Live data from Hacker News

Gibson Research Corporation's Ultra-High Entropy Pseudo-Random Number Generator

grc.com

51–59 of 59 posts

Re: Gibson Research Corporation's Ultra-High Entropy Pseudo-Random Number Generator

#52
post #33

If the maker of ShieldsUp! claims anything, I am deeply, deeply, unconvinced.

Forget "ShieldsUp!" This is the guy who still sells SpinRite for $90 when it hasn't seen an update since 2004. It's old enough to vote at this point and Steve Gibson is always spouting off blatant lies about how it's great for recovering SSDs. He's claimed that it can magically read uncorrectable sectors on modern drives (SATA, not SAS, no SCSI READ LONG here and no ancient IDE drives that still supported READ LONG f…

Doesn't sound like you have used Spinrite, but if you don't think it's worth the money don't buy it. Not sure what makes you think a developer has to reduce the price of their software, just because it's old. Adobe has done no such thing. The software still does what it did when it was first made. If you have a bug report, file it, my guess is that you don't.

Re: Gibson Research Corporation's Ultra-High Entropy Pseudo-Random Number Generator

#53

Earlier quoted context omitted.

What is your source for this "information"? He brought it up in 2001, the year XP was released[1]. Microsoft fixed it three years later in SP2. XP was EOL'ed in 2009[2]. [1] https://en.wikipedia.org/wiki/Steve_Gibson_(computer_program... [2] https://en.wikipedia.org/wiki/Windows_XP

My apologies for misstating this. According to the internet archive, he stopped complaining about this problem sometime in 2008, a mere four years after the raw sockets restrictions were added to XP. Do keep in mind, however, that his entire reason for continuing to publicize this was because it allowed him to continue making foolish claims like "Microsoft Does Not Understand Security," and to pretend that the eventu…

I always imagine all the Gibson haters are still stuck on this drama from the XP days. Not sure why it was so polarizing, but for what it's worth I don't think "Microsoft understands security." It's not any one person or one thing, it's the culture. It's the laissez-faire attitude. It's the lack of investment. And the ubiquity of their software compounds all of it.

Re: Gibson Research Corporation's Ultra-High Entropy Pseudo-Random Number Generator

#54

Earlier quoted context omitted.

Touch grass.

Are you upset because I can't tell if a "DNS speed finer" is a real 'tool'? Wouldn't that just be pinging a list of dns servers?

Yep, that's what it does. A person can just use whatever DNS is provided by their ISP, which is the fastest in some cases. Or they can test and find out for sure.

Re: Gibson Research Corporation's Ultra-High Entropy Pseudo-Random Number Generator

#55
post #33

Earlier quoted context omitted.

Forget "ShieldsUp!" This is the guy who still sells SpinRite for $90 when it hasn't seen an update since 2004. It's old enough to vote at this point and Steve Gibson is always spouting off blatant lies about how it's great for recovering SSDs. He's claimed that it can magically read uncorrectable sectors on modern drives (SATA, not SAS, no SCSI READ LONG here and no ancient IDE drives that still supported READ LONG f…

Doesn't sound like you have used Spinrite, but if you don't think it's worth the money don't buy it. Not sure what makes you think a developer has to reduce the price of their software, just because it's old. Adobe has done no such thing. The software still does what it did when it was first made. If you have a bug report, file it, my guess is that you don't.

And I doubt you've ever bought the Brooklyn Bridge but that doesn't mean you can't call out the con artist trying to sell it. The price of the snake oil isn't the problem. The problem is that he's scamming people out of money making a bunch of claims that fundamentally do not apply to modern drives. If you have a MFM hard drive that still spins after all this time and you want to do whatever low level interleave Spinrite supports on it then sure, it probably works just as well as it did back when that hardware didn't qualify as antique. Most people getting suckered into buying Spinrite aren't going to have anything that ancient and for what Spinrite can actually do on somewhat modern drives, you might as well just use ddrescue, it'll do a better job.

> If you have a bug report, file it, my guess is that you don't.

This is extra hilarious in light of the fact that there have been plenty of bug reports against 6.0 reported well over a decade ago. Steve promised they'll be fixed in 6.1 which is totally coming out any day now.

Re: Gibson Research Corporation's Ultra-High Entropy Pseudo-Random Number Generator

#56

Earlier quoted context omitted.

My apologies for misstating this. According to the internet archive, he stopped complaining about this problem sometime in 2008, a mere four years after the raw sockets restrictions were added to XP. Do keep in mind, however, that his entire reason for continuing to publicize this was because it allowed him to continue making foolish claims like "Microsoft Does Not Understand Security," and to pretend that the eventu…

I always imagine all the Gibson haters are still stuck on this drama from the XP days. Not sure why it was so polarizing, but for what it's worth I don't think "Microsoft understands security." It's not any one person or one thing, it's the culture. It's the laissez-faire attitude. It's the lack of investment. And the ubiquity of their software compounds all of it.

> I always imagine all the Gibson haters are still stuck on this drama from the XP days.

Has he done anything of note since? I mean, other than the extremely timely spinrite podcast? Honest question; I browsed through the website and it still seems to be mostly filled with questionable security alarmism from the 200x era.

Re: Gibson Research Corporation's Ultra-High Entropy Pseudo-Random Number Generator

#57

Earlier quoted context omitted.

I always imagine all the Gibson haters are still stuck on this drama from the XP days. Not sure why it was so polarizing, but for what it's worth I don't think "Microsoft understands security." It's not any one person or one thing, it's the culture. It's the laissez-faire attitude. It's the lack of investment. And the ubiquity of their software compounds all of it.

> I always imagine all the Gibson haters are still stuck on this drama from the XP days. Has he done anything of note since? I mean, other than the extremely timely spinrite podcast? Honest question; I browsed through the website and it still seems to be mostly filled with questionable security alarmism from the 200x era.

SQRL and SpinRite are current, and his main works. SpinRite has a new version on the horizon supporting UEFI.

Shields Up is timeless, but doesn't do IPv6 and probably never will. There are some smaller apps that were done recently, less notably. Security Now podcast is ongoing.

Re: Gibson Research Corporation's Ultra-High Entropy Pseudo-Random Number Generator

#58
post #23

Hrm, yea, sorry Steve but your dodgy practices mean that I'm not going to touch this with a barge pole.

My guess is that you didn't need it anyway, and we didn't need your baseless ad hominem.

Baseless? You clearly know nothing about Steve Gibson then.

Re: Gibson Research Corporation's Ultra-High Entropy Pseudo-Random Number Generator

#59
post #58

Earlier quoted context omitted.

My guess is that you didn't need it anyway, and we didn't need your baseless ad hominem.

Baseless? You clearly know nothing about Steve Gibson then.

I welcome the opportunity to be enlightened. I can see people are mad about something, but usually that's the extent of it. Someone complained that there are no discounts on spinrite, even though it's old. Some people talk about how much salt you take Steve's words with.

I have yet to read anything that explains the haters that come out of the woodwork with the shit posts any time he pops up.

Post reply on HN