Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
bazoom42
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
4 ms
·
31.
▲
by
bazoom42
3mo ago
As far as I know we have no Persian sources for the batte of Thermopylæ. Historians also agree that Xerxes couldnt possibly have had a million man strong army. Does this mean the war is entirely fictional? Ancient sources tend to be strongl
32.
▲
by
bazoom42
3mo ago
How so? Are the Greek the sea people then?
33.
▲
by
bazoom42
3mo ago
We dont know that.
34.
▲
by
bazoom42
3mo ago
Whould would you have preferred?
35.
▲
by
bazoom42
3mo ago
The point of art (like music and litterature) is the art itself. Code is a craft, it is means to an end. It can still be beautiful and impressive and creative, but it is a different thing. It is not a value judgement. Art can be bad or blan
36.
▲
by
bazoom42
3mo ago
Best solution: Learn SQL and understand the relational model. Learn data modelling and normalization. Then choose a good ORM which does not get in the way, but saves a bunch of boilerplate code.
37.
▲
by
bazoom42
3mo ago
Ah, that sounds like a classic mistake - rewriting a system from scratch without fully understanding what the system actually does.
38.
▲
by
bazoom42
4mo ago
Are you referring to some particular projects, or to the early stages of every project?
39.
▲
by
bazoom42
4mo ago
The article refers to the astronomical calendar, which is differnent from the gregorian by having a year 0, which makes calculations simpler. After year 1 the years have the same numbers, but before 1 they are off-by-one. Years before 0 is
40.
▲
by
bazoom42
4mo ago
YAGNI is not about things you know you need, because then you wouldn’t write any code ever.
41.
▲
by
bazoom42
4mo ago
How so?
42.
▲
by
bazoom42
4mo ago
Stalk their children? What policy are you referring to?
43.
▲
by
bazoom42
4mo ago
Very charitable to call it a “grey zone” to stalk and dox children of politicians you dislike.
44.
▲
by
bazoom42
4mo ago
Usually it is not a secret, but currently the prime minister and her family live at a secret address.
45.
▲
by
bazoom42
4mo ago
Probably, but note that cross-domain GET-requests have been supported since the beginning of the web, since this is literally how links works. So while a badly implemented GET handler can indeed cause security issues, this is old news and u
46.
▲
by
bazoom42
4mo ago
Depends. If the abstraction is just a level of indirection, then it is usually pretty simple to eliminate - just hit “inline function” in the refactoring tool a few times. On the other hand it is pretty difficult and error prone to consolid
47.
▲
by
bazoom42
4mo ago
You are kind-of both right. The spec defines a subset of cross-domain requests called “simple requests” - basically such requests as has always been supported by a plain html form. These are not affected by same-origin or CORS. So you can p
48.
▲
by
bazoom42
4mo ago
It is the difference between opt-in and opt-out. Servers certainly can (and probably should) check request origin. But it is not something they usually do, since cross-domain requests from JavaScript wasn’t possible before CORS. If support
49.
▲
by
bazoom42
4mo ago
Yes, the original CSRF attack using a plain html form does not even require JavaScript. CORS does not address this scenario. But cross-domain post is only allowed if the payload is form data encoded. A Json payload from JavaScript would be
50.
▲
by
bazoom42
4mo ago
CORS allows JavaScript to make requests to different domains than the origin of the page. By default (without CORS), JavaScript can only communicate with the origin domain.
51.
▲
by
bazoom42
4mo ago
“Can still talk to, but cant read the response” is a bit too simplied. You can’t post a json payload for example, which is how a JavaScript client would usually talk to a backend. You can only post using form data encoding, since this is al
52.
▲
by
bazoom42
4mo ago
Example: I post “fungame.com” on Show HN, you visit it, and in the background the JavaScript calls Facebook on your behalf (using your Facebook authentication cookie) and adds me as friend. By default such cross-domain requests from JavaScr
53.
▲
by
bazoom42
4mo ago
CORS is counter intuitive. I don’t think there is a better way to solve the problem, it is just a difficult to understand problem. CORS errors occur when JavaScript in the browser attempts to call a server which is not configured to allow i
54.
▲
by
bazoom42
4mo ago
Not questioning the particular finding, just wondering in general. E.g when linear B or hieroglyphs were cracked, you could check angainst other untranslated texts and see if the translation still made sense.
55.
▲
by
bazoom42
4mo ago
I wonder how you would even know if you have “cracked” it, given the corpus is so small?
56.
▲
by
bazoom42
4mo ago
Still comes off as rather condescending, honestly. Why not just explain the thing that needs explaining.
57.
▲
by
bazoom42
4mo ago
The comic explains it better: Don’t act surprised if sombody doesn’t know something - even if you are genuinely surprised. > I think it's generally best to be open in communicating with others I’m pretty sure you wouldnt blurt ou
58.
▲
by
bazoom42
4mo ago
What do you like about Java compared to C#?
59.
▲
by
bazoom42
4mo ago
Not which works under the same constraints as the web. But for simpler scenarios (like fixed-sized paper, desktop displays before super-wide screens), you can have both simpler and more precise layout systems.
60.
▲
by
bazoom42
4mo ago
This is fascinating. Do you enjoy music?
More ›