Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
LukaAl
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
13 ms
·
61.
▲
by
LukaAl
10y ago
I could contend that the shortage of engineers qualified for that job is due to scarcity created by the US immigration policies. And then I'll ask you if you can't have your super high salary without exploiting the current system,
62.
▲
by
LukaAl
10y ago
No, the Visa you are referring to is the O-1 Visa, it is much more difficult and expensive to obtain, but it is not subject to Visa CAP (I know it well, I'm on O-1). H-1B is for specialty worker, and they are not defined by exceptional
63.
▲
by
LukaAl
10y ago
Matt Levine is a smart guy but often tends to oversimplify. It is not just one of the three, is all three at the same time. The number 1 is more or less true for a good number of companies. Number 2 and 3 applies to the rest of the companie
64.
▲
by
LukaAl
10y ago
A little bit more complex, I guess I wasn't clear enough. But I agree with you.
65.
▲
by
LukaAl
10y ago
Even if agree with you, centralized vs. decentralized makes a lot of difference, this is not the main point of the article. Centralized vs. decentralized influence your go-to-market strategy and probably your probability to succeed, but not
66.
▲
by
LukaAl
11y ago
No, as they explain, the feature in stable is behind the status in Canary: https://bugs.chromium.org/p/chromium/issues/detail?id=326539...
67.
▲
by
LukaAl
11y ago
Yeah, you should stop the turtle sequence. Maybe don't make it so easy that a script kid could exploit it, though...
68.
▲
by
LukaAl
11y ago
Fair enough... or not! First of all, when assessing security of a solution you have to define the perimeter of attack. You could imagine a privilege escalation that gives you access to the loopback interface but not enough to install a key-
69.
▲
by
LukaAl
11y ago
Same way as the encryption key used to secure the communication with your bank. It doesn't. The idea behind TLS is that the client and the server agree on a temporary key to exchange the information in a secure way (there's a ton
70.
▲
by
LukaAl
11y ago
I explained in a previous comment the problem. As for the solution, without thinking too much, using TLS to encrypt the channel would do it. If we think the browser is not safe, well, all your stack is basically compromised. But if it could
71.
▲
by
LukaAl
11y ago
Every app that runs on your systems with enough privilege could sniff your username and password and send it out. That means also apps installed by a person who has access to your systems or malicious code that you, or someone who as access
72.
▲
by
LukaAl
11y ago
No, they get less, but they are all qualified leads! There was a study (sorry I can't find the link) few months ago that discussed how spam looks bad intentionally. The idea is to weed out the smart or even average guy and just get the
73.
▲
by
LukaAl
11y ago
> On the other hand, Zenefits might not have bothered with certification since it wouldn't have been legally required, or the requirements might have been less silly if certified professionals had to compete with non-certified. You
74.
▲
by
LukaAl
11y ago
Sorry, but I've troubles following your argument in this case. What you are basically calling for is one or more certification authorities that certify that person A is capable of performing a certain task. Am I right? This would repla
75.
▲
by
LukaAl
11y ago
I don't get that. What kind of investment is? I buy an apartment that has for sure some expenses related (concierge of the building, taxes) and depreciate over time hoping that prices will go up? Why not renting that apartment? I mean
76.
▲
by
LukaAl
11y ago
I love this conversation, and I'd like to give my feedback. First, no, you are coming across as a person who thought deeply about this concepts. I like the idea of closeness but, as you noted, it is not always possible. I think that em
77.
▲
by
LukaAl
11y ago
The article is interesting, but it fails to consider one aspect. AWS is a line of products, very broadly defined, instead of a single product, with different level of maturity. You go from services like EC2 that are IAAS to RDS and co. that
78.
▲
by
LukaAl
11y ago
When I was learning violin, I used to mess around with my violin to understand how it worked (it was a very cheap one). One of the things I noticed was the covering the holes with paper changed a lot the tone of the instrument but very litt
79.
▲
by
LukaAl
11y ago
I don't really get what all this rebuttal targets. The original essay is poorly thought and full fallacies. Despite that none points them out. So, let see some of them. Ok, we shouldn't look at indicators of inequalities (the Gini
80.
▲
by
LukaAl
11y ago
It is interesting to see the math behind why it did not works and probably it is a good approach to never discard an idea just because it sounds stupid. But I see really a little value in this line of thinking. One of the big issues with ex
81.
▲
A chemical-free paper (2014)
(blogs.nature.com)
3 points
by
LukaAl
11y ago
|
0 comments
82.
▲
by
LukaAl
11y ago
Well, there were two different backdoors: - This one could be the work of an intern, maybe a smart one but definitively it doesn't seems very sophisticated (we should look at the code). - The second one, we are not sure it actually exi
83.
▲
by
LukaAl
11y ago
Well, simply storing and hashed version of the pass would be ok. Even an MD5 or a SHA1 would be enough to guarantee at least a "Very Few plus Us" security. Hiding that in the could would be much more difficult. And using PKs would
84.
▲
by
LukaAl
11y ago
Not totally an expert but the explanation of what a PKRNG is overly simplified. The problem with Dual EC is not that it is a PKRNG, but that some design choice made allowed for allegedly planting a backdoor for agencies with enough computin
85.
▲
by
LukaAl
11y ago
The article is really cool even though it is a little bit simplistic in my view (and experience). I've also made this comment on the article by the way. The first problem is that rarely steps are independent from each other. I haven&#x
86.
▲
by
LukaAl
11y ago
And so what? Last time I walked in a Starbucks, none made me buy a gift card using a gun. Actually none ever asked me to buy a gift card. The only time I bought one I was willing to buy it. Since when selling to customers something they wan
87.
▲
by
LukaAl
11y ago
In Europe a weekend, or even a daily trip if you happen to live close enough, to the mountain in winter for skiing is considered common and acceptable. The distance is well inside the range of Tesla's battery if it wasn't for the
88.
▲
by
LukaAl
11y ago
This article is interesting but very naïve in is approach. First of all what he describes it is not a business model but part of the value proposition, and more specifically the value discipline. Yes, I'm using the Treacy Wiersema mode
89.
▲
by
LukaAl
11y ago
That's an interesting news but I don't think it will be Apple. Car manufacturing requires volume to be efficient (like any mass produced product, ça va sans dire). But it is also extremely expensive to ship compare to their retail
90.
▲
by
LukaAl
11y ago
From one point of view I don't buy in the skepticism surrounding an Apple Car. As many issue could exist, and this article present a long list, Apple has the resources and the capabilities to overcome them. The problem for Apple right
More ›