Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
robtoo
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
30 ms
·
121.
▲
by
robtoo
15y ago
Aaand I forgot about the php53 package, an optional supported alternative to the default php package.
122.
▲
by
robtoo
15y ago
"In my opinion, the users should be educated about the very sophisticated permission system on Android instead. The user should learn to determine whether a permission should be required by an app" That's just ridiculous. [editing to expa
123.
▲
by
robtoo
15y ago
"consumers spent an average of 81 minutes per day using apps on smart phones and tablets, versus 74 minutes surfing the Web through a PC or mobile phone browser" But how much time do people spend using apps on a PC? You might draw differe
124.
▲
by
robtoo
15y ago
As I'm sure you noticed, many of those sites are putting the password in the welcome/verification email, but this is not the same as actually storing it as plaintext in their database. The thing to look out for is your old password in passw
125.
▲
by
robtoo
15y ago
Why should basecamp even need to prompt the user to upgrade their account to the new login system? Why don't 37signals just do it?
126.
▲
by
robtoo
15y ago
Please contact your host and get them to upgrade to something released in the last... 5 years or so? As noted above: CentOS 5.6 was released less than 3 months ago, and CentOS 6 isn't even out yet. Similarly for Red Hat. RHEL 5.6 was rele
127.
▲
by
robtoo
15y ago
MyISAM does have some uses. It is a much better choice in a memory-restricted environment (such as a low-end virtual machine), for example. Of course, if someone is using WordPress at all in a low-end virtual machine, then you could also po
128.
▲
by
robtoo
15y ago
The solution to a fundamentally-flawed security architecture is not a better hash algorithm, sorry. bcrypt is good at what it does, but that is such a limited domain that it is insignificant next to the decades of security research and ex
129.
▲
by
robtoo
15y ago
The data's already been leaked. The URL of the leak was included in the article, except for reasons best known to the author, the URL was only shown as a jpeg. This just makes it clickable.
130.
▲
by
robtoo
15y ago
"The passwords appear encrypted so there is little threat that others can abuse this account information." This is nonsense, of course. Several of the hashes are googleable. Sometimes I feel like web app security is still where unix secur
131.
▲
by
robtoo
15y ago
Shrug . Other industries seem to manage just fine with professional certifications.
132.
▲
by
robtoo
15y ago
I have always believed that it will ultimately be the insurers (through liability insurance conditions) who enforce server security, rather than courts and lawyers. I don't see this as a bad thing.
133.
▲
by
robtoo
15y ago
That's the standard lightbox convention for a left -click. The grandparent was talking about a middle -click. There is an established convention for middle-clicking a lightbox thumbnail (open the larger image in a new tab), which posterou
134.
▲
by
robtoo
15y ago
"It is obviously difficult to address anonymous commentary and it is particularly difficult to believe that a 'high level employee' in good standing with the company would choose to anonymously publish a letter on the web rather than engage
135.
▲
by
robtoo
15y ago
I just add "-RT" to my twitter searches.
136.
▲
by
robtoo
15y ago
Complex systems have complex interactions. You can't just just hand-wave this away by claiming that the interactions will be identical for all cases without actually demonstrating it.
137.
▲
by
robtoo
15y ago
Except he isn't just testing one aspect in isolation of others. He's actually introducing an entirely new aspect (the client) which is a substantial load and won't be there in production.
138.
▲
by
robtoo
15y ago
previously: http://news.ycombinator.com/item?id=2629631 Also, "The client as well as the web server tested are hosted on the same computer", which is pretty poor design, to be honest.