Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
0x0
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
31.
▲
by
0x0
2y ago
I usually avoid logging in to xcode. I prefer to manually configure provisioning profiles and code signing certificates by hand in the developers.apple.com web interface anyways. You can use xcodebuild on the command line to get a signed ip
32.
▲
by
0x0
2y ago
Also worth noting that "_new" is NOT a reserved keyword, but it is sometimes mistakenly used instead of "_blank". Which can lead to funny behavior if you are visiting 2 or more sites making this mistake, as the links cou
33.
▲
by
0x0
2y ago
Looks like the security/integrity of SSL isn't taken too seriously as the build recommends to use a hex editor to replace "_strtoi64" and "_strtoui64" with "functions likely to return 0 such as iswxdigit&q
34.
▲
McLarens and CarPlay
(blog.adambell.ca)
43 points
by
0x0
2y ago
|
11 comments
35.
▲
by
0x0
2y ago
This is particularly interesting as there seems to be, for decades, a general consensus that the problem of text compression is the same as the problem of artificial intelligence, for example https://en.wikipedia.org/wiki&#x
36.
▲
by
0x0
2y ago
Microsoft SQL Server is only available as an x86-64 docker container binary. They actually had a native(?) arm64 docker container under the name "azure-sql-edge", which was (and still is) super useful as you can run it "nativ
37.
▲
by
0x0
2y ago
Is the runtime of this application "a number of minutes greater than the heat death of the universe" to find something that could pass off as matching the target visualhostkey?
38.
▲
by
0x0
2y ago
Isn't the whole point of VisualHostKey in ssh to act as a security mechanism, i.e. "yes this looks like the correct server key" on first use on a new client that doesn't already have the key in known_hosts?
39.
▲
by
0x0
2y ago
I guess if you use this, then the security of your key is only as strong as for how many minutes the bruteforce took (since anyone else could also run the tool and generate their own key matching the desired fingerprint in the same amount o
40.
▲
by
0x0
2y ago
A large chunk of that php code could probably be replaced with a call to https://www.php.net/wordwrap
41.
▲
by
0x0
2y ago
Aha. This was on a laptop. I missed that distinction.
42.
▲
by
0x0
2y ago
Odd, this is not happening here on macOS 15.0.0. Turning bluetooth off either via the system settings app or the menu bar icon shuts off bluetooth immediately with no prompt for me...
43.
▲
by
0x0
2y ago
I guess you could format a diff patch file locally and paste it as a text comment in an issue in their repo...? :P
44.
▲
by
0x0
2y ago
Closed-source applications or games, I'd say.
45.
▲
by
0x0
2y ago
I'd be very surprised if ubuntu has backported the keystroke obfuscation feature (which was introduced in 9.5) to 8.9. When the feature is missing, you're not safe from keystroke interception at all, which is what this bug is all
46.
▲
by
0x0
2y ago
Interesting, I started playing with spotlight and typing in (-20)^21 returns " = 0", which is obviously not correct. And typing in "(-22)^21" gives "-71100888972574851072", but wolfram alpha insists it should b
47.
▲
by
0x0
2y ago
The screenshot in the article shows MD5() is returned as part of the error message from the web server, so it is probably also a part of the original server-side query.
48.
▲
by
0x0
2y ago
The Oral-B app was fun a few years ago when it was fairly lightweight, showed an up-to-date current world events news feed, while logging data into apple health and encouraging a brushing streak. Then they rewrote the entire app and it lost
49.
▲
by
0x0
2y ago
Maybe they should rename the operating system from "Microsoft Windows" to "Microsoft Window".
50.
▲
by
0x0
2y ago
Search in settings in firefox seems to have a bug. Searching for "adver" gives no hits related to this, despite this setting being under a header labeled "Website Advertising Preferences"
51.
▲
by
0x0
2y ago
Patch out for Debian 12; Debian 11 not affected. https://security-tracker.debian.org/tracker/CVE-2024-6387
52.
▲
by
0x0
2y ago
Their web crawler / scraper "ClaudeBot" is the worst semi-legitimate crawler I've ever encountered. Extremely aggressive scraping from a ton of IP addresses with a ton of concurrent accesses, often getting lost in an inf
53.
▲
by
0x0
3y ago
Setting the home directory to a special device node file "/dev/null" sounds like a good way to shoot yourself in the foot, and I've never heard of this practice before. On Debian, at least, it seems like setting the
54.
▲
by
0x0
3y ago
Had to check the article date at first to see if the "-Wanalyzer-infinite-loop" was a play on casually solving the halting problem with a gcc flag!
55.
▲
by
0x0
3y ago
Looks like the Jia Tan OpenPGP key was replaced a few months ago as well: https://github.com/tukaani-project/tukaani-project.github.io...
56.
▲
by
0x0
3y ago
All these older (4.x, 5.0.x etc) releases that were suddenly uploaded a few months ago should probably also be considered suspect: https://github.com/tukaani-project/tukaani-project.github.io...
57.
▲
by
0x0
3y ago
Interesting commit in January where the actual OpenPGP key was changed: https://github.com/tukaani-project/tukaani-project.github.io...
58.
▲
by
0x0
3y ago
Wow, that's a lot of anonymous accounts adding comments there urging for a fast merge! And this "Hans Jansen" guy is apparently running around salsa.debian.org pushing for more updates in other projects as well: https:/
59.
▲
by
0x0
3y ago
Just because macs don't use systemd, doesn't mean the backdoor won't work. The oss-sec post talks about liblzma having backdoors in crc32_resolve() and crc64_resolve() and that it has not been fully reversed. This could perha
60.
▲
by
0x0
3y ago
Homebrew is currently shipping 5.6.1 (and was shipping 5.6.0 as well). Hopefully not affected on mac?
More ›