Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
dvhh
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
13 ms
·
121.
▲
by
dvhh
5y ago
different from vips for webassembly ? https://wasm-vips.kleisauke.nl/playground/
122.
▲
by
dvhh
5y ago
Why is it already a 404, was it retracted ?
123.
▲
by
dvhh
5y ago
The fact that the conversation is happening at all is a sign that GitHub reputation is damaged. As anyone would point out they are certainly within their rights to terminate any account for any reason. But certainly not beyond repair (as in
124.
▲
by
dvhh
5y ago
I think in some case un-necessary and costly procedures were performed as some of the test were inaccurate.
125.
▲
by
dvhh
5y ago
Usually your sample size would be a good indicator of the accuracy of your poll/test/experiment. Of course, like everything it could be biased by the used methodology.
126.
▲
by
dvhh
5y ago
And a lot of people believed it. Pouring billions into something into empty promises.
127.
▲
by
dvhh
5y ago
Keeping the feature around is also a way of not dealing with it.
128.
▲
by
dvhh
5y ago
- Newer version of JDK kind of mitigate the issue by disallowing by default the vector used to get the untrusted code. - Parameters are affected as well as it seems that there is some form of recursive string interpolation going on. - Packe
129.
▲
by
dvhh
5y ago
The thing is with such a large footprint you would have little desire to deal with "this release broke my application" type of ticket that would require you hours of attention before finding out what removed feature broke the user
130.
▲
by
dvhh
5y ago
So how would you know if a feature is safe enough to keep around ?
131.
▲
by
dvhh
5y ago
Meaning that Log4J is certainly not the only library to have the problem, maybe the one with the larger footprint, what about JSP ?
132.
▲
by
dvhh
5y ago
Imagine the liability of publishing any code if you are "responsible" for it. Meaning that you would be responsible for its improper use, or even use for illegal purpose.
133.
▲
by
dvhh
5y ago
For exposure
134.
▲
by
dvhh
5y ago
Tell that to the people that removed their 'leftpad' repository. Or the ones that are taking over FOSS project to inject 'telemetry' spyware
135.
▲
by
dvhh
5y ago
It will be something that we might never know Maybe juste to spite a leaving employee.
136.
▲
by
dvhh
5y ago
That sound like it, but then again the security problem could be a user issue.
137.
▲
by
dvhh
5y ago
I think facebook even had a backlash when it tried to switch to webp for serving image
138.
▲
by
dvhh
5y ago
Tool support was also an issue, I don't remember using any software that supported it out of the box and even less generated one, only a couple of dedicated image viewer/converter.
139.
▲
by
dvhh
5y ago
But compression time were atrocious and decoder were not as fast as the jpeg one (at the time). Marginal support from tool/browser didn't help boost its popularity, and patent situation as pointed in parent comment just shut the c
140.
▲
by
dvhh
5y ago
I think there is an opportunity here for a browser extension to rate content.
141.
▲
by
dvhh
5y ago
In Paris ?
142.
▲
by
dvhh
5y ago
By the same standard, Apple telemetry should also be labelled as "spyware" yet nobody would bat an eyelid at Apple mentioning data of their telemetry reports.
143.
▲
by
dvhh
5y ago
I am pretty sure that in US usual fashion, the bill include other kind of amendment that have no relation with climate change and could have adverse effect on those company business, but yeah let's simplify narrative and say that these
144.
▲
by
dvhh
5y ago
Like using more nuclear power ?
145.
▲
by
dvhh
5y ago
Also on windows, C:\Windows\System32\cscript.exe ( https://en.wikipedia.org/wiki/Windows_Script_Host ) Which run a less modern version of ECMA script, but does have access to COM objects
146.
▲
by
dvhh
5y ago
Apparently they also are suffering from limitations with latest andoid version
147.
▲
by
dvhh
5y ago
Until we have detailed methodology of the experience it does not seems to have been the case (it looked like they use randomized email address). The only traceable bad patch that can be traced to the university was for one student that trie
148.
▲
by
dvhh
5y ago
At least these "deplorables" weren't acting on behalf or with monetary contributions from the MIT Media Lab
149.
▲
by
dvhh
5y ago
While I applaud the initiative (not that they need my recognition), I am somewhat afraid that such withdrawal would snuff out any further debate in the scientific community about proper ethical behavior and its delimitation ( which are admi
150.
▲
by
dvhh
5y ago
16GB should be enough for everyone
More ›