Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
HurrdurrHodor
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
HurrdurrHodor
7y ago
<3 Emily Short <3 I should replay Savoir Faire.
2.
▲
by
HurrdurrHodor
8y ago
I am somewhat surprised by the statements about asymmetric crypto algorithms. Given a good library they don't seem more error prone and given many common use-cases they are not significantly slower.
3.
▲
by
HurrdurrHodor
8y ago
Just a guess but maybe they wanted to build this in a way that it would actually get used.
4.
▲
by
HurrdurrHodor
8y ago
1. Click on link. 2. Get huge GDPR banner. 3. Close tab. GDPR, the new productivity booster.
5.
▲
by
HurrdurrHodor
8y ago
Seriously? You want people to switch from software A to software B and you write an article that for the first half of the page sounds like you want them to stop using either of those softwares?
6.
▲
by
HurrdurrHodor
8y ago
Whatever the reasoning: HAHAHAHAHA! No.
7.
▲
by
HurrdurrHodor
9y ago
Actually I think, the misunderstanding is on your side. Unauthenticated DOES mean that the attacker can modify anything without you noticing. You might only notice because you are getting a file that looks like random junk but you wanted it
8.
▲
by
HurrdurrHodor
9y ago
But here's the point: Do you want people to spend their 10 minutes picking good passwords or setting up public key auth or should the spend them switching their server to port 24? Security BY obscurity is bad as the article states and
9.
▲
by
HurrdurrHodor
9y ago
But obscuring may take away time from securing and it adds complexity to the system but systems with less complexity are easier to secure. So you at least have to be careful.
10.
▲
by
HurrdurrHodor
9y ago
I've just tried this and in my case it leads to "cd \~[...]" which obviously does not work.
11.
▲
by
HurrdurrHodor
9y ago
The appropriate way for users to defend themselves is to simply install https-everywhere and check "Block all unencrypted requests". This avoids sslstrip, requires no redirect magic and no HSTS. Although somebody should really pat
12.
▲
by
HurrdurrHodor
9y ago
I have been using http://neo-layout.org/ for years now and it works very well comes out of the box with Linux and does pretty much the same. If you type only in english you will be wasting a few keys because it has german u
13.
▲
by
HurrdurrHodor
9y ago
My high-school math teacher used to say that we have our best ideas for solving problems in the shower and on the toilet. :)
14.
▲
by
HurrdurrHodor
9y ago
Write a crypto library and blog about how great it is. Apply the tools that other people used to find bugs in it and repeat blogging about how great it is. ... In the end you get a library that is slower and smaller (because you left out th
15.
▲
by
HurrdurrHodor
9y ago
TLDR: Crypto library with two claimed advantages: Better usability and smaller code than libsodium. However, it is also slower.
16.
▲
by
HurrdurrHodor
9y ago
I think this needs a bit more motivation (why do I want to know about BDDs) and more pictures. The code is great for playing with things and remembering better but the fundamental concepts would be clearer with more pictures.
17.
▲
by
HurrdurrHodor
9y ago
Well, if you already know which updates are non-breaking, of course you have solved this problem.
18.
▲
by
HurrdurrHodor
9y ago
For sharing code snippets you can just do something like this: alias paste='curl -s -F '\''sprunge=<-'\'' http://sprunge.us | tee >(xclip -selection clipboard)' Which on my system wi
19.
▲
by
HurrdurrHodor
9y ago
"Trace the flow of data from client to network to app to disk to app to network to client etc." How would one go about doing that?
20.
▲
by
HurrdurrHodor
9y ago
I know of lavabit but I want to know what this software does.
21.
▲
by
HurrdurrHodor
9y ago
Can somebody tell me what this actually does? All I see is an MTA and some hand waving.
22.
▲
by
HurrdurrHodor
9y ago
It doesn't work with Firefox, right?
23.
▲
by
HurrdurrHodor
9y ago
"fiddling feels a lot more productive than it actually is" Best thing about this article. Unfortunately he didn't derive anything from this wise statement.
24.
▲
by
HurrdurrHodor
9y ago
A more viable competitor: https://www.n-auth.com/
25.
▲
by
HurrdurrHodor
9y ago
2FA requires 2 authentication factors like a password & a token i.e. your PIN and banking card. It doesn't really have anything to do with where you enter those. https://en.wikipedia.org/wiki/Multi-factor_authe
26.
▲
by
HurrdurrHodor
9y ago
"There’s no indication any customer information was obtained by the attacker. Furthermore, there’s no indication Panic Sync data was accessed." Read: The attacker could have accessed all that data but didn't send me an e-mail
27.
▲
by
HurrdurrHodor
9y ago
Maybe it's not a great idea for software projects but for keeping personal data in git (the author wrote it for dotfiles) it seems brilliant.
28.
▲
Firefox testpilots personality containers
(testpilot.firefox.com)
1 points
by
HurrdurrHodor
9y ago
|
0 comments
29.
▲
by
HurrdurrHodor
9y ago
This would probably be better if each cube had only 6 neighbors because the way it is the areas are pretty large and it gets quite difficult.
30.
▲
by
HurrdurrHodor
9y ago
I'm kind of happy that this is happening. Whatever the legal situation may be this is just wrong and it needs to be fixed. On steam you don't buy games anymore you only buy the right to play them so you cannot resell them. You are
More ›