configured specifically for a persistent connection. We don't, so we have to poll.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Mon, 13 May 2013 08:19:21 -0000</pubDate></item><item><title>Re: Principal Shuts Down Cosmetology Class Because One of the Students &amp;#8216;Looked&amp;#8217; Gay</title><link>http://www.patheos.com/blogs/friendlyatheist/2012/09/14/principal-shuts-down-cosmetology-class-because-one-of-the-students-looked-gay/#comment-651949401</link><description>&lt;p&gt;Maybe if Kwamane tries to attend the principal's church, he'll shut that down, too.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Sat, 15 Sep 2012 23:25:25 -0000</pubDate></item><item><title>Re: How to detect if a webfont really loaded II</title><link>http://www.atomicjetpacks.com/blog/8#comment-638309244</link><description>&lt;p&gt;It probably should be fontDetect.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Mon, 03 Sep 2012 00:42:40 -0000</pubDate></item><item><title>Re: A Ballot Measure in Florida Could Give Taxpayer Money to Religious Schools</title><link>http://www.patheos.com/blogs/friendlyatheist/2012/08/23/a-ballot-measure-in-florida-could-give-taxpayer-money-to-religious-schools/#comment-628348129</link><description>&lt;p&gt;I'm completely in support of blocking the state from directly funding religious institutions. But the anti-school-choice talk by AU is a complete tangent and has nothing to do with state endorsement of religion. There are many ways that a voucher or refund program could be structured to avoid state endorsement of religion. And it shouldn't at all be a surprise that public schools want to continue receiving money for students who don't go to their school. Free money, man.&lt;br&gt;&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Sat, 25 Aug 2012 03:29:24 -0000</pubDate></item><item><title>Re: My 10 Most Useful Shell Commands // Plasticmind Blog</title><link>http://plasticmind.com/code/10-most-useful-shell-commands/#comment-625839821</link><description>&lt;p&gt;Note that if you're not using compression, you shouldn't use file redirection for mysqldump output. Use the -r switch to specify an outfile. Otherwise it garbles some characters.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Wed, 22 Aug 2012 12:59:10 -0000</pubDate></item><item><title>Re: Hacked Reuters site had outdated WordPress install</title><link>http://itpixie.com/2012/08/reuters-hacked-via-outdated-wordpress-install-real/#comment-613329664</link><description>&lt;p&gt;It is currently unknown how the attackers gained access to their site. Reuters isn't saying. While it is true that they were running an out-of-date version of WordPress, that doesn't mean that's how the attackers got in. Often, attackers get in some other way, and then once inside, begin looking for WordPress installs.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Wed, 08 Aug 2012 08:00:09 -0000</pubDate></item><item><title>Re: Rogue Ad Attempted to Redirect Wired Readers</title><link>http://www.wired.com/threatlevel/2012/04/rogue-ad-wired/#comment-493884958</link><description>&lt;blockquote&gt;at no time were any users exposed to potentially infectious malware&lt;/blockquote&gt;&lt;p&gt;&lt;/p&gt;&lt;p&gt;Can you really say that for sure? If it was redirecting to third party sites, those sites could have had malware.&lt;/p&gt;&lt;p&gt;This is and has been a huge problem with advertising networks. Everyone wants to throw in their own custom tracking code. So anything goes. Ad networks' response is to be reactive. If an ad misbehaves, they'll take it down. In the meantime, the reputations of all the sites where that ad was being served are being tarnished.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Tue, 10 Apr 2012 23:02:53 -0000</pubDate></item><item><title>Re: Why Your Klout Score Doesn&amp;#8217;t Matter</title><link>http://butyoureagirl.com/13340/klout-i-quit-you/#comment-457641438</link><description>&lt;p&gt;Klout is just a tacky idea. Gamification is not beneficial when publicly applied to communications. You don't need a big orange number to tell you whether you value your communications and your social network interactions. That's why I quit.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Tue, 06 Mar 2012 03:21:01 -0000</pubDate></item><item><title>Re: A better tool for cubic-bezier() easing</title><link>http://lea.verou.me/2011/09/a-better-tool-for-cubic-bezier-easing/#comment-447708820</link><description>&lt;p&gt;It looks like that Webkit bug was fixed: &lt;a href="https://bugs.webkit.org/show_bug.cgi?id=45761" rel="nofollow noopener" target="_blank" title="https://bugs.webkit.org/show_bug.cgi?id=45761"&gt;https://bugs.webkit.org/sho...&lt;/a&gt;&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Fri, 24 Feb 2012 04:16:43 -0000</pubDate></item><item><title>Re: Judge Refuses to Shut Down Online Market for Used MP3s</title><link>http://www.wired.com/threatlevel/2012/02/pre-owned-music-lawsuit-2/#comment-432217901</link><description>&lt;p&gt;Apple does not sell MP3 files through iTunes.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Tue, 07 Feb 2012 14:53:54 -0000</pubDate></item><item><title>Re: Anonymous for Good</title><link>/2012/01/24/anonymous-for-good/#comment-422021561</link><description>&lt;p&gt;Idley [sic]?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Fri, 27 Jan 2012 01:03:40 -0000</pubDate></item><item><title>Re: Groups Petition for Right to Hack the Xbox, Back Up DVDs</title><link>http://www.wired.com/threatlevel/2011/12/dmca-exemption-requests/#comment-380151330</link><description>&lt;p&gt;Handbrake doesn't itself have the ability to decrypt DVDs.You need decrypting software already present on your computer for it to work. That's how they thread that legal issue.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Tue, 06 Dec 2011 03:04:19 -0000</pubDate></item><item><title>Re: The three biggest myths about women in tech | VentureBeat</title><link>http://venturebeat.com/2011/10/13/the-three-biggest-myths-about-women-in-tech/#comment-352182109</link><description>&lt;p&gt;There's no such thing as a "diverse" candidate, in terms of demographics. Every individual is a single data point. Diversity is a quality of the employee/candidate pool, not of individuals.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Mark Jaquith</dc:creator><pubDate>Mon, 31 Oct 2011 14:48:28 -0000</pubDate></item></channel></rss>