Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Perseids
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
61.
▲
by
Perseids
4y ago
> There was a good thread recently where a lawyer helps distinguish "perpetual" and "irrevocable", which us laypeople tend to confuse. Gosh, why does it have to be this way? It's even harder for non-native speake
62.
▲
by
Perseids
4y ago
It is fair to criticize NIST for enabling rumors about them weakening SHA3, but these are rumors only , nothing more. Please, everyone, stop spreading them. SHA3 is the same Keccak that has gone through extensive scrutiny during the SHA3 c
63.
▲
by
Perseids
4y ago
Let's get creative! There is no need to secrecy of the hash. Pay celebrities to wear a dress with the hash printed on it. Influence a publisher to print the hash in all books for a year. Create a mystery about what the hash is about, s
64.
▲
by
Perseids
4y ago
The scenario is not finding collisions though. I assume londons_explore somehow finds a way to build a trusted relationship and channel with the future [1], say a piece of leather with the hashes burned into it that is ... stored publicly i
65.
▲
by
Perseids
4y ago
A bit off-topic: Can anyone recommend a platform that is production ready today, if I want to (develop and) deploy a custom Smartcard / HSM application in small scale? JavaCard seems to fit the bill, but I've not yet found an ap
66.
▲
by
Perseids
4y ago
Your arguments strike me as inconsistent. You say we need consumer rights protections so we don't end up renting our devices, but then you criticize the comment that speaks up about a consumer rights problem. > There's separate
67.
▲
by
Perseids
4y ago
Saying "I don't find the argument the authority gives convincing" is a different statement than "I distrust the authority". And in fact there are many experts, from craftsmanship over engineering even all the way to
68.
▲
by
Perseids
4y ago
I assume your argument is that Slack has the "freedom of contract", the right to create and offer you contracts of their choosing (and you are free to accept or decline them). That right is not absolute. Workers rights limit it, s
69.
▲
by
Perseids
4y ago
Most comments are missing the point of Direct Air Capture (at least the point the people working on this are making): In no economic way can DAC compete with not putting CO2 in the atmosphere in the first place. It is vital that we do our
70.
▲
by
Perseids
4y ago
One way to understand why this article produces so deeply emotional responses, is that it says "it is right and proper to defect in this prisoner's dilemma"[1]. Why is it a prisoner's dilemma? - Nobody writes follow-ups:
71.
▲
by
Perseids
4y ago
Something else I find rather likely is that different people are working most effectively with different methodologies (a believe that is grounded in the repeated experience of being shocked at how other people program and still be effectiv
72.
▲
by
Perseids
4y ago
And, critically, you potentially need to ignore the signal of "things getting worse". Otherwise you might creature a vicious cycle of more corrective action -> more things getting worse (at first) -> even more corrective act
73.
▲
by
Perseids
4y ago
As I've opined here [1] I think OIDC is not a good example for an authentication protocol. As you are already into spec reading, you could take a look how SSH and TLS 1.3 (especially mutually authenticated TLS) handle the same topic. (
74.
▲
by
Perseids
4y ago
You can also read this story another way: Non-scaled manual processes have accumulated decades or generations of accidental complexities. I've seen this in the example of a central software my university was ordering to manage the re
75.
▲
by
Perseids
4y ago
I find it really fascinating how a completely different subset of Hackernews users answers to you than are present on other threads. As literary no sibling is voicing a dissenting opinion I feel compelled to present it: Purely from the user
76.
▲
by
Perseids
4y ago
It can get worse: me and my teammate trained a new dev for half a year with the explicit intention for him to take over should one of us leave. When the day came, said new dev was moved to another team, the product was given to an outsour
77.
▲
by
Perseids
4y ago
Honestly, DPoP[1] is pretty horrible. It is a partial re-implementation of TLS client authentication deep inside the TLS connection. What's wrong: - No mandatory liveliness check. That means you don't know whether the proof of pos
78.
▲
by
Perseids
4y ago
> In Keycloak nothing made sense to me until I got myself familiar with OAuth 2.0 and OpenID Connect. Hot take: OAuth2 is a really shitty protocol. It is one of those technologies that get a lot of good press, because it enables you to
79.
▲
by
Perseids
5y ago
And specifically no space left on device is a very common error that is also very commonly handled badly. Happened to me yesterday and the error messages I got were unhelpful or non-existent. In Firefox part of a website I was desperately
80.
▲
by
Perseids
5y ago
I don't understand the reasoning here. How does being paid more justify unethical acting? Especially since you are getting by very very well in the tech industry in general. Isn't that like saying "I'm kicking puppies al
81.
▲
by
Perseids
5y ago
I'm also not quite sure about the circumstances where that would be relevant, but on the StackExchange a sibling comment found there is this further explanation: > > I know I'm probably stupid but... how is this different fr
82.
▲
by
Perseids
5y ago
> We have Sun's forward-thinking and the enterprise-friendliness of the Java ecosystem to thank for that. I find it quite ironic to praise the forward-thinking of the company that has been instrumental to bring us into this mess via
83.
▲
by
Perseids
5y ago
Well, we're in a thread that started with > I lay any blame squarely at the feet of IT security of large organisations that were entirely unprepared to update a widely used dependency that wasn't an operating system or a runtim
84.
▲
by
Perseids
5y ago
I can't help but ask: As a security conscious person, how can you justify creating the service? You'll have the data and access of everything your customer does online, which for your target audience is everything your customer
85.
▲
by
Perseids
5y ago
"prejudices" was a bad wording. I'm sorry to have ignited that much emotional heat which deters from good discussion culture. My usage of "prejudice" was the best kind of correct: technically correct. I was thinki
86.
▲
by
Perseids
5y ago
I 100% agree with you and I'm sorry this is not the case in the country you live in. I keep forgetting how bad the health care system is in some parts of the rich and developed world. I agree with my sibling comments that fortunately y
87.
▲
by
Perseids
5y ago
And one other thing: Cheap, anonymous tests for everyone. It should be the norm that when you hook up with a new person / one night stand that you show them your recent negative test result. At least where I live (Germany) you can alre
88.
▲
by
Perseids
6y ago
I don't think an eleven year old statement about the status quo is a good source. We've since seen many more examples about how removing contrary opinions from the discussion creates places with negative utility. And lest anyone t
89.
▲
by
Perseids
6y ago
The solution to this is unlimited true email aliases as e.g. StartMail [1] and Fastmail [2] provide. I wish this was more common place for email provider. Besides the front up cost of developing / setting up the solution, email aliases
90.
▲
by
Perseids
6y ago
Depends on which problem your tackling. With App reviews for example it is very easy to rate limit the 100 USD developer licenses. And also in cases like the one the medium article is facing businesses would gladly pay a hundred bucks to ge
More ›