Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
asimops
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
61.
▲
by
asimops
2y ago
Nothing will prevent that. The question is, what would you do with the stolen credentials in terms of privilege escalation? Suppose we are in a situation where the UAC is on and asks for every action on the secure desktop. Even if you were
62.
▲
by
asimops
3y ago
This looks like a full VPN service for me. Since wireguard is only the session part of a VPN service, i.e. missing session management and key distribution, this would not be a proper comparison IMHO
63.
▲
by
asimops
3y ago
> ActivityPub puts timestamps on things so you can ask your Mastodon server for everything that's been updated since the last time you polled. RSS makes you poll over and over again and download everything. so instead of downloading
64.
▲
by
asimops
3y ago
I have zero issues with paying in general. What I don't see, is me paying for the worse service. Youtube Premium is 12.99€ a month for me. For that small price I get to create a Google Account, accept their TOS, let them track and prof
65.
▲
Asrock should be fined for breaking the law [video]
(youtube.com)
1 points
by
asimops
3y ago
|
0 comments
66.
▲
by
asimops
3y ago
Good germans have a business phone, so they can justify to be reachable 24/7! Obviously, the companys data protection office will prevent WhatsApp on the business phone, so no work phone numbers were at risk!
67.
▲
by
asimops
3y ago
The thing I am missing the most is some kind of HTTP-01 by proxy, like https://github.com/acmesh-official/acme.sh/wiki/Stateless-Mo... If DNS-01 is not an option or to complicated, this saves you from exposin
68.
▲
by
asimops
3y ago
PSA: systemctl reload caddy will call this api. If you disable it, then reloading the server will no longer work.
69.
▲
by
asimops
3y ago
Use this static analyzer to check for such mistakes: https://github.com/yandex/gixy
70.
▲
by
asimops
3y ago
Personally i am really happy with mailbox.org German provider that tries to be a gsuite replacement. I cannot know challenges that come from non eu payments, but it is a prepaid model.
71.
▲
by
asimops
3y ago
139.7mm x 79.5mm Just imagine, they would remove the crap in the middle and sell it for a reasonable price. Finally an android flagship with proper sizing and GrapheneOS.
72.
▲
by
asimops
4y ago
OT: The only thing I see when visiting the site is "An unexpected error has occurred.", despite transporting ~1.3MB of data and having all text content there in the ~5KB of initial html response... Why is web like this?! Why does
73.
▲
by
asimops
4y ago
Have a look here: https://smallandroidphone.com/
74.
▲
by
asimops
4y ago
Well, I don't deny that there should be an option. Look at the parent post. But having root in the running OS seems to be a bad idea. I got this position after an extensive talk on this with some of the graphene os developers. They exp
75.
▲
by
asimops
4y ago
The problem with rooting the phone is that it actually compromises features like verified boot and selinux namespacing. I still want those security features for daily use. I still need a way around this, but it at least has to be technicall
76.
▲
by
asimops
4y ago
OT: With the current state of smartphone operating systems, I would need one of those to be release every other month or so. I cannot get to data on 'my' system, because an app decided to put it in their app folder, which I cannot
77.
▲
by
asimops
4y ago
SGX, the technology which Signal Messenger built a lot of their secure? stuff upon. Like: Technology Preview for secure value recovery < https://signal.org/blog/secure-value-recovery/ > Technology preview: Pri
78.
▲
by
asimops
4y ago
FYI, in modern ssh Compression delayed is equal to Compression yes which is the default already. With regards to PerSourceMaxStartups PerSourceNetBlockSize how do you configure it, in order to not make it a DOS vector
79.
▲
by
asimops
4y ago
What do you mean with the not trusting VPN to keep logs, etc.? It's your VPN, you host it, why would you care if you log youself or not?
80.
▲
by
asimops
4y ago
On a technical term, if I were to find a 404 for a domain, I know there is a webserver there. Is this really helping all that much?
81.
▲
by
asimops
4y ago
But that would be a 'real' security measure. Security by obscurity would be to park it 3 miles away where noone would think you parked it and relabel it as a Skoda.
82.
▲
by
asimops
4y ago
In SMTP, isn't it especially valuable to have DNSSEC for using DANE and not having to rely on the centralized web PKI?
83.
▲
by
asimops
4y ago
Its an interesting article and while I didn't have the time to think the topic through - so I will not share my thoughts on the subject - there are some points in it, which I will definetly think about. What I must say though, while th
84.
▲
by
asimops
4y ago
I agree that NATv6 is a bad idea, but imo we neeed firewalls on the router. Because on paper a endpoint firewall is a good idea, because you take that with you even when you change the network, but... then there is the Windows firewall: - A
85.
▲
by
asimops
4y ago
I am currently using a Pixel 4a, which in my opinion is the latest useable Pixel. Since we are basically doing market research, here is my take ;) It is kind of sorted by relevance as it is in the order in which it came to my mind. Here is
86.
▲
by
asimops
4y ago
Just imagine: - Not allowed to change authoritative DNS - CAA set to everything except LE - cannot set CAA to LE Wouldn't it be nice?
87.
▲
by
asimops
4y ago
Using phone numbers as a second factor should be in line with using MD5 for password hashing. It doesn't mean that MFA (or hashing) are a bad idea, just that you need to deploy it properly for it to make a difference.
88.
▲
by
asimops
5y ago
I lied. While reading the rest of the thread, one more thing came to mind: Microsoft grants itself several exceptions in the firewall which are restored even if deleted by the user. Stuff like allow inbound any to cortana...
89.
▲
by
asimops
5y ago
I haven't seen candy crush on any enterprise installation to date. Maybe you are mistaken?
90.
▲
by
asimops
5y ago
The only thing I get actively annoyed about in Windows 10 Enterprise is the forced installation of that onedrive crap. You can remove that by making your own image but that is still scummy as hell and not different to bundling Windows media
More ›