Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
intern4tional
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
31.
▲
by
intern4tional
3y ago
Even that is not sufficient to ship a 2,000 machine there. This is fanfiction or she told them her address and consented to receive the shipment. Delivery companies do not simply take location coordinates to deliver a laptop for a multitud
32.
▲
by
intern4tional
4y ago
Anti-trust settlements and legislation, along with regulation as a result of those do dictate multi-browser support for some things. Microsoft and in particular Windows is heavily regulated.
33.
▲
by
intern4tional
4y ago
Former MS: Different development teams have different attestation requirements. My team did not require commits to be attested via yubikey when I was there, although I know at least one team that had that requirement. It was an internal te
34.
▲
by
intern4tional
4y ago
The military is perfectly capable of solving more than one problem at a time. This issue is being dealt with in addition to the other items you read about in the news. The USA, technologically and manpower wise is doing fine at the moment
35.
▲
by
intern4tional
4y ago
Removing Kinect was engineering work though, it may not have been visible to people outside of MS, but internally there was work required. There isn't any "letting it run" here, there is does Microsoft want to backport this f
36.
▲
by
intern4tional
4y ago
Edit: removing email, due to bots coming through. Users I do not recommend due to botting: bmingus Woven Planet Cyber and Vehicle Security | All levels | Full Time | US and Japan The Cyber and Vehicle Security division at Woven Planet has a
37.
▲
by
intern4tional
4y ago
Its only for NFS and not NTFS and only in v4 of NFS at that. Most systems will not need any action and those that do are unique enough that they're should be patched regularly in the first place.
38.
▲
by
intern4tional
4y ago
This wasn't done to divide the community. This was done as a simple thank you and as Microsoft treats GitHub as a separate business entity, Microsoft almost certainly wasn't involved in this decision. 500k is small enough that t
39.
▲
by
intern4tional
4y ago
Not likely, GitHub is a separate business and makes their own decisions. MS also competes with GitHub also; Azure Repos are a thing, as is Azure DevOps and those are just two examples. MS has plenty of products that compete with each other
40.
▲
by
intern4tional
4y ago
Was Microsoft employee. Did not worry one bit about talking to a recruiter on LinkedIn. Your immediate management is unable to see or even get that data. You would have to trip an alarm elsewhere, trigger a major investigation, get legal
41.
▲
by
intern4tional
4y ago
Woven Planet is hiring for Cyber and Vehicle security experts: https://jobs.lever.co/woven-planet?department=Cyber%20%26%20... The jobs are located in Japan and Woven Planet does offer relocation. We do virtual work part t
42.
▲
by
intern4tional
4y ago
https://tech.slashdot.org/story/17/08/10/1919204/salesforce-... . is probably the most well known incident. There have been others though.
43.
▲
by
intern4tional
5y ago
Former MSFT here. People tend to think of Microsoft as one unified company with a unified strategy. That is not the case, its best thought of as a batch of little companies that band together to create a product. These companies may compe
44.
▲
by
intern4tional
5y ago
Microsoft employs many people that are open-source advocates. Someone's perspective on that would not impact their status in an interview. If anything, the reason feedback took forever to him was because someone may have asked for an
45.
▲
by
intern4tional
5y ago
Microsoft does work with law enforcement on a regular basis. If the police had at all reached out in an official capacity Microsoft would have assisted. Source: was employed at MS and know they take such things seriously. You may want to fo
46.
▲
by
intern4tional
6y ago
Agreed, and I have a variety of these (certifications). Most of the top tier people that I know in cyber security are not certified professionals, but rather people that have deep knowledge in their area of expertise with the ability to app
47.
▲
by
intern4tional
6y ago
So, attribution doesn't work that way. During an active incident, attribution details are not published. This incident still has people responding to it, and potentially further impacted victims. Indicators of compromise are publishe
48.
▲
by
intern4tional
6y ago
Disclaimer: Am Microsoft. Windows source is open to most people at MS. MS is not joking when it says we practice an "inner source" policy, in that we do not rely on the security of our source code to secure our products.
49.
▲
by
intern4tional
6y ago
Then you should go review major security events. Attackers have been able to compromise major environments regardless of OS type. Windows having a larger market share is clearly going to have more compromises, but other OS based environmen
50.
▲
by
intern4tional
6y ago
At the moment, this is an active incident with response still going on. The attackers likely have persistence in multiple places in target networks. Releasing attribution evidence right now will not happen as that would intrude on the resp
51.
▲
by
intern4tional
6y ago
The malicious version had items in place that would cause it to not activate if certain anti-malware software is present or other environmental conditions were not met (like not joined to an active directory). This reduces the number from
52.
▲
by
intern4tional
6y ago
The article makes many jumps and some false claims. Example: "Russia, we now know, used SolarWinds' hacked program to infiltrate at least 18,000 government and private networks. The data within these networks, user IDs, passwords
53.
▲
by
intern4tional
6y ago
Disclaimer: am Microsoft employee. tplacek's point isn't that source is worse than disassembler output, it's that governments already have and have had access to source for a while (by design as Microsoft does provide source
54.
▲
by
intern4tional
6y ago
Microsoft and Fireeye have both made similar claims and released substantial technical details. Attribution is hard, but those two companies have a solid reputation and do not make BS claims.
55.
▲
by
intern4tional
6y ago
Over what? Teams is currently eating Slacks lunch.
56.
▲
by
intern4tional
6y ago
From reading your comment, you appear to think that I am assuming someone would ship XP to developers, that is not the case and I apologize if I wasn't clear. I am assuming someone would use XP in a product that would be shipped to co
57.
▲
by
intern4tional
6y ago
This is off topic, but there is increased risk due to the failure of the central engine and the inability to jettison it in the event of a fire. Wikipedia notes it as a design issue: https://en.wikipedia.org/wiki/Trijet
58.
▲
by
intern4tional
6y ago
The issue isn't malware authors acquiring it the source, the issue is that other people would then build said source and run it (XP) or worse, build products on it as XP was very stable. Those systems would then get infected and becom
59.
▲
by
intern4tional
6y ago
There is a marked difference between intelligence collection and economic espionage. In the US, economic espionage is illegal and has been for some time, with legislation reinforcing that rule (such as the Economic Espionage act of 1996).
60.
▲
by
intern4tional
6y ago
Except it wasn't entirely their choice (to give up their IP). Most of the companies when those joint ventures were setup were promised or told that their intellectual property was secure. It was then stolen and they were left with reg
More ›