Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Zamicol
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
25 ms
·
241.
▲
by
Zamicol
4y ago
Ed25519 is in the draft standard, as well as Ed25519ph: https://nvlpubs.nist.gov/nistpubs/FIPS/NIST.FIPS.186-5-draft...
242.
▲
by
Zamicol
4y ago
Russian what?
243.
▲
by
Zamicol
4y ago
What is Ethereum, chopped liver? Those that disagreed with the small block Bitcoin plutocrats moved to other projects, mainly Ethereum.
244.
▲
by
Zamicol
4y ago
Thank you for pointing this out, and thank you for the link the the relevant code section. Excellent comment.
245.
▲
by
Zamicol
4y ago
>then they act as protection for all ancestor commits How does that work? My understanding was that a git gpg signature only signs the project at that commit state. It says nothing about past (or future) commits outside of a digest refe
246.
▲
by
Zamicol
4y ago
I don't believe the length is a major issue. It's "upgrading" references to a new hashing algorithm that's the issue. If for some reason length was an issue, a base64 encoded 256 bit string, like a SHA-256 digest,
247.
▲
by
Zamicol
4y ago
This is concerning from a signing perspective. Example: `git commit -a -S -m 'signed commit'` signs the SHA-1 hash directly. Even if the SHA-1 digest is rehashed with a secure hashing algorithm, SHA-256, it would hide the fact tha
248.
▲
by
Zamicol
4y ago
This is one of the reasons why Go has its own versioning system. From a project's `go.sum`: example.com/example v0.0.0-20171218180944-5ea4d0ddac55 h1:jbGlDKdzAZ92NzK65hUP98ri0/r50vVVvmZsFP/nIqo= Where "h1" is
249.
▲
by
Zamicol
4y ago
I believe this is the reason for the submission: >Version: This is version 2022.06.19 of the "Introduction" web page.
250.
▲
by
Zamicol
4y ago
>All libraries we use are constant time. Well, except anything Javascript. "Node.js’s crypto libraries do not provide constant-time guarantees and, unfortunately, are still at the mercy of the JavaScript GC" https://
251.
▲
by
Zamicol
4y ago
Why isn't there an option with a strong cryptographic hash like SHA-256?
252.
▲
by
Zamicol
4y ago
FIDO does some dirty things: >FIDO requires an attestation private key, which must be shared between a batch of at least 100,000 security keys. Using a DIY or cli app solution (application running on the host) will likely mean you'l
253.
▲
by
Zamicol
4y ago
I think you're thinking of Zimmermann: https://philzimmermann.com/EN/contact/index.html
254.
▲
by
Zamicol
4y ago
And Phil Zimmermann. https://en.wikipedia.org/wiki/Phil_Zimmermann#Arms_Export_Co...
255.
▲
by
Zamicol
4y ago
For physics and science history, https://www.youtube.com/c/KathyLovesPhysicsHistory Many of Kathy's videos, especially those on quantum physics and Einstein, I've watched a few times. Here's a good one,
256.
▲
by
Zamicol
4y ago
Dr. Becky is stellar for astrophysics.
257.
▲
by
Zamicol
4y ago
"might have"
258.
▲
by
Zamicol
4y ago
Here's him talking about the design: https://youtu.be/WJ4yF4F74vc?t=29
259.
▲
by
Zamicol
4y ago
Hello, it's me again. We just made public the java script implementation of Coze. https://github.com/Cyphrme/cozejs .
260.
▲
by
Zamicol
4y ago
Now that there's less eyeballs on this. Here's our open source JWT alternative: https://github.com/Cyphrme/Coze . We've got a roadmap in using that to build alternatives to FIDO. Please feel free to me
261.
▲
Mastering Chaos – A Netflix Guide to Microservices (2017)
(youtube.com)
2 points
by
Zamicol
4y ago
|
0 comments
262.
▲
by
Zamicol
4y ago
I didn't hear back from you. Any thoughts on the project?
263.
▲
by
Zamicol
4y ago
I sent you an email. I'm Zamicol everywhere.
264.
▲
by
Zamicol
4y ago
That's so dirty. Of course the centralized control is hidden in the details. Thanks for pointing that out.
265.
▲
by
Zamicol
4y ago
Is there any place that I can PM you?
266.
▲
by
Zamicol
4y ago
Why is there a need for a third party at all?
267.
▲
by
Zamicol
4y ago
"providers allow you to register multiple keys" Why isn't my identity just a Merkle root? I don't understand the need to register individual keys.
268.
▲
by
Zamicol
4y ago
DNS is centralized.
269.
▲
by
Zamicol
4y ago
Docs should be written along with code, while the problem is still fresh in your mind. If there's the need for DOCME, there's possible something wrong with the way a team is writing code.
270.
▲
by
Zamicol
4y ago
SHA2 and SHA3.
More ›