Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
MikeHolman
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
31.
▲
by
MikeHolman
7y ago
You could already compile programs from other languages to javascript. https://github.com/jashkenas/coffeescript/wiki/List-of-langu... Wasm was effectively an extension of asm.js. It makes the experience of c
32.
▲
by
MikeHolman
7y ago
An 18 year old isn't getting a mortgage. They probably won't be able to afford a home for the next 7 years anyway. They might have a rough time getting a reasonable car loan and opt to instead buy a used car with cash, but that is
33.
▲
by
MikeHolman
7y ago
No, it doesn't link to social media. It's just an internal survey.
34.
▲
by
MikeHolman
7y ago
Mentioning the Civil War is ridiculous. It was a war that happened 150 years ago, and it resulted in the end of slavery in America. It's not like it was an act of oppression. And by all accounts the situation in Xinjiang is much worse
35.
▲
by
MikeHolman
7y ago
Killing armed rioters would get much less condemnation than killing unarmed protesters.
36.
▲
by
MikeHolman
7y ago
How do I know if you are responsible? Do your children have access? Are you sure they can't find the key or figure out the code? A couple months ago a friend of a friend was killed because a boy from school brought a gun from home to t
37.
▲
by
MikeHolman
7y ago
I don't think it's only popular in news. I work on a web platform team, and I've seen many vulnerability reports over the years (well over 100). I've never seen a report from the NSA or US government. Actually, the only
38.
▲
by
MikeHolman
7y ago
All the major online chess websites have anti-cheat mechanisms. They don't publish details of how they detect cheaters though, and I don't know how good they are. From what I've read, they work by comparing the player's
39.
▲
by
MikeHolman
7y ago
Just a few weeks ago was the 30th anniversary of the Tiananmen Square massacre, and now you have 2 million people protesting in Hong Kong. I think it's mostly that there's a lot of newsworthy events going on in China right now.
40.
▲
by
MikeHolman
7y ago
Microsoft GitHub projects stopped spamming about CLA a while ago. It will only add a CLA comment to the PR now if you haven't yet signed the CLA and CLA is required. Since this is a one liner, CLA isn't required. But it looks like
41.
▲
by
MikeHolman
7y ago
It certainly doesn't feel good. But if the home market remained unpatched with a public POC, they would be attacked. The most likely avenue is by writing malicious web pages to steal bitcoin wallets, etc.
42.
▲
by
MikeHolman
8y ago
The problem is that most people act selfishly with that "5 to reshape the world into something you want to live in". The world they want to live in has them lazing on a beach, not providing healthcare for the masses.
43.
▲
by
MikeHolman
8y ago
By allowing JIT at all, a small ROP chain can call VirtualProtect to make a larger payload executable. Sure you can do everything with ROP, but it is less convenient (and Intel CET might eventually make ROP attacks actually hard).
44.
▲
by
MikeHolman
8y ago
ChakraCore also has the ability to disable JIT. And we have a build configuration that compiles out the JIT so the binary is smaller as well. I believe people in the community also have a ChakraCore fork specifically made for using Node on
45.
▲
by
MikeHolman
8y ago
This looks bad for Google. EdgeSpot detected an in-the-wild exploit and told Google about this in December, but Google wasn't going to fix the bug until late April. Google only released a patch early because the finder blogged about it
46.
▲
by
MikeHolman
8y ago
I live in Seattle as well, and last year I saw some lady jay walk right in front of a cop car. The cop yelled out, "Hey maybe use the crosswalk next time." Without even turning around, she flipped the cop off and kept walking. No
47.
▲
by
MikeHolman
8y ago
From what you say, they underestimated by 35%. That seems like quite a conservative underestimate.
48.
▲
by
MikeHolman
8y ago
You can't throw away your interpreter bytecode, because the JIT code needs to be able to bailout if a guard fails (e.g. if you specialized a var as an int and you get a non-int). So you can always use the size of your bytecode as an in
49.
▲
by
MikeHolman
8y ago
You don't want to inline functions that haven't been parsed. If it hasn't been called by the time you are JITing, then it probably isn't going to be on a hot path.
50.
▲
by
MikeHolman
8y ago
Do you do have any plans to better distinguish between noise and regressions? I run a similar performance testing infrastructure for Chakra, and found that comparing against the previous run makes the results noisy. That means more manual r
51.
▲
by
MikeHolman
8y ago
I haven't used callgrind, but wouldn't running benchmarks concurrently still lead to cache interference?
52.
▲
by
MikeHolman
8y ago
That requires extra bookkeeping for ordering, but it isn't really that common where people will have object literals with the same properties initialized in a different order. But a much more common case is that properties added after
53.
▲
by
MikeHolman
8y ago
The reason most of the features of the JIT are needed is due to the lack of static typing in javascript. The most important thing the JIT does is figure out what types of things you are using and optimize for them. There will always be some
54.
▲
by
MikeHolman
8y ago
That's assuming a socialist revolution is unequivocally bad. The world would be so incredibly different, it's impossible to say that it would be worse.
55.
▲
by
MikeHolman
8y ago
Browsers are already very optimized for JS. Wasm is not currently a good target for managed languages (you would need to implement your own GC on top of wasm memory), and AOT compilation in general is not good for languages as dynamic as JS
56.
▲
by
MikeHolman
9y ago
In my codebase we put our configs behind if (CONFIG_TOASTER) { ... } statements, and then #define CONFIG_TOASTER true/false. I think this is a pretty good middle ground, where we still get compile errors to help against code rot, but a
57.
▲
by
MikeHolman
9y ago
>the reason Microsoft broke Skype so badly was because they used centralised servers with backdoors for countries who wanted them. That seems like pretty unreasonable tinfoil. There is no reason for Microsoft to want to give information
58.
▲
by
MikeHolman
9y ago
Looks like everyone is vulnerable to arbitrary user memory reads, while Intel and ARM are vulnerable to arbitrary kernel memory reads as well.
59.
▲
by
MikeHolman
9y ago
I implemented an out-of-process JIT for Chakra (JavaScript), and we make heavy use of inline caches. Why do you think inline caches would be an issue?
60.
▲
by
MikeHolman
9y ago
CET is coming out soon, and I'm hopeful that this will make ROP much harder.
More ›