Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
roblabla
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
15 ms
·
151.
▲
by
roblabla
3y ago
Yes, but you don't have access to s3.amazonaws.com/.well-known, only to yourdomain.s3.amazonaws.com/.well-known.
152.
▲
by
roblabla
3y ago
Nothing. Systemd is a suite of software that handle a lot of the low-level operations on Linux (In particular, the service manager, some network configuration, along with some other stuff). Historically, those operations were handled by dif
153.
▲
by
roblabla
3y ago
That's not necessarily the case though. It may be worth it for, say, a document viewer to catch the OOM condition and show a user-friendly error instead of dying. Of course, linux with overcommit memory can't do this. But on Windo
154.
▲
by
roblabla
3y ago
> Not sure how it's done in the EU That's how it's done, is my understanding. The actual articles of the "usb-c" law[0] doesn't even mention usb-c. Here's what Article 1 states: > With respect to rad
155.
▲
by
roblabla
3y ago
The very website you link has data about exonerations[0]. From a quick look, it looks like this is about people who are still alive, not dead people found innocent after the death penalty was carried through (I'm having a hard time fin
156.
▲
by
roblabla
3y ago
No, but then neither is perl. On windows you've got powershell, batch, VBScript and JScript pre-installed.
157.
▲
by
roblabla
3y ago
You'd need every government to agree not to peer with them, otherwise you'd just route to whoever has agreed to peer. You might get shit latency, but it'd still work. Getting everyone to agree not to peer seems like a rather
158.
▲
by
roblabla
3y ago
Tailscale does offer an ACL system[0] that allows protecting individual ports (which I assume is what is meant by services here?) and defaults to least-privilege (when ACLs are enabled, a node in the network cannot access other nodes by def
159.
▲
by
roblabla
4y ago
Dead cells is the most recent and prominent example.
160.
▲
by
roblabla
4y ago
DNS can trivially be mitm'd. DNS-stored fingerprints are strictly less secure than TOFU.
161.
▲
by
roblabla
4y ago
Maybe because the article says so? > This week, we discovered that GitHub.com’s RSA SSH private key was briefly exposed in a public GitHub repository
162.
▲
by
roblabla
4y ago
I use netlimiter[0] on windows. It works pretty well, has more or less the same workflow as little snitch. Disclaimer: Just a happy paying user. [0]: https://www.netlimiter.com/
163.
▲
by
roblabla
4y ago
> (FPGA and ASIC tools allow you to sequester the open source block in its own "compilation unit" and compiling that unit separately from the main system, only connecting the wires at the last steps) The whole "compilation
164.
▲
by
roblabla
4y ago
I mean, it's possible for something to be simultaneously overzealous and not strict enough. If the code focuses on the wrong measures, it could end up putting unnecessary red tape, while completely failing to provide adequate safety. I
165.
▲
by
roblabla
4y ago
IANAL, but from TFA: > By simply publishing it, we place it under an irrevocable Creative Commons license. I'd be very surprised if they still had their rights to revoke the license after explicitly saying otherwise.
166.
▲
by
roblabla
4y ago
At least the SRD5 is now irrevocably in the creative commons. So the situation now is somewhat better, they can't simply revoke the license anymore for that document.
167.
▲
by
roblabla
4y ago
Or an alternative read of the result today: A simple implementation of filesystem access, on top of which any number of database (SQL or not) can be implemented, thus allowing for more innovation in the database space.
168.
▲
by
roblabla
4y ago
"Offensive <Language>" is about using a programming language for red teams. Stuff like writing malware, privilege escalation, antivirus evasion, etc... The "weaponization" here is about using the language for malic
169.
▲
by
roblabla
4y ago
> 1) be pissed at being asked to understand it, and 2) not even try it after I died, and suffer all the inconvenience of not having access to my accounts. Your family sounds fun to be around. 1Password emergency kit is pretty well-design
170.
▲
by
roblabla
4y ago
> That doesn't make sense to me as there are next to no changes between VSCodium and VS Code. Honest question: How would we know that? Is it possible to somehow diff vscode's code with the open source repo? Is there an analysi
171.
▲
by
roblabla
4y ago
> like requiring proprietary extensions to lock down the thing. Which they are already doing in a lot of places. For instance, the VSCode Python extension replaced the open source language server with a proprietary rewrite (PyLance)[0].
172.
▲
by
roblabla
4y ago
This is gitlab, not github. I'm not aware of gitlab doing any code scraping for ML models. Did I miss some news?
173.
▲
by
roblabla
4y ago
> UD is supposed to allow C to be implemented on different architectures No, that's wrong. Implementation-Defined Behavior is supposed to allow C to be implemented on different architectures. In those cases, the implementation must
174.
▲
by
roblabla
4y ago
With a free apple developer account, you're also limited to only three "active" sideloaded apps. It's a huge hindrance. If you want more, you've got to shell out those 100 bucks per year.
175.
▲
by
roblabla
4y ago
From my understanding, he's not claiming this is how twitter currently works. He's offering advice about how to solve content moderation on twitter.
176.
▲
by
roblabla
4y ago
Oh wow, I had no idea! I played The Bard's Tale a lot when I was a kid on a DOS machine, making my own maps on grid paper and stuff. I just bought The Bard's Tale trilogy remaster[0] on steam yesterday, and it's great! It
177.
▲
by
roblabla
4y ago
parsers and serializers have one thing they often do: read (and write) to a (usually manually allocated) byte array. And the content of that byte array is often under attacker control. C has terrible support for things dealing with byte arr
178.
▲
by
roblabla
4y ago
A lot of the internals are, but certainly not all. And they always lag behind with what is currently released, sometimes by several months.
179.
▲
by
roblabla
4y ago
There's some silly "DRM" that you need to bypass, but it should be able to run just fine in asahi after that. I don't think a port to RPi/OrangePi is possible, as it relies on Apple Silicon being able to enter a str
180.
▲
by
roblabla
4y ago
I don't think that's necessarily true. All you need is default-on sandboxing that is "painfully obviously wrong" for the system owner to bypass. As a case in point, look at macOS. You can bypass almost every security f
More ›