Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
lrvick
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
61.
▲
by
lrvick
1mo ago
I mean I full source bootstrap deterministic operating systems for secure enclaves from zero. And by from zero, I mean from 180 bytes of human reviewable hex machine code all the way up to a llvm/rust/musl toolchain, custom rust i
62.
▲
by
lrvick
1mo ago
What phone service? I have not had a cellular plan of any kind in over 6 years and travel the world, have an active social life, and run businesses without issue. Wifi is just fine and everywhere. I do not need to be communicating with peop
63.
▲
by
lrvick
1mo ago
Well at the very least lets agree that if you are going to use cloud models, there are much better options than OpenAI and Anthropic prices for most people. One does not have to give Sam or Dario money. Personally though, I would sooner tra
64.
▲
by
lrvick
1mo ago
Sure, I just add more cards as I need more throughput, and can combine up to four cards when I need 1M context on a smarter model, but in practice since 3.8 27b came out it is all I use. Also, unless your sessions are end to end encrypted t
65.
▲
by
lrvick
1mo ago
Fair context. Still, those prices are at least somewhat subsidized by you selling your plaintext session data which is a non-starter for me. Especially when dealing with code or data that is under NDA and not mine to sell in exchange for ch
66.
▲
by
lrvick
1mo ago
$1200 for a GPU capable of running Qwen 3.8 27b at 7M tokens a day is likely plenty for most people and will pay for itself. Also factor in cloud LLM prices are subsidized by you giving up your sessions as training data with no ability to o
67.
▲
by
lrvick
1mo ago
1. Plug r9700 GPU into linux computer 2. Use free daily tokens from opencode or similar to set it up for you with a coding agent like jcode or crush
68.
▲
by
lrvick
1mo ago
You get 20M tokens a day with a decent coding model on a $20 subscription? I am skeptical. I am further skeptical you can do that with any privacy, so odds are any discounts are a result of you selling your sessions as training data with no
69.
▲
by
lrvick
1mo ago
We could halt every AI datacenter tomorrow and it would not impact those of us using local GPUs in any way. Cloud AI is a dead end.
70.
▲
by
lrvick
1mo ago
I have the one of the cheapest private and sovereign AI solutions money can buy, and I get a good laugh whenever the big providers are down. Also, $1200 for a GPUs that can produce ~7M tokens a day of Qwen 3.8 27b at 80tps is faster and che
71.
▲
by
lrvick
1mo ago
Hard agree. I skipped the YC start of batch talk with Sam Altman in large part because I do not ever want to be in the same room as that asshole if I can help it. I am hoping we get an administration that will not accept his bribes so he ca
72.
▲
by
lrvick
1mo ago
OpenAI and Anthropic are equally evil imo, but what bothers me more is how many tech workers actually think you need any product of either company to accelerate any engineering goals. I just racked some consumer GPUs in my garage (6x r9700s
73.
▲
by
lrvick
1mo ago
So you got burned by a centralized proprietary mail service suddenly making user-hostile changes, and your first instinct is to move to another centralized proprietary mail service by a company with a long history of user hostile changes? T
74.
▲
by
lrvick
1mo ago
My awkward wording on things like this if nothing else I hope helps inspire confidence that I am in fact a human typing each of these characters by hand.
75.
▲
by
lrvick
1mo ago
As someone who spent years homeless off and on, I resent REAL ID discriminating against the unhoused, so I choose to use the privilege I now have these days to reject it. I do not have or need REAL ID and my passport does not need a curren
76.
▲
by
lrvick
1mo ago
You cannot literally use "P.O. box" but if you use the virtual street address service the USPS offers now it works just fine.
77.
▲
by
lrvick
1mo ago
If you are in California the DMV makes tens of millions of dollars a year selling all the data you give to the DMV, which is why I give them a P.O. Box.
78.
▲
by
lrvick
1mo ago
I -exclusively- write and create FOSS without referencing anything proprietary. I do not want to use any tool anyone has any means to take away from me. I do not believe proprietary software should exist. With AI trending the way it is, I m
79.
▲
by
lrvick
1mo ago
I have never felt more smug about exclusively using the GPUs I rack at home.
80.
▲
by
lrvick
1mo ago
Sorry just saw this reply. Absolutely agreed that downgrade attacks are a real problem, though TPMs can easily mitigate this by using their monotonic counter functions. Still, secure time is useful for many things. There are a lot of networ
81.
▲
by
lrvick
1mo ago
It is cute that anyone thinks intellectual property can be defended much longer. All intelligence will get folded into whichever models have the loosest restrictions on training on IP, and those models will become the smartest and most capa
82.
▲
by
lrvick
1mo ago
A 3 line change to my above code would do for your case. Obviously that is not production ready malware, it is just a minimum viable example for the most common target. You type "sudo" and it runs an unprivileged sudo wrapper, and
83.
▲
by
lrvick
1mo ago
I am aware of their work, and while this is better than the status quo, it does even come close to my threat model of "trust no single computer or machine" which is what I must support.
84.
▲
by
lrvick
1mo ago
> It's not an SGX problem, it's inherent to enclaves not having enough trusted hardware like signed clocks, tamper-resistant counters and so on. Those things all exist now in several forms. You were just too early! (I know the
85.
▲
by
lrvick
1mo ago
> It's an aftermarket mod Unfortunately one I have never seen a MacOS production engineering guide that does not say "install brew" as like step one, exactly because Apple failed to provide a software suite sufficient to
86.
▲
by
lrvick
1mo ago
A bit more than experimenting. I have designed several security hardened linux operating systems for major financial institutions. There are many well established patterns for further segmenting user workloads, once far removed from real sy
87.
▲
by
lrvick
1mo ago
I am not convinced you processed what I wrote, but I will attempt to answer your questions anyway because they will aid me in writing docs later. > 1) How does the data in that root partition get rebuilt? If it's on another compute
88.
▲
by
lrvick
1mo ago
There alternatives to a secure enclave like building in a risc0 VM that produces a mathematical proof of each computational step that is very expensive to generate and very cheap to verify. THAT is proof. But this seems to just be collectin
89.
▲
by
lrvick
1mo ago
Only honest commits by good actors are reviewed. Good for QA but useless for security. Cryptographic signing is not enforced for commits or reviews, so an attacker that controls a single maintainer Github API key could make a PR with a burn
90.
▲
by
lrvick
1mo ago
Of course this style of attack would work on you. Attacker has the sudo wrapper that hooks your next yubikey tap to running any payload they want as root. Your solution helps mitigate hardware keyloggers, which is great, but for malware in
More ›