Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
raron
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
31.
▲
by
raron
5mo ago
> A payment should be a bank transfer. Anything more complicated is just something that is to be exploited by middle-men. I disagree with that. Payments (especially online and contactless ones) should have some form of buyer protection,
32.
▲
by
raron
5mo ago
It can, in fact there is even an open standard for that: https://en.wikipedia.org/wiki/EPC_QR_code By the way credit card companies do a lot more than Wero, SEPA or any other similar instant payment solution (e.g. char
33.
▲
by
raron
5mo ago
Wero is just another private company trying get their cut of payment fees. You can do the same thing with SEPA Instant Payment (or some member states outside of the Eurozone have their own similar thing). I don't see why Wero should ex
34.
▲
by
raron
6mo ago
You could just jail the CEO or who was responsible for the security at that agency / company.
35.
▲
by
raron
6mo ago
How big this cached data is? Wouldn't it be possible to download it after idling a few minutes "to suspend the session", and upload and restore it when the user starts their next interaction?
36.
▲
by
raron
6mo ago
AFAIK they did a lot of illegal things in the Snowden-era, too.
37.
▲
by
raron
6mo ago
> Thus succeeding at making the telecommunications vendors used for Top Secret US national security data less secure, the obvious goal of the US National Security Agency NSA still has the secret Suite A system for their most sensitive in
38.
▲
by
raron
6mo ago
> Since then, public cryptographic research has been ahead or even with state work. How can we know that? > Who knows what is happening inside the NSA or military facilities? Couldn't have NSA found an issue with ML-KEM and try t
39.
▲
by
raron
6mo ago
I think you could use dm-integrity over the raw disks to have checksums and protect against bitrot then you can use mdraid to make a RAID1/5/6 of the virtual blockdevs presented by dm-integrity. I suspect this is still vulnerable
40.
▲
by
raron
6mo ago
Why does a routing protocol matter for the banking sector? With proper encryption the route the packets of transaction data takes should not matter at all.
41.
▲
by
raron
7mo ago
Based on EU's public consultation it is not even true (but the number of responses is very small) https://ec.europa.eu/info/law/better-regulation/have-your-sa...
42.
▲
by
raron
7mo ago
The next SteamOS release will use Wayland by default for desktop mode, too: https://steamcommunity.com/games/1675200/announcements/detai...
43.
▲
by
raron
7mo ago
> I'm not seeing a lot of regrets from folks who moved to TLC and QLC NAND, and those products are more popular than ever. That's interesting. Even TLC has huge limitations, but QLC is basically useless unless you use it as wr
44.
▲
by
raron
7mo ago
It doesn't provide anonymity, which is a critical requirement for any (public) election system. It also doesn't provide security, as someone who can control the servers behind vote.com, can change anyone's vote.
45.
▲
by
raron
7mo ago
This. A voting system and it security must be understandable to the average people. You can not do that with electronic voting. (Even if electronic voting can be done securely.)
46.
▲
by
raron
7mo ago
Those exceptions are so vague that you can interpret anything into them. How "free" is your freedom of speech or expression if everything can be an exception?
47.
▲
by
raron
7mo ago
It's a proposal, so you can check out how it would work. Anonymous age verification is technically possible, but it is as pointless as any other age verification system, it could easily be circumvented if someone older willing to help.
48.
▲
by
raron
7mo ago
The age verification proposal of the EU tries to do that, the government knows you used age verification (and I think the rough number of times you used it), but they don't know when or where you used it. https://ageverifica
49.
▲
by
raron
7mo ago
This is true for the official SEPA Instant Transfer and the standard EPC QR code format, too. https://en.wikipedia.org/wiki/EPC_QR_code
50.
▲
by
raron
8mo ago
Wero doesn't add any value over standard SEPA transfers, I don't see why does it even exists. PayPal at least has some customer protection scheme.
51.
▲
by
raron
8mo ago
Jolla mishandled the funds they got for the tablets, it went bankrupt and bought up by a company connected to the Russian state. Jolla lied a lot during these events and tried to hide what happened, and I don't think that's an acc
52.
▲
by
raron
8mo ago
> well, a concerted attack could easily subvert the baseband In theory Pixel phones have IOMMU and GrapheneOS is using them, so even a compromised baseband doesn't result unrestricted access to the system.
53.
▲
by
raron
8mo ago
I don't think this is about the current situation in the US. Big US tech companies are infamous for not following the EU's data protection rules, and they wouldn't even able to, because some US regulations (I think PRISM, FIS
54.
▲
by
raron
9mo ago
> The major advantage is now that the expensive and time-consuming part of provisioning a new mobile service (sending out a physical SIM card) I don't know, choosing service package, signing paperwork, identifying and other KYC stuf
55.
▲
by
raron
9mo ago
> atomic clock time signal that (was/is?) broadcast nationwide Probably DCF77 or WWVB. > I think the actual antenna and hardware were relatively large since it's a long wave signal Casio has some normal sized wristwatches th
56.
▲
by
raron
9mo ago
> clock sync for civilians has never been easier I don't think civilian clock synchronization was an issue since a long time ago. DCF77 and WWVB has been around for more than 50 years. You could use some cheap electronics and get we
57.
▲
by
raron
11mo ago
At a quick glance Typst seems to be very limited compared to LaTeX, especially for more unusual languages.
58.
▲
by
raron
11mo ago
> 2. There's no risk of surveillance. Reading data from the chip still requires you to read the MRZ, so you can't do that remotely. There were many attack on that. https://en.wikipedia.org/wiki/Biometric_pa
59.
▲
by
raron
11mo ago
Not just the lack of transparency, they went bankrupt after the tablet fiasco (never refunded most of the people) and bought by some investment firm connections to the Russian state (not the thing you want from a privacy-friendly product &#
60.
▲
by
raron
11mo ago
Maybe that are two different thing? Some may experience what is in their head the same or very similar way to how they would experience it if they would actually see it, but I think that doesn't mean that what is in their head must be
More ›