Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Snawoot
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
91.
▲
by
Snawoot
5y ago
When I've seen title I first assumed that article talks about huge amount of fake news and how fact checking is shifted to thoughtful reader. It's not a subject of article, however, it's the case for real. And it's extre
92.
▲
by
Snawoot
5y ago
BTW, here is SSH proxy which uses pool of steady connections: https://github.com/Snawoot/rsp#performance
93.
▲
by
Snawoot
6y ago
Alright, it's happening https://www.youtube.com/watch?v=Zh3Yz3PiXZw
94.
▲
by
Snawoot
6y ago
Is this 1st April joke or it is real?
95.
▲
by
Snawoot
6y ago
I had some auto-tests for VPN app which were relying on similar web-service to check own IP address. One day service become unavailable and autotests got broken. IIRC it was ( https://canihazip.com/s ) I decided to solve this
96.
▲
by
Snawoot
6y ago
There are solutions which allow to redirect transit TCP connections into SOCKS proxy transparently: https://github.com/cybozu-go/transocks So, yes, VM/router solution will work for TCP connections. Also there are
97.
▲
by
Snawoot
6y ago
Yes. It initializes tun interface on both ends, so you can transport any IP packets.
98.
▲
by
Snawoot
6y ago
No, it's the SSH client who responsible which SOCKS request will be wrapped in which SSH connection. Stock implementation opens forwarded connections inside virtual channel of single SSH session. Besides that you have to keep pool of s
99.
▲
by
Snawoot
6y ago
I used this feature pretty often, but it has one downside: all connections are multiplexed into single one which is not good for performance. So I've implemented own client which decouples connections from each other: https:/
100.
▲
by
Snawoot
6y ago
By the way, SSH has real VPN option (-w option)
101.
▲
Show HN: Reverse engineered Opera VPN client
(github.com)
8 points
by
Snawoot
6y ago
|
0 comments
102.
▲
Hola-proxy now works in Egypt
(github.com)
2 points
by
Snawoot
6y ago
|
0 comments
103.
▲
by
Snawoot
6y ago
That was pretty common these years, especially in Moscow: https://www.mos.ru/en/news/item/13744073/
104.
▲
by
Snawoot
6y ago
Recently I was doing similar exercise. I use `pass` password manager ( https://www.passwordstore.org/ ) and I decided to check which of my accounts have breached password. So I made tool for bulk test against HIBP database:
105.
▲
by
Snawoot
6y ago
Feature completeness. There is no reason to preserve only ECDH-based cipher suites, for example.
106.
▲
Countdown to Quantum Decryption
(ambitvpn.com)
2 points
by
Snawoot
6y ago
|
0 comments
107.
▲
by
Snawoot
6y ago
Maybe your local system is compromised? I don't see much of other options.
108.
▲
by
Snawoot
6y ago
Year ago I've published full disclosure on similar case with Chinese IP cameras, DVRs and NVRs: https://habr.com/en/post/486856/ Interesting thing is super-user account was discovered earlier, but vendor
109.
▲
by
Snawoot
6y ago
Developers of embedded devices have long track record of embedding backdoors into their devices "for support purposes". Some of them try to hide backdoors better when they are discovered. Here we can see three generations of such
110.
▲
by
Snawoot
6y ago
Looks much worse. No key management, no well-known ways of integration with apps, nothing. It's just a tiny wrapper around set of cryptoprimitives, not a communication cryptosystem itself.
111.
▲
by
Snawoot
6y ago
Yep, this is exactly how we publish patch suite which unlocks NVENC sessions and NvFBC on Nvidia drivers: https://github.com/keylase/nvidia-patch IPFS mirrors: Site: https://ipfs.io/ipns/QmYTEwv2Gj
112.
▲
by
Snawoot
6y ago
I'm author of project which addresses concerns from report for Linux systems: https://github.com/Snawoot/linux-secureboot-kit It performs bootchain hardening, eliminating any vendor secureboot certificate and repl
113.
▲
by
Snawoot
6y ago
It's Raspberry Pi 3B+, 1 GB RAM
114.
▲
by
Snawoot
6y ago
I run IPFS on raspberry Pi (along with many other network services). Daemon is hungry for memory, but it's not a big problem. I use following systemd unit to run it and restart when it eats too much of memory: [Unit] Description=
115.
▲
by
Snawoot
6y ago
I've been solving similar problem to decouple python daemon logging IO from event loop in order to make logging completely non-blocking. I'm pretty sure this particular case must be most popular file IO case for async applications
116.
▲
by
Snawoot
6y ago
From project page: https://github.com/FiloSottile/age#ssh-keys > (ssh-agent is not supported.) There is no way it integrates with smartcards.
117.
▲
by
Snawoot
6y ago
> One key component that makes WireGuard different than other VPN protocols such as OpenVPN, IPSEC, L2TP, and PPTP is the layer at which it functions. The traditional VPN protocols that most people are familiar with operate at the user l
118.
▲
Cluster of 295 Chrome extensions caught hijacking Google and Bing search results
(zdnet.com)
5 points
by
Snawoot
6y ago
|
0 comments
119.
▲
Google turns blind eye to malware in Chrome Web Store
(twitter.com)
4 points
by
Snawoot
6y ago
|
0 comments
120.
▲
by
Snawoot
6y ago
It'll be much easier to do this on host machine. And much more reliable. However, in my home network raspberry pi with pihole handles filtering among many other things. For single-player gaming it's OK to disable network on guest
More ›