Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
rightos
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
12 ms
·
91.
▲
by
rightos
9y ago
Precisely what I'm saying, the limitation to the blast radius is already there if you've done the isolation yourself and it's only that one service that gets hit. If your Web server is on a private network with your app serve
92.
▲
by
rightos
9y ago
Yeah what I'm saying is that I've already done so myself and have no need for SELinux. Proper network and VM isolation is far better than SELinux. I don't want it forced on me and will disable it. Not out of laziness, but due
93.
▲
by
rightos
9y ago
How about lack of necessity? I isolate my systems in many ways, using vms, tunnels and network isolation, but SELinux just doesn't fall into that, if anything's getting compromised it's the service in question that's the
94.
▲
by
rightos
9y ago
Yeah, I've largely avoided using Tower for this reason, but you could theoretically get it up to an equivalent or at least comparable security level simply by SSH tunneling it or putting it behind a good VPN. Host compromise is still a
95.
▲
by
rightos
9y ago
96.
▲
by
rightos
9y ago
So can this, it'd be fairly trivial to detect and block anything using DDE at the file level - however a common strategy is to send an encrypted archive file and give the password in the email to bypass that detection. Trashing all enc
97.
▲
by
rightos
9y ago
But then it's really not much better than spamming a .ps1 or .js script (handled by Windows Script Host by default), or even straight up executable as many already do. If they're at that level then there's really not much you
98.
▲
by
rightos
9y ago
EF6, yes, it really is the best thing going. But EF Core right now has some major issues with lazy loading and not supporting group by on the DB-side last I checked. I believe those are both scheduled to be fixed.
99.
▲
by
rightos
9y ago
Their NuGet ecosystem is extremely rich. For example, see https://www.nuget.org/packages?q=image+processing My experience is that LINQ pretty much beats every other way of interacting with a database I've ever seen. Co
100.
▲
by
rightos
9y ago
True, the scenario in which ctrl+alt+del would help is one in which only a limited account had been compromised, but the SYSTEM level winlogon keylogger allows you to do things like turn local admin into network admin and it certainly doesn
101.
▲
by
rightos
9y ago
> I think the idea behind ctrl-alt-delete is that it generates a non-maskable interrupt that can't be hooked from user-mode. Keyloggers can still enter the winlogon session and log all keystrokes there, they need to run as a SYSTEM
102.
▲
by
rightos
9y ago
It's an interesting case - they're unlikely to have any legal impact on me and my ad views are probably of very low value to them, lacking even a common language with most ads. Some people feel more comfortable with a government t
103.
▲
by
rightos
9y ago
I guess it depends on what you mean by open platform. The platforms are well known, architectures are standardize, GPU drivers are often proprietary similar to the desktop world, but ultimately I can flash anything I want on my phone, I
104.
▲
by
rightos
9y ago
If you're running Windows 10, even "top of the line desktop PCs" engage in data collection these days - I have to turn off pages of settings and set group policies to disable it all properly and even then there are still some
105.
▲
by
rightos
9y ago
Hmm, I'm in the opposite boat - China can't extradite me or arrest me. I'd much rather my information be in the hands of Chinese intelligence agencies than American ones.
106.
▲
by
rightos
9y ago
https://www.youtube.com/watch?v=O_HyZ5aW76c
107.
▲
by
rightos
9y ago
I wasn't suggesting any of those things weren't true, merely a back-of-the-napkin estimate of the sort of load a function like this would be sufficient for.
108.
▲
by
rightos
9y ago
Is that confirmed anywhere more reputable? Daily Mail doesn't exactly have a stellar track record if I recall correctly.
109.
▲
by
rightos
9y ago
> Surely identifying phone numbers via the camera and inputting them that way would be easy and a measurable improvement over the current method of mashing buttons. Not many people really dial phone numbers these days though - dialing vi
110.
▲
by
rightos
9y ago
I feel like the "how people hold the phone" study is sort of flawed - people probably hold it in each of these positions at different times. One-handed: clicking audio controls, scrolling through news or similar content One hand h
111.
▲
by
rightos
9y ago
> and maybe previous versions, I can't remember Yes, this has been the way it's done for a very long time. It's such a basic feature that I don't think there was ever a version of Firefox without this feature in one f
112.
▲
by
rightos
9y ago
> https://www.ovh.co.uk/dedicated_servers/hg/180bhg1.xml Yeah, the main reason to go with Amazon in this case is if you only need the box for a few hours (ie: you're doing data science or similar). For lon
113.
▲
by
rightos
9y ago
Yeah, OVH is great, I highly recommend them, we use their cheap dedicated servers via Kimsufi and SoYouStart at a few locations. I seem to recall a friend having stability issues with their VPSes several years ago, so we stuck to the dedica
114.
▲
by
rightos
9y ago
Yeah, you're not kidding. I run semi-bandwidth intensive applications and DigitalOcean and LightSail are actually better deals than EC2 for the amount of bandwidth. $5/mo for 1 TB on DO/LS vs $90 for 1 TB on EC2. We use a mix
115.
▲
by
rightos
9y ago
Even let's encrypt is issuing only a handful of certificates per second. Perhaps it'd matter more if used on a per connection basis.
116.
▲
by
rightos
9y ago
This article is about their news aggregator failing to represent a fact check correctly, not about their search engine failing to deliver a wide variety of sources with various levels of reputability. Which it does do quite reliably. Their
117.
▲
by
rightos
9y ago
It's really not that hard to Google something and find reputable sources. Established names, links to well-known institutions, past history, etc. If you expect some single organization or worse, crappy AI to put together the perfect li
118.
▲
by
rightos
9y ago
> "The stories and information posted here are artistic works of fiction and falsehood. Only a fool would take anything posted here as fact". I believe that's only on /b/.
119.
▲
by
rightos
9y ago
> To make this statement is akin to saying that the opinion of experts is useless. That's not at all what I'm saying - absolutely, look at the opinions of experts, just don't expect a news service to present all the ideal
120.
▲
by
rightos
9y ago
Doesn't ZFS perform checksumming and error correction on that data to make sure that memory or disk issues don't get affected by corruption? I thought that was a main reason to use it.
More ›