Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
qb45
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
31.
▲
by
qb45
9y ago
It depends. Sometimes the organization may be handling your personal data, other times a bug in some Ukrainian tax software may be exploited and cause downtime in a global shipping company. I realize that big incidents are probably the only
32.
▲
by
qb45
9y ago
> What they don't like is the publicity. > Edit: but maybe not in Hungary. It's the bad child in EU. The article suggests that they reported this guy to the police only after the info leaked out (or possibly was independentl
33.
▲
by
qb45
9y ago
You don't know if that comment was malicious (I don't think so), it survived long because apparently not that many people share your opinion that it should be gone (really, it only takes a few downvotes and flags to kill) and the
34.
▲
by
qb45
9y ago
So are you, judging from the second part of this post :)
35.
▲
by
qb45
9y ago
That's like blaming Hitler for WW1, though. The OP is very much not an example of fight with USSR.
36.
▲
by
qb45
9y ago
> What I'd personally like to see is a minimal PSP implementation (without any noticeable features) that's Open Source, with reproducible build process and a binary of that signed by AMD. There are 3rd party efforts to produce
37.
▲
by
qb45
9y ago
HECI is same thing as MEI (see your [1]) and, despite the misleading name, it's unrelated to the EC.
38.
▲
by
qb45
9y ago
Intel also has C/C++ compilers which probably share optimizers and backend code generators with their Fortran compiler and shouldn't be worse. Ditto for 3rd party commercial vendors like PGI. And, BTW, I have seen a case where PGI
39.
▲
by
qb45
9y ago
One of them had even won the Nobel Peace Prize for vocally opposing those things :) OTOH, I can't completely agree with X86BSD. I mean, what's the point of influencing foreign governments only to ignore suspicions that they do it
40.
▲
by
qb45
9y ago
> For instance Russia's involvement in Syria and Crimea is more about expanding territory and sphere of influence For the record, these places were Russian sphere of influence before the conflicts started. Though not strictly Russ
41.
▲
by
qb45
9y ago
Thanks, it seems you are right. I thought that the ME plays some role in SGX setup but I can't find a single source for that now. Apparently it's all done with special instructions implemented in microcode.
42.
▲
by
qb45
9y ago
Maybe we should start with stating that the core of TZ is an execution mode of the ARM CPU privileged above the normal kernel mode, not a separate core running some obscure code. TZ can run any suitable hypervisor or just be left unused. It
43.
▲
by
qb45
9y ago
> Why don't AMD and Intel want to monetise their management features? They do, most machines don't have remote management firmware and chipset features installed. As for why the ME is present on all hardware - it would be a sha
44.
▲
by
qb45
9y ago
> Intel ME is used by Linux quite heavily (rather than talking directly to the embedded controller) Are you sure? Links or commit IDs?
45.
▲
by
qb45
9y ago
> A not as high, but way more reckless version I expected to see these guys: https://www.youtube.com/watch?v=nY2-l3aWCTA
46.
▲
by
qb45
9y ago
Nah, it needs more people using these little arrows which are there for a reason. You may also want to flag if somebody is a real nuisance, moderators can limit such user's posting rate and I think they monitor posts getting lots of fl
47.
▲
by
qb45
9y ago
> always Except for those who hate their guts. Or those who distrust them. Or those who are bored by their lifestyle, possibly relevant to this topic.
48.
▲
by
qb45
9y ago
> I see a hackathon as literally all the worst things about software development compressed in to a single event - practically no planning, very little testing, zero documentation On the bright side, sometimes this is exactly what's
49.
▲
by
qb45
9y ago
Probably not all BCM43xx devices are affected, though. This product line spans over 10 years and all 802.11 revisions since a/b with various firmwares and internal CPUs, from custom cores to ARM. The issue likely exists in a limited nu
50.
▲
by
qb45
9y ago
As if computers haven't killed enough people already. Somebody posted this here a few days ago joking about self-crashing cars: http://autoweek.com/article/autonomous-cars/tesla-model-s-au...
51.
▲
by
qb45
9y ago
What's especially intriguing is that this study reveals that people didn't like to see other people's fortunes reversed. So this isn't about selfishness or protecting what's yours. This reasoning vastly underestim
52.
▲
by
qb45
9y ago
TL;DR Researchers trained ravens to exchange some tokens for food. Presented with a choice of 15 different objects, majority of the birds picked the food tokens and stashed them for up to 17 hours until an opportunity for exchange came agai
53.
▲
by
qb45
9y ago
Interestingly, certain non-medical names for the other organ give: Error This word is unacceptable as a domain name.
54.
▲
by
qb45
9y ago
http://timestamp.online/countdown/1610612736 Obviously. Programmers celebrating 1500000000 just make me sad.
55.
▲
by
qb45
9y ago
> HTTP with their own half-baked hardcoded AES key in app for sending credit card info. You mean, no TLS, JavaScript crypto and credit card info? Are there no authorities to report that kind of garbage? No certification they are supposed
56.
▲
by
qb45
9y ago
Surely you can do just point 3 if you know how the API works. Atrocious design. There used to be some "secure pendrive" which worked similar way: an app asks you for password, checks if it matches hash stored on the drive and opti
57.
▲
by
qb45
9y ago
You must have missed once plain HTTP is no longer supported by cargo-cult-security-conscious browsers There already are people talking about such possibility and some even appear to believe it would be a good idea. Of course what happens
58.
▲
by
qb45
9y ago
I think what changed is streaming services - huge and costly (to the ISP) bandwidth hogs which are just asking to be extorted because they make money on their content. Maybe it's also a matter of competition with cable TV - if Comcast
59.
▲
by
qb45
9y ago
Must be a Chrome thing. In Firefox 54 it's three clicks: lock icon, ">", "more info". Actually the second click already gives some summary including issuer.
60.
▲
by
qb45
9y ago
BTW, who really is Let's Encrypt, why should I trust them, why should I trust they won't disappear once plain HTTP is no longer supported by cargo-cult-security-conscious browsers? It seems to me like providing certificates isn&#x
More ›