Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
_wldu
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
10 ms
·
61.
▲
by
_wldu
4y ago
That's probably a cyber crime in most US states. Edit: You guys have no sense of humor.
62.
▲
by
_wldu
4y ago
I agree with the general sentiment, but I would add that Go is a very simple language. It's probably the simplest language I have ever used (besides C).
63.
▲
by
_wldu
4y ago
If you are interesting enough, Signal doesn't help at all. Some nation state will have NSO infect your mobile device with Pegasus and record everything you type, say and do. People need to understand this. There is no solution for mobi
64.
▲
by
_wldu
4y ago
C++0x is one of the reasons Go was created. C++ was getting far too complex: "For me, the reason I was enthusiastic about Go was just about the same time we were starting on Go, I read (or tried to read) the C++0x proposed standard. A
65.
▲
by
_wldu
4y ago
You can use strace to get this information. Linux also offers seccomp and landlock which are very similar to pledge and unveil.
66.
▲
by
_wldu
4y ago
I agree that SELinux is largely unusable in the real-world (especially for custom apps). I've had better experience with path based MACs like tomoyo and apparmor. Firejail is also great for end users who want to safely do online bankin
67.
▲
by
_wldu
4y ago
I'm not sure it is. Software development has become more decentralized and more complex than it was 20 years ago. It's also much more accessible to more people who may be great programmers but not really aware of code/reposit
68.
▲
by
_wldu
4y ago
Consider buying stock in companies that produce real products that everyone needs. Food, cleaning supplies, toilet paper, hygiene, etc. It's hard to go wrong doing that.
69.
▲
by
_wldu
4y ago
It has more insulation value than wood too and termites don't eat it. Downside is it can crack (especially on unstable ground) when settling.
70.
▲
by
_wldu
4y ago
Yes. Anyone who has listened to a FM radio station in a car traveling down the highway would understand that FM stations (while clear and abundant) quickly fade away as you drive out of range.
71.
▲
Ask HN: Agents for Password Protected Age Keys?
1 points
by
_wldu
4y ago
|
0 comments
72.
▲
by
_wldu
4y ago
You can also run a simple rest API on the machine hosting the sqlite DB and access it from other machines. I've found that works fairly well. Clients -> Internet -> API -> sqlite
73.
▲
by
_wldu
4y ago
Compliance and audit driven organizations are more likely to do these things. They want consistency and control across the org. What they fail to realize is how that same consistency and low level control can be used against them. And, more
74.
▲
by
_wldu
4y ago
As an aside, those same low-level remote management tools are used by cyber actors (criminals and governments) to compromise entire organizations with ransomware and other malware. That's the real reason ransomware is such an issue tod
75.
▲
by
_wldu
4y ago
The most secure way to do this would be to run Qubes OS [1] and use a qube dedicated solely to your software development. You can do your random web browsing and other risky Internet based things (such as email) in other qubes (not your dev
76.
▲
by
_wldu
5y ago
$HOME/bin is useful as well. I like that I can have my own software (that I wrote and compiled) in my home folder and don't need to ask a sys admin to install it for me.
77.
▲
by
_wldu
5y ago
Assuming you are a US citizen, you likely have no need to worry about FVEY [1] targeting you unless a judge has been convinced you are a very bad person and issues a warrant. You do have to protect against cyber-criminals and potentially ot
78.
▲
by
_wldu
5y ago
SSH certificates are useful in large environments when scaling, automatic onboarding and offboarding are important, but IMO, small teams can (and should) continue using authorized key files as they have for years. They don't really nee
79.
▲
by
_wldu
5y ago
I wonder if the OpenBSD team would be open to Go or Rust implementations?
80.
▲
by
_wldu
5y ago
Yes, putting every device in Windows AD and installing remote management tools that run at the system level is a recipe for total compromise. Software diversity is good. Remotely controlled mono-cultures are bad. IT management and security
81.
▲
by
_wldu
5y ago
A lot. Pen tests, red teams, simulations, etc. The point is, if they want someone poking around these systems, they'll contract with them to do that. You should not tamper with them just out of curiosity. Convicted felons have a hard t
82.
▲
by
_wldu
5y ago
Gas stations are probably considered 'Critical Infrastructure' by the US government as they are part of 'Transportation Systems' infrastructure. Tampering with their computer systems (even just out of curiosity) is proba
83.
▲
by
_wldu
5y ago
Relevant blog post 'Now They Have 2FA Problems' : https://www.go350.com/posts/now-they-have-2fa-problems/
84.
▲
by
_wldu
5y ago
I believe man -k just runs apropos.
85.
▲
by
_wldu
5y ago
apropos first then man second.
86.
▲
by
_wldu
5y ago
Some people seem to be unaware of apropos too (old text based cli tool). $ apropos network interfaces (5) - network interface configuration for ifup and ifdown aseqnet (1) - ALSA sequencer connectors over networ
87.
▲
by
_wldu
5y ago
Go has maps already. A set is just a map where the key and value are the same thing.
88.
▲
by
_wldu
5y ago
End user convenience.
89.
▲
by
_wldu
5y ago
Having been a CISO, I would also add that this really depends on the company. Some companies want to be technically secure (Google, Facebook, etc.), others want to be compliant to regulations (do the basics, check the box and move on) and a
90.
▲
by
_wldu
5y ago
bcrypt, scrypt, argon2 or any other reasonably strong password hash will not be cracked in a few days (unless the passwords are simple dictionary words).
More ›