Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
fulldecent
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
61.
▲
by
fulldecent
9y ago
Thank you. This seems like a great idea. I would be more open about it. Rather than fees and membership, I would have a list of contributors and cross-checked publications. Basically like a resume. I.e. if you want to announce a vuln we wou
62.
▲
by
fulldecent
9y ago
Still, thanks for sharing. Research ethics is always something I'm interested to read.
63.
▲
by
fulldecent
9y ago
On my phone call it was very awkward because I am spending lots of time helping them, sending multiple PoCs. But I think it improper to ask for money. Maybe if would count as blackmail. So I didn't. Also their ONLY goal, as per article
64.
▲
by
fulldecent
9y ago
The person I was in contact with was the CTO Michael Raneri and the General Council. And the CTO was promoted to CEO while the bug was still broken. And then he cashed out and sold the company. Escalation enough?
65.
▲
by
fulldecent
9y ago
RE Broken Window. The FBI / NCFTA invited me to speak about this vuln because it may have affected many banks at the time. (Please stop laughing.) They called me to cancel. "Now we're all focused on this big DOS. Do you know
66.
▲
by
fulldecent
9y ago
I sat on this disclosure for ten years because family told me FBI would go after me. Good advice or bad advice, that was ten years of my life that could have been better spent. One time I found a photo printing website made all photos publi
67.
▲
by
fulldecent
9y ago
I would be more supportive if HackerOne just gave me a form so I can do this myself. I do not need HackerOne to take credit for my work and and do not need them to represent me. I'm a big boy and can follow my own ethics and take my ow
68.
▲
by
fulldecent
9y ago
(Actually this should be .com. But I am in Qatar now, maybe that is why.) Hello all, please help with CONSTRUCTIVE feedback. I have set on this story for many year for fear that something bad would happen to my family or me. Now I realize l
69.
▲
What Happens When You Send a Zero-Day to a Bank?
(privacylog.blogspot.qa)
3 points
by
fulldecent
9y ago
|
1 comments
70.
▲
by
fulldecent
10y ago
Thanks everyone and this is great advice. Most of the thoughts here are about standing up to a manager. In my case I am the manager. A big part of my urge to stay is I feel I do not want to leave before employees. I arrive early and on sche
71.
▲
Ask HN: How do you avoid staying too late at work?
25 points
by
fulldecent
10y ago
|
43 comments
72.
▲
by
fulldecent
10y ago
I do this all the time. My company uses BountySource where we can. And sometimes I just walk into GitHub and @ the contributors and offer money like this https://github.com/jekyll/jekyll/issues/3337 Some peop
73.
▲
by
fulldecent
10y ago
My company is Pacific Medical Training and we do CPR training. This is an extremely competitive space with many losers. I saw one competitor at a conference and quickly figured out that the people at the booth did NOT work for the company a
74.
▲
The build system you should use for every website
(github.com)
2 points
by
fulldecent
10y ago
|
0 comments
75.
▲
Google rejects resource integrity for AMP standard
(github.com)
2 points
by
fulldecent
10y ago
|
0 comments
76.
▲
by
fulldecent
10y ago
Thanks, this is a great introduction. I have no idea how I am going to afford this person. But already I don't know how I can afford to NOT have this person!
77.
▲
by
fulldecent
10y ago
I've been thinking about hiring a marketing person. I build things, I'm great at that. I can run businesses, likewise. A little extra press coverage (deserved or not) would be very valuable for me. Any recommendations on hiring fo
78.
▲
by
fulldecent
10y ago
Here is discussion on the effort to move Inkscape to GitHub: https://github.com/inkscape/inkscape/wiki/Migrate-Launchpad-...
79.
▲
by
fulldecent
10y ago
This is a link to a non-authoritative source. Could someone please provide a link to the authoritative source so that I may investigate by myself?
80.
▲
by
fulldecent
10y ago
iOS usage with the tighter permission model is 100%. End of discussion.
81.
▲
by
fulldecent
10y ago
Don't actually look at the project, just look at the MVC part, starting at index.php (and explained in CONTRIBUTING.md).
82.
▲
A great example of MVC in PHP
(github.com)
1 points
by
fulldecent
10y ago
|
1 comments
83.
▲
by
fulldecent
10y ago
See the PROTECT act.
84.
▲
STAT – a standardized format for your acceptance tests
(github.com)
3 points
by
fulldecent
10y ago
|
0 comments
85.
▲
Ask HN: Is Let's Encrypt ACME Susceptible to QUANTUMINSERT MITM?
1 points
by
fulldecent
10y ago
|
0 comments
86.
▲
by
fulldecent
10y ago
You don't. If you can remember it, it will be guessed by a script.
87.
▲
by
fulldecent
10y ago
NIST has a draft recommendation regarding password security in SP 800-63B. This issue discusses amending this to have systems generate a randomized password. This would be preferred rather than users generating their own passwords. The idea
88.
▲
NIST recommendation: Use random generated passwords
(github.com)
2 points
by
fulldecent
10y ago
|
3 comments
89.
▲
by
fulldecent
10y ago
A significant amount of coal is burned in the world today. Much of it is burned in an inefficient way. Retrofitting coal burning plants to burn cleaner would a large impact on global carbon emissions. Replacing coal with cleaner sources wou
90.
▲
by
fulldecent
10y ago
http://www.cnn.com/2016/09/07/politics/hillary-clinton-colin...
More ›