Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
m8urn
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
31.
▲
by
m8urn
13y ago
Levison did make a comment once that he couldn't give the government what he didn't have, referring to deleted emails. I didn't address that in the article but it is another dimension to this. Being that this is all about som
32.
▲
by
m8urn
13y ago
That's actually the whole point, in the past he complied with warrants because there wasn't much he could supply in the first place. Yes there is a lot of reading between the lines here, but there was a clear line they crossed. In
33.
▲
by
m8urn
13y ago
One clue is a statement Levison made is that it's not just what they asked him to do, it's also what he knows that would change our perspective of email: “If you knew what I know about e-mail, you might not use it either.”
34.
▲
by
m8urn
13y ago
There are no providers who can provide full protection from a court order. The only solution is to encrypt on the client side using PGP or S/MIME and make everyone you communicate with do the same. But that means you can only login to
35.
▲
by
m8urn
13y ago
Right and the important point being that this isn't just about sniffing his network, it is the most invasive surveillance possible that would make his whole business a lie. The point of the article was to go through the logic to show
36.
▲
by
m8urn
13y ago
Perhaps only a handful such as Google will use SSL but Google is a HUGE percentage of email.
37.
▲
What Exactly Did The US Government Ask Lavabit to Do?
(xato.net)
161 points
by
m8urn
13y ago
|
44 comments
38.
▲
by
m8urn
13y ago
Another problem with coupon codes is they allow for affiliate commission stealing. Say someone visits a site via an affiliate URL and they are about to checkout when they notice the coupon code field. They Google coupon codes and find a sit
39.
▲
by
m8urn
13y ago
Plus, addressing this threat likely reveals surveillance methods to terrorists. Why would they blow this for such a vague threat and then publicize it? But hey, nothing will happen and they can say they stopped a terrorist attack!
40.
▲
by
m8urn
13y ago
Or, the NSA could force Google to provide them with private keys to their certs for "national security" and then they can mitm all they want.
41.
▲
by
m8urn
13y ago
With Gmail, all it takes is one request to almost any Google service to leak through a non http connection and they have your Auth cookie. Once they have that, they are you. And yes it is that easy, anyone can pull it off at Starbucks, hote
42.
▲
by
m8urn
13y ago
Relevant: "Dear NSA, I Don’t Think You Meant Yottabytes" http://xato.net/privacy/dear-nsa-meant-yottabytes/
43.
▲
Dear NSA, I Don’t Think You Meant Yottabytes
(xato.net)
2 points
by
m8urn
13y ago
|
2 comments
44.
▲
Dear NSA, It’s Not Just About the Spying
(xato.net)
3 points
by
m8urn
13y ago
|
1 comments
45.
▲
Grant Edward Snowden Retroactive Immunity
(xato.net)
1 points
by
m8urn
13y ago
|
0 comments
46.
▲
by
m8urn
13y ago
> facepalm. You can't use both? I do. This is horrible advice if taken on face value. Of course you can! I think you are taking many of my statements much too literally and misinterpreting the perspective of this article. Of course a lo
47.
▲
by
m8urn
14y ago
The problem with your argument is that you are equating entropy with password strength. While entropy is a valid measurement of password randomness, it is not a direct measurement of how strong a password is. Take the password "vvvvvv.vvvvv
48.
▲
by
m8urn
14y ago
So it sounds like if you don't encrypt text within your note, it is stored with no encryption at all.
49.
▲
by
m8urn
14y ago
One thing I actually have trouble with is not being able to exit an application. You can tell me all you want that idling in the background uses few resources, but sometimes I would rather just exit. I blame Steve Jobs for that one, damn yo
50.
▲
by
m8urn
14y ago
What's funny is that moving away from full screen apps was the entire premise of windows in the first place, not to mention the reason for its name. We did full screen apps in the 80's and hated it back then too.
51.
▲
by
m8urn
14y ago
Yes they definitely should have added the concept of going back.
52.
▲
by
m8urn
14y ago
One of the most annoying things about the metro interface is how they forced such a drastic change even on Server 2012. Metro may in fact turn out to be more usable some day but when we have work to do, we don't have time to play around wit
53.
▲
by
m8urn
14y ago
The problem is the bigger picture here--Microsoft wants to phase out the desktop and move us all to Metro so we have to buy all software through their app store. I would guess that in the near future we'll be talking about jailbreaking wind
54.
▲
Now eBay Wants in on Password Patents
(xato.net)
2 points
by
m8urn
14y ago
|
0 comments
55.
▲
About The US Government's Absured Filing in a Megaupload-Related Case
(xato.net)
1 points
by
m8urn
14y ago
|
0 comments
56.
▲
RSA’s Distributed Credential Protection: Yeah They Are Overselling it a Bit.
(xato.net)
1 points
by
m8urn
14y ago
|
0 comments
57.
▲
by
m8urn
14y ago
Its probably not a great idea admitting to downloading all that data.
58.
▲
by
m8urn
14y ago
This is an interestimg idea and surely has it's place, but how you implement it is critical. For example, you would want SSL for the entire site to ensure the cookie is always protected. You would also need to make sure that the token and s
59.
▲
by
m8urn
14y ago
Although this concept certainly has its flaws, I could see it being useful for something where it was a site that most people would rarely log in. But for a store, I'd prefer having my credit card in the hands of something more secure.
60.
▲
by
m8urn
14y ago
Somewhere along the line, there will always be a password!
More ›