Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
g_p
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
14 ms
·
91.
▲
by
g_p
3y ago
Also another reason - a generation site may be curtailed, meaning that its output is restricted due to grid capacity limitations, and allowing it to export more energy onto the local power network may exceed safe operating parameters for th
92.
▲
by
g_p
4y ago
The UK has a few pretty good schemes (e.g. Cyber Prevent) that try to intervene and stop young people before they get landed with a criminal record for (lower level) cyber crime - at one point the average age at time of arrest was 17.
93.
▲
by
g_p
4y ago
It seems like malware stealing browser cookies of authenticated sessions can work around even U2F, and highlights a bit of a hole in how sessions are protected (or not), and where it may make sense to reauthenticate the user when in doubt.
94.
▲
by
g_p
4y ago
Beware that, depending on country and indeed specific university, some will attempt to claim ownership of IPR you develop as a student while studying for a PhD. This isn't across the board, and different institutions have completely di
95.
▲
by
g_p
4y ago
For an org that has an enduring billing relationship with the customer (think the large tech companies and platform providers), they already are handling transaction aggregation internally to an extent - just not to the extent of micro-tran
96.
▲
by
g_p
4y ago
The bandwidth alliance ( https://www.cloudflare.com/bandwidth-alliance/ ) seems to be trying to do something about this, and build an ecosystem of companies that don't charge for egress to others. Presumably this is
97.
▲
by
g_p
4y ago
> Even if we're just talking about the level of what GPT 3.5 is capable of, that still corresponds to, let's say, a college freshman level of writing. Indeed - the output of ChatGPT to a very quickly thrown together prompt and
98.
▲
by
g_p
4y ago
Not the parent poster, but I suspect this may be pointing towards humanities-based subjects, where I've seen regular assignments in the form of essays on fairly subjective topics. I do think there will be a challenge in handling use of
99.
▲
by
g_p
4y ago
Indeed - but you still require that "subject matter expert" ability to actually evaluate the output and figure out if it's coherent or correct. That tends to require a fairly high level of techniacl knowledge (and confidence
100.
▲
by
g_p
4y ago
I think the key skill being overlooked is the ability to spot when someone (or something) is wrong, and correctly and accurately call it out and justify why it's wrong. Critical evidence-based thinking and the ability to properly apply
101.
▲
by
g_p
4y ago
Indeed - in the past, some browser extensions would auto fill into iframes and similar, using the origin identity of the page container, even when the field was invisible. That's obviously an issue, but sticking to manual actions (part
102.
▲
by
g_p
4y ago
Browder (founder) appeared to also acknowledge that it was not fit for purpose as well [0]. If something that's providing input to a formal legal process (which, let's not forget, means false or inaccurate statements have real and
103.
▲
by
g_p
4y ago
Indeed - and this is not new. Many years ago, I took a look to see what all the fuss was all about. From start to end, he/his product seemed amateurish. From giving out a herokuapp.com subdomain in early press releases (which were repu
104.
▲
by
g_p
4y ago
This seems like a use case for an offline password manager (which will no doubt still run on the same device, and therefore offer limited benefit), or doing something like gpg encrypting the information to your own gpg key (and storing that
105.
▲
by
g_p
4y ago
Yes, 2FA/MFA only serves as access control, to limit who can retrieve a copy of your encrypted vault from the server (to then decrypt locally). Like in the Lastpass scenario, if someone gets a hold of your vault from a server side back
106.
▲
by
g_p
4y ago
> maybe someone else here has a better idea why it is a good idea to require password and two step authentication every twenty four hours? Not saying it's directly the answer here, but some distributed systems lack proper session bl
107.
▲
by
g_p
4y ago
You can turn this on in Settings > Face ID & Passcode - enable the option for "iTunes & App Store", and you can use Face ID for app store "purchases" (free or otherwise). You can disable the requirement for a
108.
▲
by
g_p
4y ago
Passwordless is going to make this even worse - there's no migration path (yet) from platform ecosystems to each other. I've not seen any serious progress on how to switch from Apple to Google, which doesn't involve doing thi
109.
▲
by
g_p
4y ago
Passkeys are stored on your platform keychain. In time, Bitwarden will offer this interface up, so you can sync them through your Bitwarden vault. Currently, if you use an iPhone, you will have the passkey stored in iCloud keychain. Your &q
110.
▲
by
g_p
4y ago
For the 99% use-case, secure boot being enabled and enforcing by default shouldn't really be an issue in the last few years. Almost all major Linux distributions (i.e. the ones with an easy install disc image you write to a USB stick)
111.
▲
by
g_p
4y ago
If you really wanted to verify that secure boot was enabled, and that a user wasn't doing "funky things", you'd need to also check for a TPM attestation, as you allude to - this isn't really simulating a whole lot f
112.
▲
by
g_p
4y ago
I think the root issue on sleep is Microsoft/vendor induced - this issue only really began when Microsoft introduced connected/modern standby, and started to incite OEMs to remove BIOS/UEFI support for S3 sleep. It seems unfa
113.
▲
by
g_p
4y ago
Suspend/sleep mode on (recent) Windows laptops seems very hit-or-miss, since everyone started to move away from "proper" S3 sleep, and towards what Linux calls "s2idle" (modern/connected standby on Windows?) It
114.
▲
by
g_p
4y ago
This would be one approach. However devils advocate here - I took an essay question verbatim from a humanities assessed exercise, and very quickly (think seconds of effort) created a prompt and got Chat GPT to write text each time it was pr
115.
▲
by
g_p
4y ago
Part of the challenge around essays is likely also what type of essay is sought, and the content required. Some educators are lazy, and just want something submitted with credible sounding words, parroting something suitably deferential to
116.
▲
by
g_p
4y ago
This sounds like a good opportunity for fuzzy hashes like SSDEEP. This ought to give enough flexibility to detect minor tweaks to output. https://www.microsoft.com/en-us/security/blog/2021/07/27/
117.
▲
by
g_p
4y ago
The detection tools currently aren't great/perfect. I've noticed that some of them will detect "hollow" text (think profile boosting wannabe thought leader type content from LinkedIn), as being a very high probabili
118.
▲
by
g_p
4y ago
> I wonder what they would have done if ChatGPT didn't exist. This can be answered, as until late last year it effectively didn't for the average student. There were 3 main things they'd do (in my experience) for some kind
119.
▲
by
g_p
4y ago
While there are interesting comments here looking at technical solutions like fuzzy/partial hashing, the solution for a professor is likely a bit different. Rather than prove the student used Chat GPT (hard for reasons you point out),
120.
▲
by
g_p
4y ago
Clients not following their advice is always going to happen, and it's not the lawyer's problem as you say. And indeed, the lawyer can't (and historically in many jurisdictions shouldn't be creating compensation structur
More ›