Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Scramblejams
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
31.
▲
by
Scramblejams
1y ago
159! Staggering. Got a source?
32.
▲
by
Scramblejams
1y ago
"The best camera is the one you have with you." Looking forward to the next buildout post!
33.
▲
by
Scramblejams
1y ago
Fun piece, thanks to the author. But for vicarious thrills like this, more pictures are always appreciated!
34.
▲
by
Scramblejams
1y ago
Same. What flavor of ML would be the most appropriate for that challenge, do you think?
35.
▲
by
Scramblejams
1y ago
Is it the desktop environment or background stuff that’s getting worse for you? If the former: FWIW I was pleasantly surprised when I switched back to Kubuntu. KDE’s surprisingly resource efficient these days, actually seems pretty close to
36.
▲
by
Scramblejams
1y ago
Long-time Navy jet jock finds it "cringe" when people try to get a little break from the stresses of their life by attempting in a very small way to emulate what he achieved. I get your point but come on man, ease up. At least r
37.
▲
by
Scramblejams
1y ago
I did apologize, didn't I? :-) Perspective is everything, I guess. You look at that three year old comment and think it's not particularly informative. I look at that comment and see an experienced infosec pro at Fly.io, who runs
38.
▲
by
Scramblejams
1y ago
Apologies for repeating myself all over this part of the thread, but the vulnerabilities here are something that Podman and Docker can't really do anything about as long as they're sharing a kernel between containers. The vulnerab
39.
▲
by
Scramblejams
1y ago
I did not!* Through many Pis serving many years and experiencing many power outages. But I'm using CanaKit power supplies (which supply 5.1 volts, Rpis are notoriously flaky if the voltage dips just a little below 5v) and ATP industria
40.
▲
by
Scramblejams
1y ago
Better not rely on unprivileged containers to save you. The problem is: Breaking out of a VM requires a hypervisor vulnerability, which are rare. Breaking out of a shared-kernel container requires a kernel syscall vulnerability, which are c
41.
▲
by
Scramblejams
1y ago
To quote one of HN's resident infosec experts: Shared-kernel container escapes are found so often they're not even all that memorable. More here: https://news.ycombinator.com/item?id=32319067
42.
▲
by
Scramblejams
1y ago
They both use the same fundamental isolation mechanisms, so no.
43.
▲
by
Scramblejams
1y ago
Escaping a container is apparently much easier than escaping a VM.
44.
▲
by
Scramblejams
1y ago
Yep, and for the rest I've gotten a lot of mileage, when shipping server apps, by deploying on Debian or Ubuntu* and trying to limit my dependencies to those shipped by the distro (not snap). The distro security team worries about keep
45.
▲
by
Scramblejams
1y ago
Pinning dependencies also means you're missing any security fixes that come in after your pinned versions. That's asking for trouble too, so you need a mechanism by which you become aware of these fixes and either backport them or
46.
▲
by
Scramblejams
1y ago
What startup was it?
47.
▲
by
Scramblejams
1y ago
It did result in jail time. The linked document states that the testing lab supervisor was sentenced to 3 years. (Not sure how much of that time was actually served, apparently he was suffering from dementia.) More info: https://
48.
▲
by
Scramblejams
1y ago
I run a handful of servers and I have a couple that pop ECC errors every year or three, so YMMV.
49.
▲
by
Scramblejams
1y ago
And if Valve lets me run that same kernel on my Linux desktop PC, where most of my gaming happens, I'll be tempted to run it there too.
50.
▲
by
Scramblejams
1y ago
> it is hard to maintain two APIs. This point doesn't get enough coverage. When I saw async coming into Python and C# (the two ecosystems I was watching most closely at the time) I found it depressing just how much work was going in
51.
▲
by
Scramblejams
1y ago
Sorry, my writing should have been clearer, I put one too many negatives in. :-) I didn't claim we should trust the company. Whether we can trust the anticheat maker is certainly part of the rigorous evaluation of the tradeoffs I menti
52.
▲
by
Scramblejams
1y ago
> doesn't actually stop cheaters. doesn't actually stop all cheaters. We could have a better discussion around this if we recognize that failing to stop 100% of something isn't a prerequisite to rigorously evaluating the
53.
▲
by
Scramblejams
1y ago
That describes what I've seen. When I first compared 2020 and 2024 in as apples-to-apples a way as I could, it seemed like 2024's frame rate was about a third lower than 2020's. This was on a 7900 XTX with 24 gigs of VRAM. I&
54.
▲
by
Scramblejams
1y ago
Yep, this really bums me out. Wanted to try plenty of Minecraft mods but never wanted to go to the trouble to set up a secure environment, so I never did either. As an only-tangentially-related aside, the difficulty of making mods for Windo
55.
▲
by
Scramblejams
1y ago
Thank you for your thoughtful response, that helps me understand more where the site leadership is coming from. BTW the comment I linked above[0] has been flagged and is dead again, after I thought it had been restored. Did it violate site
56.
▲
by
Scramblejams
1y ago
> The trouble is that not discussing it at all is not a solution either. So, sending it to page 4 quick-like has too many downsides? I am not an expert in community management, I'm interested to understand why. > I wish it were t
57.
▲
by
Scramblejams
1y ago
I guess with polarizing topics it comes down to the ratio of "intellectually interesting" (quote from your first link) comments, and those that engage with them in good faith, versus all the yelling and condemnation, right? And th
58.
▲
by
Scramblejams
1y ago
Seems like the existing mechanisms and moderation are designed to already handle this case to me. No?
59.
▲
by
Scramblejams
1y ago
allowing no discussion to happen seems wrong Could it actually be right? It's hard for me to feel like these political flagfests make the rest of the site any better, while the rest of the site is what I find value in. If I want to w
60.
▲
by
Scramblejams
1y ago
Can you tell me why NamePolicy=keep doesn't do the trick? Looking myself for options to keep a Debian bare metal server I admin from going deaf and mute the next time I upgrade it... It still uses an /etc/network/interfa
More ›