Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
muricula
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
15 ms
·
121.
▲
by
muricula
6y ago
Here's my take: Collaborating in the open and communicating the results of discussions and the rationales for decisions to the wider community who wasn't present for the discussions has a high time cost. It seems the core rust tea
122.
▲
by
muricula
6y ago
Do you listen to National Public Radio in the US? They broadcast all of their content for free on FM radio, and then ask for donations a couple times a year. Does that feel manipulative to you? Genuine question, because to me that doesn
123.
▲
by
muricula
6y ago
Even if there were basic unit & regression tests, this bug might not have been caught. This bug should have gone through detailed security review and should probably also undergo fuzzing.
124.
▲
by
muricula
6y ago
Google Project Zero has an excellent blog: https://googleprojectzero.blogspot.com/
125.
▲
Intel’s 10nm, switching to cobalt interconnects (2018)
(fuse.wikichip.org)
1 points
by
muricula
6y ago
|
0 comments
126.
▲
by
muricula
6y ago
Python 2 & 3 are developed/maintained by the same people. It's not really a competition.
127.
▲
by
muricula
6y ago
I don't think that the CCP had this sudden realization recently the same way many HN posters seem to have.
128.
▲
by
muricula
6y ago
I don't think the CCP cares about an obscure American social network. They know they have a dependency on American software & software distribution mechanisms, & have known far longer than Parler has been around.
129.
▲
by
muricula
6y ago
Forgot to check for replies. In particular, I was thinking of this blog post: https://windows-internals.com/exploiting-a-simple-vulnerabil... Thanks for the correction, sorry I typoed her name. Here's a tweet from the
130.
▲
by
muricula
6y ago
AMD spun out global foundries, and they're not competitive at the bleeding edge today. I fear the fab-only part of Intel would be the same.
131.
▲
by
muricula
6y ago
Not certain this is the reason why, but there is a real perf hit for full disk encryption which not everyone needs to take, especially for devices without hardware accelerated crypto. Lower end devices can slow to a crawl.
132.
▲
by
muricula
6y ago
MS source code leaks to the public all the time. I think there was one early last year.
133.
▲
by
muricula
6y ago
Yardin Shafir's excellent blog post started with a bug found purely through fuzzing by an MS employee security researcher.
134.
▲
by
muricula
6y ago
This may be the documentation: https://docs.rs/mundane/0.4.3/mundane/ It's not great, but it's something. You're right though, they should at a minimum link to it more prominently.
135.
▲
by
muricula
6y ago
codetrotter is right just tune into the stream and ask questions/do some light heckling as appropriate ;)
136.
▲
The Rust Foundation Conversation
(blog.rust-lang.org)
7 points
by
muricula
6y ago
|
0 comments
137.
▲
by
muricula
6y ago
This is pure speculation, but they may have changed it to foo==false. In C a boolean is just a byte which conventionally has the values 0 or 1, but an attacker which controls a boolean can give it the value of 2, and 2!=true and 2!=false. T
138.
▲
by
muricula
6y ago
Your suspicions are correct.
139.
▲
by
muricula
6y ago
I'm not sure if you (or other readers) are familiar with the quote, but the title is a pun. When Caesar crossed the Rubicon river and marched on Rome to declare himself emperor he supposedly said "The die (like dice) is cast (thro
140.
▲
by
muricula
6y ago
The Silicon Valley's idea of Big Tech didn't include MS a few months ago when they were leading the pack for most valuable company in the world. And somehow they're escaping anti-trust scrutiny right now too, so maybe it'
141.
▲
by
muricula
6y ago
Were you using WSL 1 or 2? WSL 1 networking didn't work the way I expected, but WSL 2 seems to support proper Linux networking since it's just a Linux VM under the hood.
142.
▲
by
muricula
6y ago
Here's the article the parent mentioned in passing, it may answer your question: https://www.chromium.org/Home/chromium-security/memory-safet... It's very Chrome and C++ specific, but the problems will l
143.
▲
by
muricula
6y ago
Source code access makes surprisingly little practical difference for discovering security vulnerabilities. People routinely find security vulnerabilities in major closed source operating systems like Windows and iOS and submit their findin
144.
▲
by
muricula
6y ago
The community can do an okay job but not a great one. The writing on Wikipedia is shoddy and inconsistent, and there are many many missing sources even if the article is accurate. I'm a huge fan though! Similarly, many stack overflow q
145.
▲
by
muricula
6y ago
10nm Intel CPUs exist. I have seen them with my own eyes. Reading the tea leaves from public statements and articles like that, the yields seem to be crap right now.
146.
▲
AddressSanitizer for Windows: X64 and Debug Build Support Augustin Popa
(devblogs.microsoft.com)
3 points
by
muricula
6y ago
|
0 comments
147.
▲
by
muricula
6y ago
There will probably be defeats and accidental gadgets for the first couple releases, but this hardware technology has the potential to be better than any software based mitigation with the same goals. Here's a paper with a more detaile
148.
▲
by
muricula
6y ago
I haven't read the whole paper, but this has a section on performance and a security analysis of the hardware feature: https://sci-hub.tw/10.1145/3337167.3337175 CET has two parts, a forwards edge protection (indi
149.
▲
by
muricula
6y ago
Nah it exists because an endless stream of security bugs is a headache.
150.
▲
by
muricula
6y ago
I think the point is that the OS needs to interface with the hardware and read out the data, which is then passed to a program which works with it, part of which is a neural network in this case. Usually there's some marshalling and un
More ›