Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
martius
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
91.
▲
by
martius
10y ago
Many examples have been commented already, but here are some of them: > In the last 10 years I've never met a case where someone pointed out that "this code needs to be concurrent, but single threaded". > Going back to
92.
▲
by
martius
10y ago
There is a comprehensive "motivation" section on the linked page of the project.
93.
▲
by
martius
11y ago
Firefox is a brand present in a highly competitive market. It's a brand known by consumers who are used to associate a name and a logo to an experience and can easily get confused (such as people seeing the "blue E icon" as t
94.
▲
by
martius
11y ago
On Linux, I use the unshare command to hide my /home, you can do the same thing with /etc: sudo unshare -m bash -c "mount --make-rslave / && mount -n -o bind /tmp/empty /home && sudo -u
95.
▲
by
martius
11y ago
sudo unshare -m bash -c "mount --make-rslave /home ; mount -n --make-rprivate -o bind /tmp/empty /home ; sudo -u $(whoami) firefox -ProfileManager -no-remote" - creates an empty directory, - fork the mount tabl
96.
▲
by
martius
11y ago
You don't have to surrender the key, but you are required to at least decrypt things for the authorities. However, I the twist seems to be in the word "susceptible": any encryption key is susceptible to be somehow used to com
97.
▲
by
martius
11y ago
Assuming you have time and knowledge to do it. Assuming you own the domain or at least are able to access to its DNS records. Assuming you can use SNI (and all your visitors too) or have your own IPv4 address. Assuming $40 is free... No,
98.
▲
by
martius
11y ago
It's a spec bug: they wrote a draft spec, implemented it and pushed it to a stable release too soon.
99.
▲
by
martius
11y ago
1) Well, web servers are always evolving, think of HTTP/2 :) 2) During the beta, they didn't receive enough feedback to evaluate the criticality of the problem, they assumed that the fix could wait 6 weeks.
100.
▲
by
martius
11y ago
It does break frontends too: assets and links URL are generated with an https:// scheme, which results in assets not loaded and broken links.
101.
▲
by
martius
11y ago
Yes, it's a bad idea, but an awful lot of bad ideas were the common practice a long time ago, when vendors had to deal with limitations of the HTTP/1.0 and 1.1 RFCs. In fact, we aren't talking about application headers. The H
102.
▲
by
martius
11y ago
It's Chrome fault to use push for a new standardized header without properly checking its impact: the issue has been raised during the beta phase, but they underestimated it and did not rollback. I believe it is known that some old rev
103.
▲
by
martius
11y ago
He's talking about a client not supporting HTTPS. A client may have reasons to prefer HTTP over HTTPS: perfs, plaintext for debug, etc. It's hard to assume that "HTTPS should be the default" in any circumstance. I'm
104.
▲
by
martius
11y ago
The issue here is that the frontend may be behind a reverse proxy, talking to the client in HTTPS but to the frontend in HTTP. In that case, the frontend should probably let the HTTPS header. In practice, with X-Forwarded-Proto, they don&#x
105.
▲
by
martius
11y ago
Basically, now Chrome sends the header HTTPS: 1 when issuing a request over HTTP to notify it "prefers" HTTPS. However, this header is (or was) used by several HTTP servers/proxies (including Apache, I believe) to notify the
106.
▲
Forcing Wordpress sites to use https even when not directed
(code.google.com)
52 points
by
martius
11y ago
|
60 comments
107.
▲
French parliament approves new surveillance rules
(bbc.com)
5 points
by
martius
11y ago
|
0 comments
108.
▲
by
martius
11y ago
It does not really answer to the questions "Are you open-source ?" or "Where can I find acuman source code ?" :(
109.
▲
Google Handwriting input for Android
(plus.google.com)
5 points
by
martius
11y ago
|
0 comments
110.
▲
by
martius
12y ago
Kimsufi offers servers with SSDs in France: KS-2 SSD: Atom™ N2800, 4GB of Ram, 40GB SSD, 100 Mbps for 9,99€/month. http://www.kimsufi.com/fr/
111.
▲
by
martius
12y ago
Humble Bundle proposes the Humble Indie Ballyhoo: https://www.humblebundle.com/ballyhoo http://blog.humblebundle.com/post/115193038361/step-on-up-fo...
112.
▲
by
martius
12y ago
For a long time: getaddrinfo() and others are specified in susv3[1] (since 2003 I think). However, gethostbyname() and gethostbyaddr() are still very commonly used, and won't be gone soon. 1/ http://refspecs.linuxbase.o
113.
▲
by
martius
12y ago
Yes, the mail you link says: "I will keep you posted in next hours. I send the notice to early. Big fail of my own. Stay tuned."
114.
▲
by
martius
12y ago
From https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-0235 "A heap-based buffer overflow was found in __nss_hostname_digits_dots(), which is used by the gethostbyname() and gethostbyname2() glibc function call. A r
115.
▲
CVE-2015-0235 – GHOST: glibc gethostbyname buffer overflow
(openwall.com)
531 points
by
martius
12y ago
|
241 comments
116.
▲
by
martius
12y ago
I'd like to know the risks, if you can find the article.
117.
▲
by
martius
12y ago
I'm not sure but I think someone is working on that at mozilla. It is almost dedicated to things specific to mobile, though.
118.
▲
by
martius
12y ago
How about a screenshot of the alerts configuration page, and the screenshot of an alert, in your mail client?
119.
▲
by
martius
12y ago
It looks like a meta Google alerts, but it's open source and hackable, which can be really handy. A documentation of how to write custom alerts would be useful, I guess. Also, you should host a demo somewhere.
120.
▲
by
martius
12y ago
It's hard to have a clear perspective on this. Obviously it's again net neutrality, and there are probably a lot of better ways to give access to Internet to people who don't have it. On the other end, I'd like to think
More ›