Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
rmac
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
16 ms
·
121.
▲
by
rmac
10y ago
The ASPack emulator that was vulnerable was one of the few not inside of a virtual machine, hence why this overflow could be easily used to get code execution. [previous Symantec employee]
122.
▲
by
rmac
10y ago
It took 4 iterations for me to buy a Surface.
123.
▲
by
rmac
10y ago
The future is brain-to-text, where our thoughts get piped directly to Alexa/Siri/Cortana/Now http://www.kurzweilai.net/brain-to-text-system-converts-spee... No need to utter words in public.
124.
▲
by
rmac
11y ago
Just got back from Vietnam (Hanoi and Saigon) and the amount of coffee storefronts/cafes is nuts. It seems every other store is a cafe. Highland coffee is the 'Starbucks' of Vietnam
125.
▲
by
rmac
11y ago
this has been 'fixed'. Now, if you make 100k, you're taxed in the 100k bracket but only on 20k (approx)
126.
▲
by
rmac
11y ago
... and safari
127.
▲
by
rmac
11y ago
Kimono had a beautiful chrome extension which allowed me to easily extract things quickly without needing to write any selectors / scraping. Much love to this team; best of luck!
128.
▲
by
rmac
11y ago
this is great! sadly all the cool fraud api stuff can only be used by issuers (e.g., banks) in production :(
129.
▲
by
rmac
11y ago
I couldn't find language that states the fed has to share data back with private entities. I did see provisions allowing the fed to share submitted data with other federal agencies and even some health care operators. Where does it sta
130.
▲
by
rmac
11y ago
So is there room to build products to help facilitate the sharing of data as mandated in CISA? Is there a standard or format for how the government will expect this threat data to be packaged? STIX / TAXII? Startups; assemble!
131.
▲
by
rmac
11y ago
chromeos
132.
▲
by
rmac
11y ago
tldr: 1) LTE uses broadcast messages to do push notifications. These are unencrypted and unauthenticated. Researchers can trigger them silently by spamming you on Facebook, and triangulate your location since the LTE network only sends the
133.
▲
by
rmac
11y ago
The information us excellent for a someone like .e who knows nothing about M&A. However the consipra t theory undertones were perhaps a little too cute; they insinuate that dell colluded with emc to structure the original VMware deal so
134.
▲
by
rmac
11y ago
Using the venmo api you can get an entire friends list of any user, all you need is their ID. I was hoping this demo would have crawled all of venmo but it looks like it is querying the api in real time. Mine only got to 3 degrees
135.
▲
by
rmac
11y ago
I wonder how common it is for malware to obfuscate later stage payloads? If I hide my executables inside an image (or zip, pdf, docx) and download them with URLDownloadToFile, will this evade detection?
136.
▲
by
rmac
11y ago
As a long time user of googles web based terminal (accessed normally through google cloud platform console by listing your VMs and clicking the SSH button): I love it because I don't need to worry about key management and can access my
137.
▲
by
rmac
11y ago
Why is ARM interesting? Running android natively is one of the few things I can come up with...
138.
▲
by
rmac
11y ago
We started out with the idea that companies don't want to manage these devices (fortinet, dell, etc), and designed a new IDS from the ground up with this is mind. Its too hard to find good security people to do low end triage and analy
139.
▲
by
rmac
11y ago
We're starting out with something that resembles a managed IDS/IPS but built with the things I wanted after building an IPS product @symantec. Better search, cloud managed, and tuned / triaged / and alayzed by our analys
140.
▲
by
rmac
11y ago
Founder here; happy to answer questions about how this works. Reach out to ryan@traversalnetworks.com if you want to chat privately.
141.
▲
by
rmac
11y ago
As a novice mobile engineer I might go to stack overflow to see how to implement things like exception handling, caching, etc. I'd like to know the best way to do these things, given your corpus of data. Decompile snippets of code fr
142.
▲
by
rmac
11y ago
you've essentially described what google is trying to do with gnubby/u2f, now hamstrung by FIDO and converging UAF standards. If you are interested a high level explanation is here: https://docs.google.com/presenta
143.
▲
by
rmac
11y ago
the rumor is a bluetooth dongle will come out before year end...
144.
▲
by
rmac
11y ago
It's only supported in chrome, with other browser support at least 6 months away (guess). After getting a test webapp to work with u2f tokens on chrome I wouldn't say it's easy. YMMV. You need to include this js: https:/
145.
▲
by
rmac
11y ago
Can you elaborate on 'authentication time made it totally impractical' ? Does this mean it was slow? I'm using gpg-agent on osx with a neo-n to ssh into boxes and it's not noticeably slow.
146.
▲
by
rmac
11y ago
Insecure enterprise software and poor security practices mean death to firewalls and to vpns will take a long, long time. People hide behind these things for a reason. Google is right here though, this makes things easier for employees and
147.
▲
by
rmac
12y ago
The problem with open source security tools (e.g., bro, suricata, brakeman) is that they require security expertise to operate, continually. In my experience many small/medium organizations who actually care about security don't h
148.
▲
by
rmac
12y ago
LTE seems to work well enough with less bandwidth (~60MHz). However I'm not sure what kind of range you can get with 3.5ghz. Surely at least a few city blocks?
149.
▲
by
rmac
12y ago
Wireless last mile might be an option if the FCC actually opens up the 3.5ghz "innovation band" : http://www.fcc.gov/blog/35-ghz-new-ideas-innovation-band
150.
▲
by
rmac
12y ago
Taking this even further: use uber/lyft as vehicles to do market research and/or customer development. I only pick up in Atherton... ;)
More ›