Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
muricula
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
11 ms
·
91.
▲
by
muricula
5y ago
Windows and Darwin (MacOS) were originally designed to be hybrid kernels, but compromised by allowing more and more stuff into kernel space until they were the monolithic kernels we know today. Changing code built up over 20-30 years while
92.
▲
by
muricula
5y ago
The UN defines genocide as: (a) Killing members of the group; (b) Causing serious bodily or mental harm to members of the group; (c) Deliberately inflicting on the group conditions of life calculated to bring about its physical destruction
93.
▲
by
muricula
5y ago
Surprisingly enough there are other consumer grade devices where one company controls the entire stack and deliver similar security -- game consoles. xbox os and ios have different designs but make similar security promises.
94.
▲
by
muricula
5y ago
I feel like publicly owned statues serve a very different purpose than school library books. The former are usually forms of veneration, the others are for education.
95.
▲
by
muricula
5y ago
MSRC is pushing rust internally: https://msrc-blog.microsoft.com/2019/11/07/using-rust-in-win...
96.
▲
by
muricula
5y ago
These days you need to have your kernel driver signed by Microsoft or edit your boot config options to put the machine in an insecure state mostly useful for testing. To get it signed you need to pass a basic test suite which MS provides (a
97.
▲
by
muricula
5y ago
Microsoft isn't slower at fixing security vulnerabilities than other OS vendors. It turns out identifying and fixing issues in a piece of software as large as an OS is hard. Access to system features is not restricted by licensing, alt
98.
▲
by
muricula
5y ago
The WaPo isn't owned by Amazon, the WaPo is owned by Bezos, who also happens to own Amazon. So I don't think an FTC breakup would really work at all.
99.
▲
by
muricula
5y ago
Zeroing out freed memory in no way prevents UAFs. Consider what happens if the memory which was freed was recycled for a new allocation? Maybe an example will help make it clearer? This is in pseudo-C++. struct AttackerChosenColor {
100.
▲
by
muricula
5y ago
This sort of thing is actually somewhere I think Mozilla can make a difference. As a major browser, they are listened to when they lobby standards bodies and political bodies about the web and internet security, and very often they are list
101.
▲
by
muricula
5y ago
Of that 50%, many have negative wealth due to eg credit card debt, many have zero wealth because they're poor, and many have all of their wealth tied up in houses or cars. It's probably not ignorance so much as lack of savings to
102.
▲
by
muricula
5y ago
You have to learn what your skills are worth by asking others. It doesn't make a difference if you're "at will" or factory line or whatever.
103.
▲
by
muricula
5y ago
High performance doesn't have to mean being in the kernel.
104.
▲
by
muricula
5y ago
Yup! And if an attacker hacks this module they can hijack the kernel. And it can probably be reached by anyone on the same network, or may even be exposed to the internet :|
105.
▲
by
muricula
5y ago
Is this constructive? I think it's reasonable to criticize an organization for its leaders, and question their actions accordingly. And he is on the board.
106.
▲
by
muricula
5y ago
Saar Amar, who works at MSRC, wrote a writeup & POC for what he says is the same bug: https://saaramar.github.io/IOMobileFrameBuffer_LPE_POC/ He says he found it independently.
107.
▲
by
muricula
5y ago
This exists: https://en.wikipedia.org/wiki/Penetration_test
108.
▲
by
muricula
5y ago
The Linux Kernel development process is old-fashioned and there are lot of particular processes and conventions which make submitting a patch difficult. Also, if you use gmail with mutt to submit a patch, you have to change your email pref
109.
▲
by
muricula
5y ago
To add on, the windows internals books have exercises with the sysinternals tools. If sitting down and plowing through a doorstop of a book isn't your cup of tea, try picking a chapter or two which sound interesting, skimming them, and
110.
▲
by
muricula
5y ago
Basically lzcnt or leading zero count on x86: https://www.felixcloutier.com/x86/lzcnt
111.
▲
by
muricula
5y ago
The spike in homelessness is already here, just not in your county. Some counties deliberately force out homeless folks and push them to neighboring cities, which may be the case where you live. Seattle saw a 6% rise last year: https:/
112.
▲
by
muricula
5y ago
I'm not sure about that. I think it's just that the AES hardware was busted somehow and didn't actually perform the AES algorithm correctly. The intel AES hardware just deterministically performs the algorithm, so Intel can&#
113.
▲
by
muricula
5y ago
The intel AES instructions work at a block level. You build the mode on top of the block level primitives intel gives you. https://en.wikipedia.org/wiki/AES_instruction_set
114.
▲
by
muricula
5y ago
Buddy, that's not a vaccine.
115.
▲
Penelope scott // rät, song critiquing Silicon Valley
(youtube.com)
2 points
by
muricula
6y ago
|
0 comments
116.
▲
by
muricula
6y ago
Many years ago I worked with a greybeard AMD hardware designer. He told me that they commissioned a study about whether it made sense to ditch backwards compatibility, and realized that the parts of the CPU needed to support backwards compa
117.
▲
Speculating the entire x86-64 instruction set in seconds with one weird trick
(blog.can.ac)
208 points
by
muricula
6y ago
|
65 comments
118.
▲
by
muricula
6y ago
Dunno we have post quantum algorithms which don't rely on factoring prime numbers like RSA does, but it will be a lot of systems administration type work to make sure that nobody is using RSA keys anymore.
119.
▲
by
muricula
6y ago
The website is being hugged to death, but archive.org has scraped the PDF: https://web.archive.org/web/20210302215033/https://eprint.ia...
120.
▲
by
muricula
6y ago
Windows has not been in maintenance mode and Windows 10 is not the last version of Windows: https://www.theverge.com/2021/1/4/22212817/microsoft-windows...
More ›