Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
andwur
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
31.
▲
by
andwur
8mo ago
One needs to only witness an exec team or board meeting to realise that loyalty as a concept doesn't exist at the top for the vast majority of companies. You're 1.8% of the accounts department budget, or 0.02% of the head office b
32.
▲
by
andwur
9mo ago
They could have taken a more defence-in-depth approach to key storage and encrypted the cloud copy of the Bitlocker key with a random master key itself protected by a user password-derived key arrangement, with any crypto action occuring on
33.
▲
by
andwur
9mo ago
Considering the number of x86 machines I've come across in fleet deployments that were put into various states of brickdom from Windows Update, I would not be at all surprised if it was a bad update-rollback sequence. Laptops seem part
34.
▲
by
andwur
9mo ago
Likely cheaper to just coat the real drones in an aerogel or similar light weight, high thermal resistance material. It's an arms race still, but one with a reasonable amount of asymmetry in favour of an attacker.
35.
▲
by
andwur
1y ago
You likely ran into anti-fraud provisions with that scenario, specifically identity theft prevention. Having worked at a similar business for years, a trend for high fraud occurrence is squeaky clean credit file-high income applying for low
36.
▲
by
andwur
10y ago
I'm really interested in this too. I'm tossing up between something like this (maximum thread count but probably high power usage) or a Ryzen build (simple and low power). That CPU has a TDP of 115W but I can't find much info
37.
▲
by
andwur
10y ago
If they were a research organisation then I would have nothing but respect for Facebook's accomplishments. However they are not a research organisation but instead a for-profit corporation that devotes an obscene amount of money and ef
38.
▲
by
andwur
10y ago
Well there's Watson [1]. It obviously performed very well in Jeopardy! and it sounds like they had some novel ideas and techniques behind the implementation. I'm not sure how cool this is anymore however. Our company was evaluatin
39.
▲
by
andwur
10y ago
YMMV obviously but having used CyanogenMod for the past few years on various devices I've found it to generally exceed the stability of vendor-provided Android. Not to mention the better user experience and more rapid security patchi
40.
▲
by
andwur
10y ago
If the included file is writable by the PHP user then I would say that poses a reasonably high security risk; potential privesc, information disclosure, RCE. Of course an attacker would need the ability to manipulate local files as the PHP
41.
▲
by
andwur
10y ago
It cost me $250 ($100 of which was 300m of Cat6) and a very tedious, insulation filled, Sunday to wire my house up with 1Gbit ports in every room. Comparing that to the price of the current batch of AC WiFi access points (that look like ste
42.
▲
by
andwur
10y ago
I think they mean that viewing the costs induces gibbering in the viewer.
43.
▲
by
andwur
10y ago
I would imagine so, particularly in cryptography, being able to view the source is not the same as being able to (easily) verify it doesn't contain any backdoors. See ECDSA as good example; we can see the entire standard and yet we can
44.
▲
by
andwur
10y ago
Perhaps they feel the Note 7 name has been completely burnt (sorry!) in the public's eye and any attempt to salvage it at this point would cost them more than they could ever hope to recoup from further sales. The only other thing I ca
45.
▲
by
andwur
10y ago
They appear to all be regular ZIP files that contain malware as opposed to ZIP files that are themselves malware.
46.
▲
by
andwur
10y ago
1) security 2) annoyance 3) disagree with tracking 4) speed (rural internet yay!) I find it particularly annoying when clients demand adverts on paid-product sites, i.e. they have a site which is fully funded by their sales but they want th
47.
▲
by
andwur
10y ago
"Instagram is foodless" You deviant! Also it's Bouquet dear! Really...
48.
▲
by
andwur
10y ago
"How dare you comment on the flaws found in someone's project!" If issues are never brought to light then it's very unlikely they will ever be fixed. Would you rather everyone just stayed silent? I have great respect for
49.
▲
by
andwur
10y ago
I haven't spent much time browsing through the source but the code quality and security is pretty dismal so far. Not to mention the confusing project structure. Magic numbers, ... and strings, all over the place [0]. Memory leak galore
50.
▲
by
andwur
10y ago
Not particularly. Besides the fact that was only one of many possible delivery vectors available, e.g. XSS, direct compromise of a visited site etc, it's one with quite a high chance of succeeding* in the wild. * when the target isn&#x
51.
▲
by
andwur
10y ago
Assuming I'm understanding you correctly you sent 11,000 emails in under 24 hours to 10-15 people? For a newly created account I could understand that raising a few red flags. Though that doesn't justify their support staff failin
52.
▲
by
andwur
10y ago
If you're relying on crawlers to build your database how do you plan on dealing with spam traps? I see you have a verification aspect to your service but from what detail you have provided it would be incapable of distinguishing legiti