Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Niten
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
46 ms
·
61.
▲
by
Niten
10y ago
I happily disabled my ad blocker for the LA Times when they requested it, but I eventually closed the page when they decided to load enough ad content to make my Chrome tab unresponsive on my Xeon workstation. I won't be back. I'
62.
▲
WSJ has gone HTTPS
(wsj.com)
2 points
by
Niten
10y ago
|
0 comments
63.
▲
by
Niten
10y ago
4) A deliberate UX trade-off that, while clearly suboptimal for the kind of people who read HN, still leaves WhatsApp's massive base of everyday users in a much better position than they were prior to integrating the Signal protocol: i
64.
▲
by
Niten
10y ago
Not entirely. The important difference is that instead of generating a secret on the token and passing it to the server, U2F has the token answer a challenge issued by the server and encrypted to the token's (per-domain) public key, st
65.
▲
by
Niten
10y ago
U2F would prevent this from being exploitable, but one-time password schemes like TOTP would not.
66.
▲
by
Niten
10y ago
I do something similar, but at an even lower granularity: "Needs Action", "Waiting", and just a couple other labels. I haven't actually watched Mann's talks and only have a second-hand understanding of Inbox Ze
67.
▲
by
Niten
10y ago
As acdha said, no, this type of attack isn't possible with U2F.
68.
▲
by
Niten
10y ago
I agree, although my takeaway was that the way to fight them is to respond on ACLU letterhead.
69.
▲
by
Niten
10y ago
> Old Japanese cars are still on the road, running well. My son is driving my original purchase 1990 Honda. I recently moved out to the Bay Area from south Florida, and one thing that really struck me was how many y2k-ish cars were on th
70.
▲
by
Niten
11y ago
I think you've recognized something important here, which is that offense is generally a subjective matter. In such cases an clear-headed statement of objection may be warranted, but dogpiling and outright bullying is never excusable.
71.
▲
by
Niten
11y ago
Nikola Tesla was a great engineer and innovator—and showman—who's been mythologized beyond all reason. Even at the time, Tesla's greatest contributions were being simultaneously discovered by contemporaries like Galileo Ferraris.
72.
▲
by
Niten
11y ago
> For SoCs where it's on-die - on the same bus/fabric - they will (if it's not an idiotic design) use an IOMMU of some sort, to prevent DMA from having access outside of its sandbox. Do you happen to know whether this is t
73.
▲
by
Niten
11y ago
It depends on your setup. I've had best results doing my development on a powerful workstation that, when coupled with a good LTS operating system like CentOS 7, doesn't give me any maintenance headaches (or at least amortises any
74.
▲
by
Niten
11y ago
The architecture may exist, by Servo as a day-to-day usable browser does not yet. Don't get me wrong; I absolutely look forward to the day that it does. Neat that they have a sandbox up and running, though. I wasn't aware of tha
75.
▲
by
Niten
11y ago
CVE counting is a poor proxy for actual security. A browser that does not sandbox its renderers or enforce a permissions model on its extensions cannot reasonably be considered secure in 2015.
76.
▲
by
Niten
11y ago
No, Chrome has a materially better security architecture than Firefox. https://seclab.stanford.edu/websec/chromium/chromium-securit... When it's ready, hopefully Servo will be used as the basis for a browser
77.
▲
by
Niten
11y ago
The claim that deoxygenated orange juice has a fraction of the nutritional benefits of hand-squeezed juice is an assertion that needs to be backed up with evidence, not blindly assumed.
78.
▲
by
Niten
11y ago
Firefox's security is still nowhere near up to par, unfortunately.
79.
▲
by
Niten
11y ago
Yep: https://www.yubico.com/applications/fido/
80.
▲
by
Niten
11y ago
Yes, but there's a kernel of truth there. I wouldn't say I managed to learn Go in a day, but after perhaps six months using it I was much closer to mastering Go than to mastering other languages I'd been using for years. Go&#
81.
▲
by
Niten
11y ago
> Googling suggests that DNA evidence shows that about 5% of "white" Americans carry Native American genes I'm one of these, at least according to my Genographic Project results. Prior to getting my results, I assumed my f
82.
▲
by
Niten
11y ago
All else being equal it would be nice if the keys' casing were more tamper-resistant. But the article doesn't even touch on the tamper resistance of the NXP A7005, which is the part that actually matters.
83.
▲
by
Niten
11y ago
> That 0.08 g/km figure is using the 'new european driving cycle' which features unrealistically low loads on the engine, engines are known to increase their NOx emissions quite a bit when under load. Doesn't that len
84.
▲
by
Niten
11y ago
The Euro 6 standard allows 0.08 g/km of NOx emissions for passenger diesel; the EPA allows a fleet average of 0.04. The U.S. certainly is ahead of Europe on the regulation of toxic emissions, and European cities are much more likely th
85.
▲
by
Niten
11y ago
I wouldn't consider Keepass the most secure choice. One of the most common attacks in practice is phishing, and browser integration discourages carelessly pasting your password into something that looks like your bank's site. Th
86.
▲
by
Niten
11y ago
> European privacy laws are very consumer-friendly and usually very reasonable. Cookie notifications and censorship of the news under the guise of the "right to be forgotten" come to mind as obvious counterexamples.
87.
▲
by
Niten
11y ago
It's interesting to see the regional differences in this discussion, because that attitude is pretty foreign to the way I think about the Internet. I know that if I use Yandex, at least some of my data is going to reside in Russia. If
88.
▲
by
Niten
11y ago
> It is possible that social media start-ups will be unable to operate across borders due to regulations, but this will hardly be a staggering setback to the European populace's ability to share photos of their food. There will be s
89.
▲
by
Niten
11y ago
> if you could manage to get malware onto such a computer, then there are likely easier ways to exfiltrate the data than presented in this paper. I'm not so sure. It's much easier to drop an infected thumb drive in a parking lo
90.
▲
by
Niten
11y ago
> Or, a QR code (or bar code) could be sent to the phone which pops up on the screen. This is held up to the PC's web cam which scans it. The opposite of this (bar code on computer is scanned by the phone) is roughly the user experi
More ›