Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
TonyTrapp
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
91.
▲
by
TonyTrapp
1y ago
Did you read the article? > The palette uses a 12-bit colour depth, so each colour requires only four characters when specified as a hexadecimal colour code in a CSS or SVG file
92.
▲
by
TonyTrapp
1y ago
eBay is very different across countries. In Germany, eBay listings are free again for private sellers after they noticed the exodus to other platforms. I know this is not the case in other countries, so talking about eBay as a general pla
93.
▲
by
TonyTrapp
1y ago
Note that you can click on the Consent-O-Matic toolbar entry and submit the site for review (which I did).
94.
▲
by
TonyTrapp
1y ago
You can easily put phpMyAdmin behind basic auth as an additional security layer, completely bypassing any PHP execution and letting the web server completely handle the authentication. It's exactly what I have done multiple times in
95.
▲
by
TonyTrapp
1y ago
Again, the premise was that phpMyAdmin is secured behind basic auth. It doesn't matter how secure or insecure phpMyAdmin is, it only matters how secure whatever webserver is that it is served through. phpMyAdmin code isn't even to
96.
▲
by
TonyTrapp
1y ago
Then you should also be worried about bugs that let you log into an SSH session without providing your SSH certificate, passkey or whatever. Authentication bypass can happen with pretty much any buggy authentication method. None of this i
97.
▲
by
TonyTrapp
1y ago
That's my point - if you have a reasonably secure password (let's say 50-100 characters, fully random), it's extremely unlikely that anyone is ever going to even get beyond the basic auth prompt.
98.
▲
by
TonyTrapp
1y ago
Can you please elaborate how it is "asking for it" if we assume the basic auth password is reasonably complex and kept as safe as, say, the SSH login credentials of the same server?
99.
▲
by
TonyTrapp
1y ago
The point of the fish doorbell is educating people about what lives in the water. There would be much less resource-intensive ways of "solving" the problem, if that was the goal.
100.
▲
by
TonyTrapp
1y ago
My obscure answer on an obscure comment buried in a regular HN thread made it into an article \o/
101.
▲
by
TonyTrapp
1y ago
And what happens if your nose starts running during those 24h?
102.
▲
by
TonyTrapp
1y ago
Changing the duty cycle of a square wave is called Pulse Width Modulation and is an extremely audible and iconic sound. If you have ever heared music any on the Commodore 64, you will familiar with its sound. PWM is also available in many p
103.
▲
by
TonyTrapp
2y ago
I was using a W500 (same generation) until 2018 or so. Upgraded RAM, installed an SSD, and it was my daily driver until the end. But already back then it started to become unbearbly slow especially with background procesesses like file sync
104.
▲
by
TonyTrapp
2y ago
My understanding is that everyone wants to be first in the AI race, so they throw all the rules everyone else agreed on overboard.
105.
▲
by
TonyTrapp
2y ago
Safest would probably be any drive from the "top drives" AccurateRip list here: https://forum.dbpoweramp.com/forum/dbpoweramp/cd-ripper/3247...
106.
▲
by
TonyTrapp
2y ago
At least it's not mice for once.
107.
▲
by
TonyTrapp
2y ago
Not the same thing at all if atop runs as root and you are a user on that system that has no root access. With a well-prepared exploit you could achieve code execution as root. That's a bit more than a simple Denial of Service by filli
108.
▲
by
TonyTrapp
2y ago
If you are serving a Git repository browser and all of those IPs are hitting all the expensive endpoints such as git blame, it becomes something to worry about very quickly.
109.
▲
by
TonyTrapp
2y ago
To be honest, it's in good company with real humans there: https://www.behance.net/gallery/35437979/Velocipedia Maybe it learned from Gianluca's gallery!
110.
▲
by
TonyTrapp
2y ago
We're affected by this. The only thing that would realistically work is the first suggestion. The most unscrupulous AI crawlers distribute their inhuman request rate over dozens of IPs, so every IP just makes 1-2 requests in total. And
111.
▲
by
TonyTrapp
2y ago
That would allow you to specifically lock out that bot based on its user-agent string. That's the main problem with AI scrapers, many of them normally use user-agents that cannot be easily blocked, so other means have to be found to ke
112.
▲
by
TonyTrapp
2y ago
There's source repository browsers (git/svn) way, way leaner than GitLab that have the same issues. Any repo browser offering a blame view for files can be brought down by those bots' traffic patterns. I have been hosting suc
113.
▲
by
TonyTrapp
2y ago
> They're looking for commits because it's nicely chunked, I'm taking a guess. They're not looking for anything specifically from what I can tell. If that was the case, they would be just cloning the git repository, a
114.
▲
by
TonyTrapp
2y ago
> Like from their own ASNs you're saying? Or how are you connecting the IPs with the company? Those are the ones that make it obvious, yes. It's not exclusive, though, but enough to connect the dots. > Are all of those IPs w
115.
▲
by
TonyTrapp
2y ago
As someone that is also affected by this: We see a manifold increase in requests since this LLM crap is going on. Many of these IPs come from companies that obviously work with LLM technology, but the problem is that it's 100s of IPs d
116.
▲
by
TonyTrapp
2y ago
We have seen competitors (big, well-known apps) do things on iOS that most definitely are not possible with public APIs. Either Apple willingfully provides access to these APIs to a select few companies, or they don't care that they re
117.
▲
by
TonyTrapp
2y ago
That I'm aware of, but the claim is that TRIM does not exist for NVMe drives.
118.
▲
by
TonyTrapp
2y ago
> Its funny how "bad" we are as an industry, making rational choices. Like WHY do NVME SSD not implement TRIM? What is it about them that "TRIM" didn't make sense? Maybe CrystalDiskInfo is simplifying things (com
119.
▲
by
TonyTrapp
2y ago
Two things come to mind: - Maximum stack depth greatly varies between targets. If you wanted to support a recursion depth of, say, 50, that may already be too much for some of the hardware this library needs to be able to run on, so the ori
120.
▲
by
TonyTrapp
2y ago
If you are in control of the domain of your email address, enable SPF and DKIM for that domain, together with strict policies that mail servers should reject spoofed mails claiming to come from that domain. If your own mail server supports
More ›