Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
ech
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
You fired your top talent. I hope you’re happy
(medium.com)
460 points
by
ech
9y ago
|
172 comments
2.
▲
by
ech
9y ago
had to edit title to have it fit length limit. paper title is "More is Less: How Group Chats Weaken the Security of Instant Messengers Signal, WhatsApp, and Threema" my edit shouldn't change the meaning.
3.
▲
Group Chats Weaken the Security of Signal, WhatsApp, and Threema
(eprint.iacr.org)
1 points
by
ech
9y ago
|
2 comments
4.
▲
Don't Skype and Type Acoustic Eavesdropping in Voice-Over-IP
(spritz.math.unipd.it)
1 points
by
ech
9y ago
|
0 comments
5.
▲
by
ech
9y ago
absolutely. raising the noise floor would make it harder for the adversary to pick up valuable signals. but why bother with complicated jamming setups that require you to cover a very wide spectrum, at high power, while taking care of not i
6.
▲
by
ech
9y ago
air gapping removes connectivity to the wider world, and a computer system (as in, a system of computers) can totally have value without being connected to anything that is outside of the organization. no need to resort to hyperbolic alien
7.
▲
by
ech
9y ago
you'd be surprised. when specifications get passed around in the endless maze of defense affiliated sub contractors and sub sub contractors, they may be implemented in all kind of creative ways. and i entirely agree that the operationa
8.
▲
by
ech
9y ago
it has been submitted as such on both HN and reddit. i think it is reasonable to clear any misunderstanding.
9.
▲
by
ech
9y ago
that is not what an air gap is. if at any time there is an exchange of data between the air gapped hosts/network and a non air gapped one, there is no air gap anymore. and yes, that includes an analyst taking a sample to an internet-co
10.
▲
Your dog's poop in someone else's hands
(pooperapp.com)
2 points
by
ech
10y ago
|
0 comments
11.
▲
by
ech
10y ago
i am, i get people to use it, and it works well. but superuser2 is right. to be honest, i think we're touching to fundamental limitations in the git model that gitlab cannot solve without becoming rational team concert, and catering to
12.
▲
by
ech
10y ago
if locked code review is coming in, i'll be all over it. just let me select multiple approvals, and nested approvals. it's an immensely useful feature. once again, the more i can define a process in software, the better it is for
13.
▲
by
ech
10y ago
yeah i read the scope. but since the border between scheduling, configuration management, monitoring etc... is extremely blurry, with a high number of interconnection between systems, and lacking any kind of standard contract between them,
14.
▲
by
ech
10y ago
firefox has a plugin that works fine from what i've heard from the others. i still rely by default on totp for generic dual factor auth, since i can provide already working solutions from web to ssh authentication. however, yes for web
15.
▲
by
ech
10y ago
gitlab is gearing up to be the one-stop-shop from development to production. i really like that. unifying the toolset developers and ops have to understand is really a boon for everybody involved. merge restriction as a feature may sound si
16.
▲
by
ech
10y ago
pyrotherapy is a real thing, and has been used very successfully in the treatment of the later stages of syphillis. of course, it only works because syphillis is really temperature sensitive, which isn't the case of the pathogens conce
17.
▲
High Availability Using DNS, HAproxy, Keepalived and Nginx on Openstack
(blog.vialactea.space)
2 points
by
ech
11y ago
|
0 comments
18.
▲
by
ech
11y ago
ccTLDs are the responsibility of "designated managers" for each sovereign country (see https://tools.ietf.org/html/rfc1591 ).
19.
▲
by
ech
11y ago
cough https://news.ycombinator.com/item?id=10352001 cough we're in the process of getting all the zone files we can to reduce the amount of DNS requests we have to do, but the real kicker is whois databases, for ex
20.
▲
by
ech
11y ago
Hi HN a lot has changed since our last Show HN, and i guess it was time to share these change with you. for those who weren't here the first time, we try to catch domain squatting using a bunch of techniques we already used when doing
21.
▲
Show HN: Squatmon, a domain squatting monitoring system, with new things
(squatmon.com)
9 points
by
ech
11y ago
|
1 comments
22.
▲
by
ech
11y ago
yes apparently i broke OCSP. thanks for the tip i'm fixing it now. edit: apparently the error lies around certificate transparency and us lacking a public CT log. the security of the connection itself is not impacted, but i'm look
23.
▲
by
ech
11y ago
Hi HN. (one of the) squatmon developer(s) here this is squatmon, an application we built the last few month, with the goal of automagically detecting brand and domain squatting. i'd love to read your comments.
24.
▲
Show HN: Squatmon, a domain squatting monitoring system
(squatmon.com)
3 points
by
ech
11y ago
|
3 comments