Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
red0point
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
17 ms
·
121.
▲
by
red0point
8y ago
Yes there is an approach out there, solving many problems of the internet at once. It‘s called SCION and is being used in production at large swiss banks today. https://www.scion-architecture.net/
122.
▲
by
red0point
8y ago
https://blog.cloudflare.com/encrypted-sni/ The Cloudflare blog for details.
123.
▲
by
red0point
8y ago
Essentially, you're now not only trusting 1 entity but 6 - if any of those 6 will log / leak data, you're offering them 1/6th of your traffic. The probability of that happening is significantly larger than using only a s
124.
▲
Into the Borg – SSRF inside Google production network
(opnsec.com)
256 points
by
red0point
8y ago
|
74 comments
125.
▲
by
red0point
8y ago
Let me shout from the back so you can hear: BUT THEY HAVE AN INTER-COMPATIBLE DATA MODEL?! Or at least they're trying to create one. They talk about it in their overview: https://datatransferproject.dev/dtp-overview.pdf
126.
▲
by
red0point
8y ago
Cool project! I'd wish I had so much dedication for implementing this at home :) You could also take inspiration from the NSA and actually perform random DNS queries & HTTP requests to various sites to disguise the true queries. An
127.
▲
by
red0point
8y ago
Of course there are benefits. Assume a large entity willing to do some mass surveillance (NSA, ...). Now with unencrypted DNS this entity just has to MITM a link on the last hop of a few DNS providers (Google, Cloudflare) and voila, the IP&
128.
▲
by
red0point
8y ago
The point of DNS over HTTPS is enhanced privacy. Currently, DNS packets are unencrypted, but can be signed (with DNSSEC). DNSSEC does nothing to hide to content of DNS requests /responses, but makes sure that they can't be tampere
129.
▲
by
red0point
8y ago
I've seen that (current) browsers won't send Origin / Referer Header for GET and HEAD requests, so I'm whitelisting these request types. Other than that, it seems that IE is not sending the Origin Header for POST request
130.
▲
Show HN: CSRF Protection Using Cloudflare Workers
(gist.github.com)
6 points
by
red0point
8y ago
|
2 comments
131.
▲
by
red0point
8y ago
Thank you for your feedback. I will do such research in more detail in the future. Back of the napkin calculation results in 0.5 USD / h for an instance with a GTX1080 - compared with an equally GPU performant EC2 instance g3.8xlarge c
132.
▲
Ask HN: Are hourly priced dedicated servers for AI/ML a good idea?
2 points
by
red0point
8y ago
|
4 comments
133.
▲
by
red0point
9y ago
I study at ETH Zurich in Switzerland. In each one of my courses all students devote countless hours to solving the problems the instructors throw at us, there is explicit assistance given if you need it and each problem you solve is then co
134.
▲
by
red0point
9y ago
I build lots of CRUD apps very fast with JHipster, which is designed to handle the initial bootstrapping of traditional CRUD apps very well, while also allowing you to choose your tech stack (in some ways). Because it's giving you a ni
135.
▲
by
red0point
9y ago
As I was dissatisfied by their provided graphs, I made up my own using R & Kaplan Meier Survival tools to determine how long I could expect a hard drive to „survive“. https://medium.com/@simonerni/dissecting-backbla
136.
▲
Dissecting Backblaze Hard Drive Stats (2017)
(medium.com)
2 points
by
red0point
9y ago
|
0 comments
137.
▲
Dissecting Backblaze Hard drive stats – Q3 2017
(medium.com)
3 points
by
red0point
9y ago
|
0 comments
138.
▲
by
red0point
9y ago
Is there any service that converts scanned PDF's using the Google Cloud Vision API to searchable PDF's? If so, that would be highly useful for me.
139.
▲
by
red0point
9y ago
Why is this posted again? This is from the 1th december 2017.
140.
▲
by
red0point
9y ago
What article exactly where you editing?
141.
▲
by
red0point
9y ago
Thanks for pointing that out! I didn‘t know that he did it as well, I just think its a really good way to visualize the data and to draw some conclusions from it.
142.
▲
Applying medical statistics to Backblaze Hard Drive stats
(medium.com)
13 points
by
red0point
9y ago
|
3 comments
143.
▲
by
red0point
10y ago
Just clarifying on that encryption bit - they do indeed encrypt the data, but when restoring (e.g. logging into the web view & selecting files to restore) you're handing over your passphrase in plain text, as the decryption is done
144.
▲
by
red0point
10y ago
Fell for it, this is the first time I connected to a honeypot (or so I think). I especially liked the part where you type 'exit' and it just keeps you connected but the command line changed to 'root@localhost' at the beg
145.
▲
by
red0point
10y ago
Is there any printer that represents the opposite of that statement? I recently tried to find a cheap way to print stuff, but all I found were cheap printers with expensive ink, even the ones designed for businesses, those even more so. Why
146.
▲
by
red0point
10y ago
Please note that all RunAbove stuff is Beta and will be discontinued at some point in the future and either integrated in OVH.com or completely dropped. Had a service running on RunAbove Cloud, and suddendly they pulled the plug with 1 mont
147.
▲
by
red0point
11y ago
>At first, we looked at services like VirusTotal and a few other open source options. But there was nothing that would run independent and download the file and scan quickly. VirusTotal is actually downloading the file from a URL indepen
148.
▲
by
red0point
12y ago
The title of this pist is a typical view grabber. Apart from that, the author doesn't take into account that when you leave an area without LTE coverage, your call will be disrupted. I did this only Skype experiment myself, to try and