Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
JackC
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
25 ms
·
211.
▲
by
JackC
10y ago
Previous discussion of this article when it was hosted at Medium: https://news.ycombinator.com/item?id=12122557
212.
▲
by
JackC
10y ago
Suggestion: could you provide an example submission, which is ideal for what you're looking for except for not being underhanded? Benefits: - More approachable to mess around with for newbies -- download the example and try to break it
213.
▲
by
JackC
10y ago
Could we bootstrap this by starting with support in password manager browser plugins, rather than better UI support in browsers? Say Lastpass, KeePass, and 1Password agree to support an open public-key auth protocol, where during signup if
214.
▲
by
JackC
10y ago
Harvard Library Innovation Lab | Ruby+Javascript Developer | Boston/Cambridge, MA | onsite | full time The Library Innovation Lab is a research lab and nonprofit startup shop nestled in the Harvard Law School Library. We're a smal
215.
▲
by
JackC
10y ago
Harvard Library Innovation Lab | Ruby+Javascript Developer | Boston/Cambridge, MA | onsite | full time The Library Innovation Lab is a research lab and nonprofit startup shop nestled in the Harvard Law School Library. We're a smal
216.
▲
by
JackC
10y ago
Harvard Library Innovation Lab | Ruby+Javascript Developer | Boston/Cambridge, MA | onsite | full time The Library Innovation Lab is a research lab and nonprofit startup shop nestled in the Harvard Law School Library. We're seekin
217.
▲
by
JackC
10y ago
I think the point is that this would run in a document belonging to the LastPass extension -- not that it would run in javascript injected into the target site. The same attack you describe could be applied to basically any javascript you c
218.
▲
by
JackC
10y ago
Fixed -- thanks.
219.
▲
by
JackC
10y ago
Python/Django developer | Harvard Library Innovation Lab | Cambridge/Boston, MA | Full-time | Onsite The Harvard Library Innovation Lab is a nonprofit startup shop hiding inside the world’s largest academic law library. One of our
220.
▲
by
JackC
10y ago
Public service announcement: if you install Orbot, you can route traffic for any Android app through Tor. https://www.torproject.org/docs/android.html.en
221.
▲
by
JackC
10y ago
I think this is the bug for implementing a sidebar API: https://bugzilla.mozilla.org/show_bug.cgi?id=1208596 It doesn't seem to be getting much traction so far -- maybe jump in and encourage? Chromium has wontfix-ed th
222.
▲
by
JackC
11y ago
> Is that really the first criticism that comes to mind when discussing this very specific endeavor? This is how Show HN works. Someone makes a thing -- a form to collect data. Someone else finds that it's missing options they would
223.
▲
by
JackC
11y ago
I think hengheng is talking about the 50-megapixel 5DS, released in June 2015: http://www.dpreview.com/reviews/canon-eos-5ds-sr
224.
▲
by
JackC
11y ago
> Think about how it works with other legal citations. "Fed. R. Civ. P. 12(b)(6)." means something to a lawyer and is irrespective of where they would physically find that court rule to read. Yeah! When I first started up with
225.
▲
by
JackC
11y ago
Nope -- other than, it's a decision that was made before I got there and there hasn't been a reason to change.
226.
▲
by
JackC
11y ago
Yeah, this is a basic problem with the web as it works now -- Perma's long-term storage can and will be decentralized behind the scenes, but control over DNS routing is inherently centralized. I don't really know a way around this
227.
▲
by
JackC
11y ago
Thanks -- typo will be fixed on our next push.[1] There's limits to how open we can be with data, because the service is used for e.g. court opinions that aren't published yet. But for public links we're working on API, Memen
228.
▲
by
JackC
11y ago
Hi! I work on Perma.cc at the Harvard Library Innovation Lab. For what it's worth, the way I think about permanence as a lawyer and programmer is that nothing is really permanent. We have court decisions from hundreds of years ago, for
229.
▲
by
JackC
11y ago
One thing I'd like to better understand about cMix is the practical implications for flow analysis attacks (watching who participates in each round and trying to correlate senders and receivers based on participation in the same rounds
230.
▲
by
JackC
11y ago
To be specific about my claim: throwing away the earlier version and replacing it with the argon-wrapped version cannot make the user's original password easier to recover, because it adds no new information about the password. To co
231.
▲
by
JackC
11y ago
My favorite way would be to store password information as a hash chain, so old users can be immediately upgraded to the latest method while new users just use the latest. For example, Django currently stores its passwords in a single databa
232.
▲
by
JackC
11y ago
Harvard Library Innovation Lab, Harvard Law School | Cambridge/Boston, MA | Full-time | Onsite The Harvard Library Innovation Lab is seeking a devops engineer. We're a small startup shop embedded in the world's largest academ
233.
▲
by
JackC
11y ago
It sounds like that machine gets one page every 11 seconds -- maybe 360 per hour? We're getting more like 8,000 per hour. The rule of thumb apparently is, best case, books you can't cut the binding off cost 5-8x as much to scan as
234.
▲
by
JackC
11y ago
So we're storing non-compressed 300dpi color scans of every page, as well as the original shrinkwrapped books out in a saltmine somewhere -- we're not losing any data. There's a whole separate problem of turning those scans i
235.
▲
by
JackC
11y ago
Bottom line: everything becomes public domain after eight years. Before then, you'll be able to search/view/download up to 500 cases per day through either a web interface or API. As far as I know there's no licensing on
236.
▲
by
JackC
11y ago
I work at the Harvard Library Innovation Lab with the folks who are making this happen. Super excited that it's finally public. If anyone has questions I'm happy to dig up answers. Here's how big this is: we don't even k
237.
▲
by
JackC
11y ago
I wonder how easy it is. Google says they require 1000 "Active visitors." So you need to not only create 1000 fake accounts to target a single real individual, but run 1000 undetected clickfraud bots (and then pay out on your own
238.
▲
by
JackC
11y ago
Glad to see I'm not the only one whose primary concern is tracking. I do not want you to build a dossier of everywhere I go on the web. I don't want to be tracked by dozens of shady javascript includes on each page, the way it is
239.
▲
by
JackC
11y ago
So, just for example, loading artofmanliness.com allows 14 different third-party companies to track your browsing history. There's more to fixing this than just putting in work to manage ad inventory -- we need a system that doesn'
240.
▲
by
JackC
11y ago
> What I think might be a good idea is to convert old formats/format versions into newer smaller formats/format versions inside a VM. Yeah, I like this. Like LLVM for fonts. Generate an intermediate representation inside a sand
More ›