Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
awirth
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
91.
▲
by
awirth
9y ago
I read it as though the rotations were expensive, so they were memoized. In this case, it really could be much more than 24 times faster.
92.
▲
by
awirth
9y ago
Ooops, missed this thread. I did a little mini-writeup of what happened on a different branch if anyone is curious on the details: https://news.ycombinator.com/item?id=14512598
93.
▲
by
awirth
9y ago
As someone completely unfamiliar with this space, this prompted me to do some reading into this rclone issue. I'll record it here for anyone else similarly curious. It seems that as of a few months ago, two popular (unofficial) command
94.
▲
by
awirth
9y ago
Source on the 1PB guy for the curious: https://www.reddit.com/r/DataHoarder/comments/5s7q04/i_hit_a...
95.
▲
by
awirth
9y ago
If you're interested in a more comprehensive source on setting up these sorts of malware analysis labs I would recommend Tony Robinson's "Building Virtual Machine Labs: A Hands-On Guide"[1] It is a very detailed guide an
96.
▲
by
awirth
9y ago
For those confused, the linked patch page[1] has says that the patch got integrated into Debian (and Ubuntu) from 4.0.3-10, which means it would have been available since Lenny (2009). [1]: http://fungi.yuggoth.org/vsp4s
97.
▲
by
awirth
9y ago
Also for those familiar with CTF terminology, TL;DR is: Online; Jeopardy; Finals onsite (4/team) w/ cash prize.
98.
▲
by
awirth
9y ago
Also: "Entrants warrant that their codes are their own original work and, as such, they are the sole and exclusive owner and rights holder of the submitted code and that they have the right to submit the code in the Contest and grant a
99.
▲
by
awirth
9y ago
Awesome! Thanks for sharing. This is going to be really useful for doing CSRF attacks in XSS challenges at CTFs. I always just write the javascript to construct and post the form by hand, but this will be much faster, especially because you
100.
▲
by
awirth
9y ago
This is confusing to me. The link describes narrowing the search space to ~136.17bit, but that is still far too large to be tractable. Do they get an additional birthday bound on that somehow? 68 bits would not be insane, but I don't r
101.
▲
by
awirth
9y ago
Perhaps you're thinking of this thread? https://www.reddit.com/r/space/comments/2xvdow/why_worry_abo...
102.
▲
by
awirth
9y ago
Yep, seems like this was a problem. It's semi-protected now, but not after a bit of a back and forth vandalism: https://en.wikipedia.org/w/index.php?title=Whopper&offset=20... Note that the edit in question st
103.
▲
by
awirth
10y ago
Natalie Silvanovich of Project Zero gave a talk at REcon last year about how she finds flash bugs, and she went into her methodology some: https://www.youtube.com/watch?v=JbvwCEOxyrA
104.
▲
by
awirth
10y ago
This is a bit disingenuous. It's almost impossible to measure the output of the other teams/consultants because their reports are never made public. I wish that we had more opportunities available for researchers to do the work th
105.
▲
by
awirth
10y ago
What other ones have been reviewed? I'd be interested to read the audit reports.
106.
▲
by
awirth
10y ago
There are definitely groups of men that feel this is the case and that they have been wronged. Good articles on how this manifests online are https://thebaffler.com/salvos/new-man-4chan-nagle and https://www
107.
▲
Boston Key Party “SIDH-RSA-AES128-GCM-SHA256” Challenge Writeup
(github.com)
2 points
by
awirth
10y ago
|
0 comments
108.
▲
by
awirth
10y ago
You might want to take a look at how Django does it, which is more or less an accepted best practice. https://docs.djangoproject.com/en/1.10/topics/auth/passwords...
109.
▲
by
awirth
10y ago
An invariant you get from most kernels is that all new memory pages are zeroed when mapped into processes (normally through mmap or sbrk), so you only have the paging problem when initializing with a value other than zero.
110.
▲
by
awirth
10y ago
Wow this rabbit hole is impressive. I'll summarize to the best of my understanding (I'm no expert in X). Basically, chrome uses an X property called _NET_WORKAREA (which is basically supposed to be a rectangle that includes all th
111.
▲
Show HN: Firefox addon for detecting GPS EXIF info in JPEGs automatically
(github.com)
13 points
by
awirth
10y ago
|
0 comments
112.
▲
Firefox addon for detecting GPS EXIF info in JPEGs automatically
(github.com)
2 points
by
awirth
10y ago
|
0 comments
113.
▲
by
awirth
10y ago
It's definitely an optimization thing, but I'm not actually sure off the top of my head why. According to https://gcc.gnu.org/onlinedocs/gcc/Optimize-Options.html#Opt... -falign-functions is enabled at -
114.
▲
by
awirth
10y ago
The nop and xchg in the GCC output are padding to make the next function aligned. You can ignore everything after the ret. The execution of movzx should be negligible. The big difference between the code generated by GCC and the code genera
115.
▲
by
awirth
10y ago
Most torrent clients do support encryption (opportunistically), although the bittorrent protocol's encryption is relatively weak and uses RC4. It should be considered more obfuscation to avoid DPI and whatnot. Bittorrent peers are fund
116.
▲
by
awirth
10y ago
This is very strange, as I highly doubt they're crawling the entire DHT space, and even if they did they would be getting only infohashes. These are hashes of (a subset of) the torent metadata (including the chunk hashes), so it won&#x
117.
▲
by
awirth
10y ago
Thanks for the PR! It's certainly possible that there are some TLB issues with transparent huge pages that mess up the results. I've had a terrible time debugging the performance across different machines, browsers and OSes, and t
118.
▲
Show HN: Docker template for HPHPc
(github.com)
2 points
by
awirth
10y ago
|
0 comments
119.
▲
by
awirth
10y ago
I think it's this too. The L3 cache seems to be consistently harder to measure than the L1 or L2 caches. I suspect it's just noise from other cores, but I have no strong evidence to support that.
120.
▲
by
awirth
10y ago
Before my VPS folded it was mostly bot traffic, which I hadn't been expecting. Evidently many follow the HN RSS feeds and hit new posts (repeatedly..) when they show up.
More ›