Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
bink
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
1.
▲
by
bink
5d ago
Mind sharing them with the rest of the class?
2.
▲
by
bink
9d ago
There are a lot of theoretical vulnerabilities in various encryption algorithms used by TLS/SSL/DNS. There are also older protocols that have known vulnerabilities but yet don't present a realistic threat to most types of ser
3.
▲
by
bink
10d ago
The TLS/SSL and DNS carveouts are pretty normal. There are a million security options for those services and enabling them all would often mean denying access to anyone running a browser/client more than a few weeks old. Documenti
4.
▲
by
bink
2mo ago
I think there's "bad" in the sense that it didn't accomplish the goal of selling a product (maybe not the case here) and "bad" in the sense that it made many readers cringe or was seen as stupid/tacky. I&#
5.
▲
by
bink
2mo ago
It's just a jump to the left...
6.
▲
by
bink
2mo ago
Boy would I love to see the incident report for these types of incidents. It seems to happen once or twice a year for some airline and yet things never seem to get better.
7.
▲
by
bink
2mo ago
I work in the field and I just cannot believe anyone would pay that much for a Word Press exploit. People pay money for iOS or Android because there is valuable information stored on devices running those operating systems. There's abs
8.
▲
by
bink
2mo ago
Still has a paywall for me.
9.
▲
by
bink
3mo ago
Not exactly. My doctor wanted to start me on a medicine that would make me more likely to develop shingles so he asked me to get the vaccine series before he'd prescribe the medicine. I guess there's no such thing as a prescriptio
10.
▲
by
bink
3mo ago
I appealed a warning I was given for quoting a Simpsons episode (promoting violence, Reddit-wide and not from a sub) and was my appeal was granted.
11.
▲
by
bink
4mo ago
Responding to bug bounty reports is a thankless job. Especially these days it's a flood of AI spam, language barriers, "pay me first", incomplete reports, huge egos, and people who think every find should be treated as a crit
12.
▲
by
bink
4mo ago
I had Claude code up a Slack bot so I could play any Z-machine game co-op with friends. We started up Zork 1, wandered the available map, made it to the cellar, walked north, and hit a room that was insta-death. We still haven't gotten
13.
▲
by
bink
4mo ago
Krebs was fired in 2020, not 2025.
14.
▲
by
bink
4mo ago
Now imagine if the power is out and cell service is down. We saw that happen in San Francisco and it was chaos.
15.
▲
by
bink
4mo ago
The absence of any explanation for the suspension does seem intentional. If it were me that's one of the first things I would've asked so that I could make sure it doesn't happen again.
16.
▲
by
bink
5mo ago
The exploit they chose assumes ASLR is disabled for simplicity's sake, but if you read the full writeup they say they could've used the vulnerability to map memory layout. It's nice to have ASLR but some types of vulnerabilit
17.
▲
by
bink
5mo ago
The guy also had to plug in an old hard drive for Claude to search. Sounds like he had an idea the wallet was on there to begin with.
18.
▲
by
bink
5mo ago
I can't believe any town would vote for a paper mill. It smells like a paper mill.
19.
▲
by
bink
5mo ago
It's worse when your region has issues and your customer's infrastructure is fine.
20.
▲
by
bink
6mo ago
I watched the talk as well and it's very interesting. But isn't this just a buffer overflow in the NFS client code? The way the LLM diagnosed the flaw, demonstrated the bug, and wrote an exploit is cool and all, but doesn't t
21.
▲
by
bink
6mo ago
I honestly think there's more going on here. It seems to be primarily the vain billionaires that are going off the deep end. I experimented with stimulants when I was young and I remember being shocked at how they changed my personalit
22.
▲
by
bink
6mo ago
One of the exploits writes a public key to the authorized_keys file, so it does require SSH be open as well.
23.
▲
by
bink
6mo ago
And some Canada Gooses too?
24.
▲
by
bink
6mo ago
Ironically, Trivy was the first known compromised package and its purpose is to scan container images to make sure they don't contain vulnerabilities. Kinda like the LLM in your scenario.
25.
▲
by
bink
6mo ago
Kids aren't stupid. They'll just create another account when they're old enough to figure it out. They'll tell their friends how to do it and the rest of us will be stuck with these stupid prompts forever like it's
26.
▲
by
bink
7mo ago
Absolutely. They kinda brag about it now. But I think it was just the founders making multiple accounts. It sounds like the new Digg was worried about bots scaring people away from the site with thinly disguised ads.
27.
▲
by
bink
7mo ago
One of the things I always disliked about the original Digg was their threading. The slashdot like feed where the oldest comments were at the top and there was only one level of replies tended to encourage the "first" comments and
28.
▲
by
bink
7mo ago
DESQview was absolutely not crashy. I ran several different types of BBS software in it without issues. The "DESQview (or worse...)" comment raised the hair on the back of my neck. DESQview was revolutionary at the time and I was
29.
▲
by
bink
7mo ago
I've had the same problem for the last few days, just repeated CAPTCHAs.
30.
▲
by
bink
7mo ago
Back in the day we would've just added our IP to the .rhosts file and no password would be required at all! It does have me thinking about what versions of SSH would run on such an old OS. I'm sure there were versions available at
More ›