Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Leace
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
31.
▲
by
Leace
7y ago
format=flowed is a reasonable middle-ground: https://joeclark.org/ffaq.html
32.
▲
by
Leace
7y ago
Subscribe to this issue: https://github.com/mozilla-mobile/fenix/issues/5630
33.
▲
by
Leace
7y ago
Extensions doesn't work. Initially they thought it was a great idea but after some backlash Mozilla decided to add some popular ones: https://github.com/mozilla-mobile/fenix/issues/5630
34.
▲
by
Leace
7y ago
Yes, not to mention when you want to share the link in DDG you share the original link directly but in Google you'd share the redirector link. Given Google's scale they probably don't care about the long tail of technical use
35.
▲
by
Leace
7y ago
> I switched my iPhone to Duck Duck Go over the last few days simply because I hate hate HATE getting linked to Reddit AMP pages from Google. Funny thing because I also switched to DuckDuckGo to avoid AMP on mobile and stayed on DDG for
36.
▲
by
Leace
7y ago
> What do you mean "all parties"? They're excluding at least one party - nVidia users. I mean all parties that implement the standard protocol. It's rather nVidia that's not interested in giving their users a cha
37.
▲
by
Leace
7y ago
> I have read this and I don't understand why Wayland developers don't want to write an adapter for NVidia's proprietary API. If you're NVidia user you're justified to feel bad about this entire fiasco but rememb
38.
▲
by
Leace
7y ago
> This would be a good time to mention that sway doesn't support the nvidia proprietary driver It's rather nvidia proprietary driver that doesn't support standard Wayland protocols and thus doesn't work with Sway not
39.
▲
by
Leace
7y ago
That's really surprising as the beta link is on the login page: https://mail.protonmail.com/login :)
40.
▲
by
Leace
7y ago
> Still sad about the loss of the XMPP service a few years ago though. XMPP pre-Conversations.im was pretty bad anyway but Fastmail could review their stance given some other mail providers re-enabling modern XMPP: https://mai
41.
▲
by
Leace
7y ago
Fastmail is a direct competitor to Gmail. That is Fastmail is Gmail but different. Fastmail is opposed to E2E e-mail encryption as this makes some of their features impossible (e.g. full text e-mail search). Protonmail on the other hand has
42.
▲
by
Leace
7y ago
> IMO we need something simpler, websocket and JSON based. Why JSON? JSON is the packaging format of this decade but remember when XMPP was conceived XML was the packaging format of that decade. Maybe CBOR would be more appropriate. No n
43.
▲
by
Leace
7y ago
XMPP were lacking "gamification" tools that'd encourage people to do better. Eg. for TLS there is https://www.ssllabs.com/ssltest/ but for XMPP it was only recently that https://compliance.con
44.
▲
by
Leace
7y ago
> I mean how many of you stick with this test driven development practice consistently? I do for some projects. For example currently I'm working on a project that has a high test coverage and most bugs and enhancements start first
45.
▲
by
Leace
7y ago
New firmware is quite interesting if one is using OpenPGP: it supports newer algorithms (25519) and key attestation (proofs that the key was generated in hardware, useful for enterprises). Still, PIV applet has some more advantages (like do
46.
▲
by
Leace
7y ago
> Optional: verify public key on Keybase. For organizations publishing employee keys via Web Key Directory can also be an additional signal that the key is trustworthy. It's also quite simple: for example exporting the key 5C090ED73
47.
▲
by
Leace
7y ago
Nope, you were right. It's for USB MITM. I guess the assumption is that the keyboard is wired in a different way (a laptop?) or in wireless scenarios (NFC Yubikey).
48.
▲
by
Leace
7y ago
Yes but do mind hardware bugs that affected YubiKeys such as https://magicofsecurity.com/roca-critical-vulnerability-in-i... Also I'd strongly encourage generating encryption subkey in software (offline, air-gapped mac
49.
▲
by
Leace
7y ago
I used them too and they're fantastic. I even bought a couple of licenses for IrfanView although I didn't need them. Too bad there's no Linux version.
50.
▲
by
Leace
7y ago
> Is there any credit card size yubikeys yet? Nope, I'd like to see one too. In the mean-time Fidesmo card can replace some usages of Yubikey (U2F, OpenPGP): https://shop.fidesmo.com/products/fidesmo-card-2-0
51.
▲
by
Leace
7y ago
> 1) This is an upgrade to the touch sensitive button that's on all YubiKeys today. The reason you have to touch the key is so that if an attacker gains access to your computer with an attached Yubikey, they will not be able to use
52.
▲
by
Leace
7y ago
> - The administrator can enforce use of hardware-backed keys [1] This is also available on PKCS/OpenPGP for some tokens (and not only for auth keys). See: https://developers.yubico.com/PIV/Introduction/PIV
53.
▲
by
Leace
7y ago
> I wanted to find out how secure people think this is It depends on what do you compare this with. PKCS/OpenPGP smartcard is protected by a PIN (6 digits min, 3 tries and it locks itself out) and then touch on each use (with Yubike
54.
▲
Let's Encrypt: Support Ecdsa Subject Keys
(github.com)
1 points
by
Leace
7y ago
|
0 comments
55.
▲
by
Leace
7y ago
> Accurate URLs verified by PGP. What does it mean? I'm not seeing any PGP clearsigned text in there...
56.
▲
by
Leace
7y ago
Not the poster but it may be useful to know that Andrew_nenakhov is a CEO of company that provides a Jabber messanger (Xabber).
57.
▲
by
Leace
7y ago
Seems like a technical ad for their product. If the thread model includes malicious admins then all bets are off as admins can change both server-side and front-side code. Some measure of security could be achieved using browser extensions
58.
▲
by
Leace
7y ago
I suggest reading about multi-stage builds. They basically squash layers at the end so it's a "have cake and eat it too" scenario. This pattern of concatenating commands to have a minimal image is a workaround from times when
59.
▲
by
Leace
7y ago
Typically but not necessarily. F-Droid can distribute apps with original signatures from developers if the app builds reproducibly. See: https://f-droid.org/en/docs/Reproducible_Builds/
60.
▲
Water found on a potentially life-friendly alien planet
(nationalgeographic.com)
606 points
by
Leace
7y ago
|
384 comments
More ›