Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
alcari
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
61.
▲
by
alcari
12y ago
This reminds me of [1], where scratch-off games were founded to be using PRNG output improperly, allowing winning tickets to be identified without playing them. [1]: http://www.wired.com/2011/01/ff_lottery/
62.
▲
by
alcari
12y ago
> The first tidbit is “PERRIN” this is referencing Perrin numbers. I 100% confident that we are the only people to ever hit that wiki page, ever. Almost: I was on that wiki page while waiting in line around 3 am Thursday morning (speaker
63.
▲
by
alcari
12y ago
1o57 designs the DEFCON badges every year.
64.
▲
by
alcari
12y ago
Not necessarily, because things like robots.txt will still prevent it from ending up in search engine results.
65.
▲
by
alcari
12y ago
The basic rules they recently published for D&D 5 read a lot like the 3.x rules, to the point that I was referring back to the 3.5 Player's Handbook to see the differences in some areas.
66.
▲
by
alcari
12y ago
The quote is wrong: ZFS checksums both the user data and metadata in a Merkle tree, optionally using cryptographic hashes (i.e. SHA256).
67.
▲
by
alcari
12y ago
In that case, it's still backwards, because the normal close button on OSX is on the left.
68.
▲
by
alcari
12y ago
I believe that's referred to as "mail fraud".
69.
▲
by
alcari
12y ago
> there's no need for special support in the DNS system or other infrastructure Many TLDs disallow registrations containing punycode. Take a look at Wikipedia's (incomplete?) list of those that do: https://en.wikiped
70.
▲
by
alcari
13y ago
Yeah, key signing parties aren't that uncommon in some circles. Everybody gets together and signs pgp keys in person.
71.
▲
by
alcari
13y ago
It seems a bit disingenuous to advertise "RAID 1" on the main page, when it's only software RAID. If I want software RAID, I'll install it myself. Advertising RAID implies (to me, at least), that there's a hardware
72.
▲
by
alcari
13y ago
> I don't think the attacker could reasonably expect to get you to enter two 2FA in a row. Just tell the user the first one failed, and ask them to enter another.
73.
▲
by
alcari
13y ago
FTA: "In the interest of responsible disclosure I did try and contact the dev multiple ways, I was either ignored or not replied to and I feel users deserve to know what’s happening with their data."
74.
▲
by
alcari
13y ago
That may be possible, but they also accepted non-passport images, which don't necessarily have such information.
75.
▲
by
alcari
13y ago
No, let's not "forget" about the NSA. Other groups may be doing bad things too, but that doesn't diminish the badness of the bad things done by the NSA (or anyone else).
76.
▲
by
alcari
13y ago
As I can no long edit my comment: when I made the parent comment, the title referred to them as _Obscure_ tools.
77.
▲
by
alcari
13y ago
I don't really think it's fair to call anything that's in a POSIX standard obscure (like xargs). Most of these are fairly common, and many of the descriptions are terrible, for example: `rsync` doesn't "[Keep] files
78.
▲
by
alcari
13y ago
%-based string interpolation still works in python 3.
79.
▲
by
alcari
13y ago
If you find yourself often having to manually access the console on a production system, clearly something in your testing and deployment methodology is horribly wrong.
80.
▲
by
alcari
13y ago
[n.b: I'm used to duck typed languages, where you can get away with far more shenanigans.] > "Can I guarantee every function that expects T to behave exactly the same way when I pass P (where P is a subclass of T)". Almost
81.
▲
by
alcari
13y ago
> 87% of Airbnb hosts in New York share only the home in which they live Does this mean they're admitting that 13% of Airbnb hosts in New York are sharing other properties? I was under the impression that Airbnb strongly denied such
82.
▲
by
alcari
13y ago
Adding a single root to locally installed copies of a web browser is only really useful for 2 things: testing an SSL configuration for development, and deploying your own CA to all computers on an intranet to so you can MITM their traffic w
83.
▲
by
alcari
13y ago
Jonathon Swift would also recommend children: https://en.wikipedia.org/wiki/A_Modest_Proposal
84.
▲
by
alcari
13y ago
> Microsoft IIS susceptible to CVE-XXXXXXXX. Recommend applying accordingly patch. > Another almost good finding - but according to the appendix, this host is a RHEL 5.x box. Those sysadmins - finding ways to run IIS on linux!! Bril
85.
▲
by
alcari
13y ago
The game's subscription model is actually implemented in such a way that you can have an item (a "Pilot's License Extension", PLEX) that represents a month of account time. PLEX can then be bought and sold by players in-
86.
▲
by
alcari
13y ago
There's work being done on making WebKit work[0]. [0]: https://www.haiku-os.org/blog/pulkomandy/2013-12-20_webkit_w...
87.
▲
by
alcari
13y ago
> I'm no fan of the idea. It sounds like you're actually not a fan of this implementation, not of the idea of a map of paintings. Would you still be opposed to it if the data was always accurate, the previews were larger, and t
88.
▲
by
alcari
13y ago
Russia still controls the .su tld and allows registering new domains under it.
89.
▲
by
alcari
13y ago
Any method that doesn't open you up to remote code execution exploits is an improvement over that.
90.
▲
by
alcari
13y ago
Here's a relevant, interesting talk [0] from 24C3 about engineering organisms. [0] https://www.youtube.com/watch?v=gadBNBJRPr0
More ›