Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Perseids
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
16 ms
·
121.
▲
by
Perseids
8y ago
> Writing a good codebase is IMHO a craft and should not depend on the language or a bunch of tooling. Of course, relative to other code in that language you can write good code in any language and that is a useful and important skill. I
122.
▲
by
Perseids
8y ago
Something that has been bugging me for a while: Why is cross compiling so hard? After all, compilers are just C programs (or C++/Go/Rust/… programs). It's not like a target implementation is using some magic instructions
123.
▲
by
Perseids
8y ago
I'm someone saddened that the discussion here focuses only on what the advertiser (/ tech companies) should have done and leaves out the aspect of how we have failed to bring the obvious solution to the harmed individual: Install
124.
▲
by
Perseids
8y ago
I'm probably misunderstanding your situation, but why don't you (from the test suite) mock some function used in the begin block to throw an error and then `expect(the_logging_function).to have_received` the logging output?
125.
▲
by
Perseids
8y ago
Yay! Good steps (in the Java ecosystem at least) to bring containers closer to their potential. Docker is the best example I know of how " worse is better " can lead to absurdly bad local maxima. Docker solves the most shallow and
126.
▲
by
Perseids
8y ago
A path that might bring us out of there would be if the browser vendors defined a subset of HTML, CSS and the DOM API that guarantees an extra fast path through rendering and JIT. Basically leave out everything that makes browsers hard and
127.
▲
by
Perseids
8y ago
I second that resources consumption with Rails on the production system is only a problem in specific settings (e.g. when your business model depends on many cheap transactions, or when you are running on diverse sets of hosts outside of yo
128.
▲
by
Perseids
8y ago
That is beside the point. What Firefox is doing is to actively distrust the DNS the ISP is advertising because of the bad practice of some ISPs. Even if the ISP would advertise a DoH endpoint, the same reasons for distrust would still exist
129.
▲
by
Perseids
8y ago
I can confirm from personal experience. And all of these have to be unchecked separately, there is no deactivate all button. It's completely ridiculous. Oh and your selection isn't restored once you leave the dialog and immediatel
130.
▲
by
Perseids
9y ago
Passwords with 128bit of entropy have always been and will for the foreseeable future be secure with any password hashing algorithm that is not completely broken (i.e. uses a cryptographic hash function and a seed). 28 random alphanumeric c
131.
▲
by
Perseids
9y ago
> I have to admit them a certain respect for executing their strategy so successfully. But be certain not to conflate your respect as a business strategist with your judgment as a mindful developer. To speak clearly: By systematically pl
132.
▲
by
Perseids
9y ago
Honest question: Why did you take the job? I've heard such horror stories from previous companies of current coworkers as well, but they didn't suffer as much as non-developers. I myself make it a point to ask in job interviews wh
133.
▲
by
Perseids
9y ago
To underline your point, even my Nexus 5 (_from Google_), which is a little less than 3 years old, will never receive security updates. And one of the main reasons I chose the Nexus was to be sure to get updates on time. Except for the secu
134.
▲
by
Perseids
9y ago
Maybe the e.GO Life is interesting for you? http://e-go-mobile.com/en/models/e.go-life/ It starts from EUR 15900 (or EUR 11900 if you discount the federal "E-Prämie") and production will start next
135.
▲
by
Perseids
9y ago
Which is one of the reasons I hope WebAssembly becomes the de-facto standard for binary code distribution: It preserves more structure of the original program and allows less of the lowest level shenanigans (it provides a clear and protecte
136.
▲
by
Perseids
9y ago
What Apple could do to is to move the bar from "rubber hose decryption" to "rubber hose account access" by offering a dead simple cloud recovery. Imagine a "Flight mode" where everything on your phone is backed
137.
▲
by
Perseids
9y ago
I am not qualified to analyze the rest of the comments, but the last/first sentences strikes dear to me. In succession they were: > > > The idea that Cloudflare is a public space requiring the protection of the first amendment
138.
▲
by
Perseids
9y ago
I've talked to an Aldi employee as of late and he said Aldi is proud to now have the fastest Card processing of all the German stores (within the regulatory limits: you have to put in your PIN or sign the receipts except for those fanc
139.
▲
by
Perseids
9y ago
No harm to any sentient being was caused by the unintended DAO usage ("hack"). A more apt comparison would be: Someone found a flaw in my distributed MMORPG and now the game isn't interesting / useful anymore to some peo
140.
▲
by
Perseids
9y ago
(Near) zero-cost snapshots and filesystem-based incremental backups are amazing. Just today I was saved by my auto snapshots [1]. Apparently I didn't `git add` a file to my feature branch and without the snapshot I wouldn't have b
141.
▲
by
Perseids
9y ago
While you do not have to pay the benefits for social security while abroad, you could and it's not even that much. One pays around EUR 12k / year for social security on a rather well payed software developer job (EUR 50k / ye
142.
▲
by
Perseids
10y ago
As others have pointed out, a huge amount of C code is going to stay with us for quite some time. While fighting for the adoption of other languages is right and noble, what I would consider practical is eliminating (the worst of) memory ma
143.
▲
by
Perseids
10y ago
What you need to understand, is that Git's data structures are essentially annotated Merkle trees [1]. So whatever you sign, be it a tag or a commit, it will be nested sha1 hashes like [someData].sha1([someData].sha1([someData].[aFile]
144.
▲
by
Perseids
10y ago
For the argument at hand (Can you deploy anything on a production server from a third party that is only verified cryptographically?) signatures and hashes fulfill the same function (and btw I also wrote "verifying it against a hash or
145.
▲
by
Perseids
10y ago
I don't like the living-on-the-edge-attitude that Linus and others here promote regarding Sha1 in git. First, attacks only get faster over time. What costs millions today is likely to be achievable on commodity hardware in the coming y
146.
▲
by
Perseids
10y ago
> Wow, Linus raises an entirely different issue which is that the PDF-based attack can't and won't work on git at all. Due to length prefixing it is extremely difficult to insert some nonsense into the middle of a git object wh
147.
▲
by
Perseids
10y ago
> There is no way to securely deploy a package directly from the internet. Fetching a file from the internet and verifying it against a hash or signature is the only way to securely deploy a package from the internet. This is exactly o
148.
▲
by
Perseids
10y ago
> I run at least 5 JVM processes on my 2012 MacBook Pro with 8GB of memory. This is all day, every day. I would never have tried to start 5 Rails apps at the same time. Where have we gone wrong that starting 5 processes with 8GB RAM seem
149.
▲
by
Perseids
10y ago
> I'm not really sure why this isn't already in place. Everything we need is already in place, except for a tweak in the caching strategy of the browsers[1]. With Subresource Integrity [2] you provide a cryptographic hash for
150.
▲
by
Perseids
10y ago
Even better: You can work an making "google" a generic term for searching – "I'm googling it on DuckDuckGo" – which increases awareness of other search engines and decreases the association of the common activity &q
More ›