Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
netik
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
91.
▲
by
netik
8y ago
This is a interesting article but a veiled embedded advertisement for retool.
92.
▲
The IDES OF DEF CON: A #badgelife Post-Mortem
(medium.com)
1 points
by
netik
9y ago
|
0 comments
93.
▲
by
netik
9y ago
Key management would be a nightmare here. IPSec has very long setup times, and every destination would need a new crypto configuration. This is exactly the problem that TLS was designed to solve, and IPSec and the web are a bad mix.
94.
▲
by
netik
10y ago
The problem is that RSUs are still a joke and can be taken from you easily. ISOs have way, way more power. https://www.retina.net/tech/rsus-vs-options.html
95.
▲
by
netik
10y ago
Is there any reason why there isn't a single security utility, aside from password managers on this list? It seems that security is an afterthought at most startups.
96.
▲
by
netik
10y ago
I've worked at a couple startups where the company was more-than-done out of business and we spent our last 6-12 months negotiating with creditors and trying to get rid of hardware, software, and various worthless IP. But that takes a
97.
▲
by
netik
10y ago
I guess my main question here, is if they have been banned by the FDA from doing any testing at all for two years, what exactly is remaining of the business, and why haven't they been completely shuttered? Bloomberg seems to indicate t
98.
▲
Go,Robots,Go: Making PCBs for DEFCON25 with KiCad and Macrofab
(hackaday.io)
2 points
by
netik
10y ago
|
0 comments
99.
▲
by
netik
10y ago
Well, that's exactly the problem with systems like this. If you transmit something that looks like noise, and no one else sends something that looks like that particular kind of noise, then you are raising a flag that says "No, re
100.
▲
by
netik
10y ago
Because the block button doesn't actually block. It poorly hides the user's content from your view while other users can still see the abuse.
101.
▲
by
netik
10y ago
The sad thing is that the market will love this and the stock will go up, while many engineers wonder where their job went, and mid-managers/execs will reap a profit.
102.
▲
by
netik
10y ago
You forget that Twitter purchased an SMS aggregator a few years back. SMS sending is near free for Twitter. I still remember integrating all of the VPNs to the carriers to support this mess.
103.
▲
by
netik
10y ago
Well, they bought Yammer which at the time was a direct Twitter clone (but made for small businesses.) You know what would make for a better acquisition? Amazon. Twitter has tons of customers, tons of dark fiber, lots of internal cloud tech
104.
▲
by
netik
10y ago
Yes, there was a stock sales window when I worked there and I assume there still is now. Most publicly traded companies have lockout periods if you have access to "insider information." Given that Twitter is (was) fairly transpare
105.
▲
by
netik
10y ago
Well, that's a damn fine point. I guess I'll submit a pull request.
106.
▲
by
netik
10y ago
Yes, that's in the Snowden docs: https://www.washingtonpost.com/news/the-switch/wp/2013/12/10... http://www.digitaltrends.com/web/nsa-google-cookies/
107.
▲
by
netik
10y ago
Defaults are strong and powerful, though. This is the main issue which companies like this have taken advantage of. Many users don't know that something is on by default, and if the default is to geotag, people will nearly always forge
108.
▲
by
netik
10y ago
If you do that, it should be one of the first questions asked when the plugin first starts up and be absolutely transparent about what data is collected. It's less about 'making a fuss' and more about 'providing addition
109.
▲
by
netik
10y ago
Sure, but that doesn't help everyone, that only helps me.
110.
▲
by
netik
10y ago
It would be really wonderful if the password manager didn't contain surveillance software, monitoring every time the plugin has been opened via Google Analytics. Can you remove that? https://github.com/bitwarden/br
111.
▲
by
netik
10y ago
Harvard Business review has a pretty good paper on this. https://hbr.org/2015/03/why-data-breaches-dont-hurt-stock-pr...
112.
▲
by
netik
10y ago
(ex-employee #13 over here.) They could start by incorporating every single feature that BlockTogether has as abuse mitigation. Encrypted end-to-end DMs (which were blocked numerous times by useless product managers) would have been another
113.
▲
by
netik
10y ago
I guess this will happen right around the time that startups actually give people 'unlimited vacation time', which generally means 'don't take it or you'll be fired/left out.'
114.
▲
by
netik
10y ago
This is a poorly justified solution to a real security problem, which is the elimination of password logins. The author assumes that the weak point in logins is the password hash, and rarely if ever is this an attack vector in modern Linux.
115.
▲
by
netik
10y ago
A user can always start their own SSH server. Just because you've decided to move it to a different port doesn't really encourage them. I suppose you could make this a bit more difficult for them by removing compilers (no really,
116.
▲
by
netik
10y ago
It seems like you are reinventing the wheel here. Did you look at RFC4255? https://tools.ietf.org/html/rfc4255
117.
▲
by
netik
10y ago
Oh, back then it was a wall full of XServes. These days, if they run Macs, they're probably racking Mac Pros.
118.
▲
by
netik
10y ago
As far as I know he never went to college, so he's going to have to pursue his BaCS and MaCS first.
119.
▲
by
netik
10y ago
You're correct in that Apple doesn't manufacture server hardware like the Xserve anymore, but OS X, Server edition is still available and it will manage Apache for you (albeit in a terrible way, I don't like the excessive con
120.
▲
by
netik
11y ago
CISA is a terrible bill and not a solution to this problem. Security teams have been able to manage this data on their own for years without government intervention. There have always been other methods for determining if an attacker is sta
More ›