Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
microtonal
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
microtonal
6d ago
It seems that in their ranking currently only the Huawei Pura 80 Ultra is ahead? https://www.dxomark.com/smartphones/#sort-camera
2.
▲
by
microtonal
6d ago
You are arguing a point that I'm not even making. I will just stop here.
3.
▲
by
microtonal
6d ago
I didn't say anything about usefulness. Even a bunch of dotfiles can be useful, Oh My Zsh and others were very popular after all. The thing I complain about are that these companies that build their fortunes partially on open source be
4.
▲
by
microtonal
6d ago
You don't think it is unfair that projects that have basically been xkcd 2347's "a project some random person in Nebraska" don't get a penny, while DHH who gets millions for a bunch of dotfiles, is unfair? I don
5.
▲
by
microtonal
6d ago
Good point. IANAL, but I think that is more murky terrain. Downstream redistributors like the vendor are not allowed to remove copyright notices, so I think the notice to get it under the GPLv2 or later is passed to the user as well. Not su
6.
▲
by
microtonal
6d ago
Brilliant :). Since this is currently going to woosh for younger visitors: https://news.ycombinator.com/item?id=9224
7.
▲
by
microtonal
6d ago
We loved Dropbox and had a family subscription. One of the main reasons we stopped using them (besides it being a US company and Trump threatening declare war to a fellow European NATO ally) was that even though we were paying users, they c
8.
▲
by
microtonal
6d ago
Yeah, but I think the main point is that the GPL 'at your option any later version' clause is a burden on the developer, not the user. Suppose that the software is under the GPLv2 (with the later version clause) and the FSF has a
9.
▲
by
microtonal
6d ago
Yes, the set of dotfiles by DHH for Arch that has raised 18.5 million dollar, while real distributions and desktops are struggling to get donations. Having a few billionaire friends who share your techbro politics helps I guess.
10.
▲
by
microtonal
6d ago
Although Xfce 1.0 appeared slightly earlier, its initial releases were proprietary, making what was originally known as the Kool Desktop Environment one of the earliest entirely FOSS desktop environments for Linux. Version 1.0 was released
11.
▲
by
microtonal
7d ago
Yep, in the old days, a lot of websites used image maps (so that clicking a part of the image would go to another page).
12.
▲
by
microtonal
7d ago
386BSD -> FreeBSD NetBSD -> OpenBSD To some extent I would argue that Linux is a spiritual fork of Minix and Unix. But I think it’s also worth pointing out that these were in vastly different times where a single person or a small gro
13.
▲
by
microtonal
7d ago
Yes, let's abandon a very mature OS that is still open source, has millions of apps, and billions of users by one one that was designed for desktops, with a security posture fitting the 90s, virtually no phone apps unless you emulate s
14.
▲
by
microtonal
7d ago
The whole security embargo things seems incredibly stupid. OEMs are always too late rolling out security patches. So Google thought, "let's create an embargo of months so that the OEMs have time to integrate the patches". Any
15.
▲
by
microtonal
7d ago
Librem seems as bad as a typical Android OEM. Maybe I'm looking at the wrong repository, but the barely seem to update driver firmware? https://source.puri.sm/Librem5/fw/firmware-librem5-nonfree https:/
16.
▲
by
microtonal
7d ago
What's better for privacy, an old but inexpensive smartphone running Android 11, or the same smartphone running an up-to-date third-party rebuild of Android 16 or newer I see your point, but it would be very misleading, since the pho
17.
▲
by
microtonal
7d ago
There has been a long discussion about this a while ago on HN when these delays came up. The relevant blurb: Accompany it with a written offer, valid for at least three years, to give any third party, for a charge no more than your cost of
18.
▲
by
microtonal
7d ago
https://grapheneos.org/releases#2026091700 Fixes/updates the modem firmware.
19.
▲
by
microtonal
7d ago
You mean the Linux kernel that the GrapheneOS project has to request every update for and then has to wait up to weeks to get a Google Drive link? The GPL is worth nothing if nobody is enforcing it aggressively.
20.
▲
by
microtonal
9d ago
That's true, however, under all the recent pressures, everything is much more fluid. Especially because 'associate member' does not exist yet as a status, I think they could do things much more incrementally compared to full
21.
▲
by
microtonal
9d ago
To be honest, I am happy that a somewhat influential account is raising these issues. I have tried to explain for probably two decades now that the Linux desktop has poor security and the Linux kernel has issues. But somehow a significant p
22.
▲
by
microtonal
9d ago
From leaked Cellebrite presentations, it seems GrapheneOS is more secure. But it's easy for Apple marketing to move the goal posts by adding words like 'consumer'. They do this all the time in their marketing, like: Force se
23.
▲
by
microtonal
9d ago
I think the chart exactly shows the weakness that some people have pointed out. Apple's PCC servers at some point in time know the signing identity for a photo and Apple's generated replacement signature. The relevant steps from y
24.
▲
by
microtonal
9d ago
The reference image isn't linked to any particular iPhone or person It is for Apple, to the extend that if there are backdoors and weaknesses in their PCC, they could register a device signing identity to Apple signature mapping. I t
25.
▲
by
microtonal
9d ago
I am not sure I follow. The private keys in the image sensor and the SEP are static, so you can see that two images are signed with the same private key. Apple 'decorrelates' this by letting PCC verify the signature and then repla
26.
▲
by
microtonal
9d ago
I believe them, but the process is hard to check. How do we verify that they don’t have the sensor burn in a private key generated by them? (Similar to how many PGP hardware keys allow generating a private key on-device or writing your own
27.
▲
by
microtonal
9d ago
They don’t need the signing keys though. Apple could roll out a separate version of sepOS to assist law enforcement that signs at they will. Also, while the unique device ID is supposed to be burned into fuses by the SE during production, i
28.
▲
by
microtonal
9d ago
My credit card company’s app (in Europe) reads my ID through NFC when logging in for the first time (besides requiring ID photos). Our national app for logging into government sites and confirming things also requires a step where the ID’s
29.
▲
by
microtonal
10d ago
For the former there is: https://github.com/privacyguides/verified-apps-android Key compromise sucks and is hard to protect against. That said the Apple/Google app stores are also full of scams where people lose a
30.
▲
by
microtonal
10d ago
You know that the EU has a large trade surplus of goods with the US?
More ›