Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Scion9066
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
31.
▲
by
Scion9066
2y ago
Here's the actual link to the starter pack: https://bsky.app/starter-pack/bradgessler.com/3laa47lbuwb2r
32.
▲
by
Scion9066
2y ago
https://docs.bsky.app/blog/blueskys-moderation-architecture You can either rely on Bluesky's standard labeler only or subscribe to ones that handle certain niches or the higher standards of moderation that you may
33.
▲
by
Scion9066
2y ago
97% with a pihole and uBlock Origin Lite. 99% if I turn the filtering mode to "complete".
34.
▲
by
Scion9066
2y ago
You don't. Same as a physical key for your home, you have backups. Whether that's having multiple separate keys/devices registered with your accounts or a single key stored in a password manager, you need to have a fallback p
35.
▲
by
Scion9066
2y ago
Generally this spec is talking about the kind of passkeys that are stored in password managers, not the kinds used by hardware security keys. Those in a password manager have always been technically copyable somehow, there just wasn't
36.
▲
by
Scion9066
2y ago
Chrome tries to block the majority of third-party software from injecting code into it: https://blog.chromium.org/2017/11/reducing-chrome-crashes-ca...
37.
▲
by
Scion9066
2y ago
Generally when you configure DoH, you either choose a provider from a list of options or enter both an IP and a hostname manually. With a host name it has enough to use to verify the identity of the server to prevent spoofing/a malicio
38.
▲
by
Scion9066
2y ago
X already has an onion service I believe, check the x.com meta tags for "onion-location".
39.
▲
by
Scion9066
2y ago
Not only do they have access to group chats and non-E2E encrypted DMs, their moderation practices for those are: https://telegram.org/faq Q: There's illegal content on Telegram. How do I take it down? A: All Telegram c
40.
▲
by
Scion9066
2y ago
Looks like they couldn't order an employee in Washington to do it but could order someone inside France to provide the data: https://academic.oup.com/book/27039/chapter/196319372 "The French Code of
41.
▲
by
Scion9066
2y ago
One benefit could be if the site only supports something like username/password with SMS/email 2FA compared to a sign in option using Google/Microsoft/etc that you can use a security key/passkey with.
42.
▲
by
Scion9066
2y ago
Or an email client.
43.
▲
by
Scion9066
2y ago
> And what happens when I need to login to a device I don’t own, or don’t have/want my personal password manager on? For that there's CTAP2/WebAuthn: https://fidoalliance.org/fido2-2/fido2-web-authenti
44.
▲
by
Scion9066
2y ago
Historical inertia. macOS has implemented code signing and only allowing apps from the App Store or trusted developers as default for quite a while now but people still find a way to turn it off or bypass it and then get infected by malware
45.
▲
by
Scion9066
2y ago
Uh, Recall does the OCR for you already and you can just search the saved data for stuff like "password" or "credit card". It'd probably be easiest for an attacker to just upload the Recall database as soon as they
46.
▲
by
Scion9066
2y ago
Could the platforms the authorities use decide to not exclude them and treat them the same anyways (ie scan them like everyone else's) or are they codifying that that kind of scanning only applies to the common people?
47.
▲
by
Scion9066
2y ago
It's not just ads or banks, here's a talk from someone who used fake Google Maps listings to intercept phone calls between law enforcement: Wiretapping the Secret Service Can Be Easy and Fun | Bryan Seely | TEDxKirkland https:&#x
48.
▲
by
Scion9066
2y ago
It probably needs to be transmitted in parallel, out of band, rather than trying to integrate it into the existing phone system. That's how Google's Verified Calls thing they were touting a few years ago worked to give you context
49.
▲
by
Scion9066
2y ago
Not just the ability to answer calls for you but a way to verify a call by having the business transmit data about the call (caller, recipient, and reason for the call) to your phone app: https://techcrunch.com/2020/09&
50.
▲
by
Scion9066
2y ago
The banking app (or any other app) having access to see that you're in a call or who is calling you seems like another data mining point that I don't think they should have. Having a way to initiate the communications through the
51.
▲
by
Scion9066
2y ago
It's not what case specifically addresses how it should be handled in an emergency but rather that there is no exception in copyright law for emergencies like a pandemic. If there's not an exception allowing a library to make unli
52.
▲
by
Scion9066
2y ago
In the Picasso example, if the you weren't selling your sketches before, then the potential copyright rights were likely not the incentive needed to create the work in the first place, practicing your craft was. Also, just because you
53.
▲
by
Scion9066
2y ago
At least in the US, having intellectual property interests isn't about authors having control over every aspect of their works in a moral sense but the public benefiting from the investment in and creation of new works through a limite
54.
▲
by
Scion9066
3y ago
First thing I thought about was the reasoning behind why Tor uses Entry Guards (a limited set of relays chosen by your client to use as the first entry point rather than a random one each time). I'd imagine the same arguments apply for
55.
▲
by
Scion9066
3y ago
It's real but temporary for now: https://news.ycombinator.com/item?id=39471640 "This is just for a brief period during polishing/debugging since this is the first time third-party PDS hosts have been added to
56.
▲
by
Scion9066
3y ago
https://learn.microsoft.com/en-us/windows/security/applicati... > If the policy setting is set to Prompt for credentials, malware imitating the credential prompt might be able to gather the credentials fro
57.
▲
by
Scion9066
3y ago
Yep, Firefox and Chrome have declarativeNetRequest: https://developer.mozilla.org/en-US/docs/Mozilla/Add-ons/Web... Ublock Origin Lite uses it for example. (It's also the thing everyone is angry at
58.
▲
by
Scion9066
3y ago
That's one of the reasons behind the permission changes coming in Manifest V3: to reduce what extensions have access to in the first place. Some extensions may be open-source and trustworthy but there are many that aren't and peop
59.
▲
by
Scion9066
3y ago
For me it comes down to trust. I'm already trusting Bitwarden with the desktop/mobile apps and the browser extension. Using rbw would require me to trust someone else with arguably my most important digital data. As for the cost,
60.
▲
by
Scion9066
3y ago
And the official CLI client for Bitwarden is here: https://bitwarden.com/help/cli/
More ›