Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
beefhash
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
18 ms
·
121.
▲
When Constant-Time Source Code May Not Save You (2017)
(research.kudelskisecurity.com)
2 points
by
beefhash
7y ago
|
0 comments
122.
▲
by
beefhash
7y ago
Once upon a time, we had version control systems that provided keyword expansion for something like %G% (SCCS, BitKeeper) or $Id$ (RCS, CVS come to mind). With git, this has fallen out of fashion, however, but I'm not sure why.
123.
▲
by
beefhash
7y ago
Honestly, I think at this point we'd be best off discouraging use of Qt once and for all. Their licensing shenanigans have been causing all kinds of issues, and have done so for literal decades. It's fairly clear to me that they&#
124.
▲
Hypervisor Necromancy; Reanimating Kernel Protectors
(phrack.org)
2 points
by
beefhash
7y ago
|
0 comments
125.
▲
by
beefhash
7y ago
Notably from the changelog: It is now possible[1] to perform chosen-prefix attacks against the SHA-1 algorithm for less than USD$50K. For this reason, we will be disabling the "ssh-rsa" public key signature algorithm by default in
126.
▲
OpenSSH 8.2
(lists.mindrot.org)
118 points
by
beefhash
7y ago
|
57 comments
127.
▲
by
beefhash
7y ago
> You cannot join anyone's discord chats without the digital equivalent of showing an ID. This only happens via Tor and oft-abused VPN providers. "Showing ID" has two benefits: 1. It helps mitigate a lot of unsophisticated
128.
▲
by
beefhash
7y ago
Conversely, it's a convenient tool for obfuscation. You can trigger plausible false positives all over, while also making sure that there's nothing of immediate use with binwalk left.
129.
▲
Modern IRC Client Protocol
(modern.ircdocs.horse)
2 points
by
beefhash
7y ago
|
0 comments
130.
▲
Big Integer Design
(bearssl.org)
3 points
by
beefhash
7y ago
|
0 comments
131.
▲
by
beefhash
7y ago
https://missing.csail.mit.edu/2020/security/ > An example of a hash function is SHA1, which is used in Git. It maps arbitrary-sized inputs to 160-bit outputs (which can be represented as 40 hexadecimal characte
132.
▲
by
beefhash
7y ago
Meanwhile on OpenBSD[1]... "A few programs exit with the following non-portable error codes. Do not use them." [1] https://man.openbsd.org/sysexits
133.
▲
Rensenware
(en.wikipedia.org)
2 points
by
beefhash
7y ago
|
0 comments
134.
▲
OpenSMTPD Advisory Dissected
(poolp.org)
6 points
by
beefhash
7y ago
|
1 comments
135.
▲
Atmosphère: A free reimplementation of the Nintendo Switch operating system
(github.com)
2 points
by
beefhash
7y ago
|
0 comments
136.
▲
CacheOut: Leaking Data on Intel CPUs via Cache Evictions
(cacheoutattack.com)
607 points
by
beefhash
7y ago
|
130 comments
137.
▲
by
beefhash
7y ago
That's impossible by means of how they're written. GNU still cares about operating systems that don't bundle the mdoc macros with their troff processor and don't use mandoc (which is... exactly only AIX and HP-UX at this
138.
▲
by
beefhash
7y ago
You may be a weirdo, but I'm in the same boat at least. I occasionally reach out to people and just express my thanks and appreciation. The bewildered reactions are always curious to see, but the worst that's happened once is gett
139.
▲
An Architecture for Interprocess Communication in Unix (1981) [pdf]
(cfcl.com)
3 points
by
beefhash
7y ago
|
0 comments
140.
▲
by
beefhash
7y ago
Can I have only the ligatures that balance whitespace and skip the symbol merging?
141.
▲
by
beefhash
7y ago
I'm not sure what drives you to expect privacy from a communications platform fueled with venture capital money. I wouldn't be surprised they're trying to do at least two things: 1. Applying a censor to voice depending on s
142.
▲
by
beefhash
7y ago
Pedantic note: Jails are not a BSD concept, they're a FreeBSD concept. OpenBSD has no notion of jails.
143.
▲
by
beefhash
7y ago
And Google probably won't touch it anyway because AGPL.
144.
▲
by
beefhash
7y ago
The two hashes aren't compatible, so a hash of the same message will yield two different hashes under BLAKE2 and BLAKE3. As far as I can tell, BLAKE2 has effectively all the properties BLAKE3 has (arbitrary output length, keyed hash mo
145.
▲
by
beefhash
7y ago
Fast hashes are useful for signing, MACs (symmetric "signatures" so to speak), key derivation (HKDF and all kinds of Diffie-Hellman handshakes come to mind), as part of cryptographically secure PRNGs (though most of the world has
146.
▲
by
beefhash
7y ago
> Also POSIX would be even less relevant, and very few would be buying BeOS X for doing Linux coding. I don't think I'd enjoy a GNU userland/glibc/Linux monoculture, quite honestly. I'm glad POSIX exists to have
147.
▲
by
beefhash
7y ago
I am now somewhat curious why syslog-ng needs random bytes on boot.
148.
▲
What is the Random Oracle Model and why should you care?
(blog.cryptographyengineering.com)
1 points
by
beefhash
7y ago
|
0 comments
149.
▲
by
beefhash
7y ago
> The real victory for humanity would be the end of copyright itself. Too much time is wasted on trying to understand and work around this fundamentally broken system. That would also bring about an abrupt end of license wars of permissi
150.
▲
by
beefhash
7y ago
> But webauthn.io and webauthn.guide are both copyright of Duo Labs and so is the library so I guess they can do whatever they want ;) Yeah, I didn't realize that. Tried to edit it in, but too late. > Also the library lives on th
More ›