Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
shabble
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
36 ms
·
361.
▲
by
shabble
13y ago
Although you probably should factor in the possibility of several years of compulsory $0.30/hr labour, plus forfeiture of all your ill-gotten gains (and probably some healthily-gotten ones too, they're not so fussy) And that'
362.
▲
by
shabble
13y ago
A similar (and undoubtably simpler, although still often infuriating) but still fun logic/programming game is Manufactoria[1]. Spoiler: Vg'f onfvpnyyl cebtenzzvat n uggcf://ra.jvxvcrqvn.bet/jvxv/Gnt_flfgrz [1]
363.
▲
by
shabble
13y ago
I read it as "ask a bunch of our guys for what they think it's worth, and pay out the average of those recommendations", but I'd have expected that to be pretty standard practice for any serious & non-obvious case.
364.
▲
by
shabble
13y ago
My initial understanding is that the XXE flaw allows the attacker to read local files, or make network requests via the remote host (essentially, proxying them), but still only delivered to his client, rather than actually modifying or crea
365.
▲
by
shabble
13y ago
It's increasingly common in modern ICs (SoCs and microcontrollers especially) to have only the minimum required connections be permanently assigned to physical pins. The rest of the pins are connected to some routing logic which in tu
366.
▲
by
shabble
13y ago
Whilst some impressive hacks (and especially convincing university staff to lend you their Expensive Toys), my understanding is that the really tricky bit is going from die scans to netlist/circuit diagram, and thence simulation/c
367.
▲
by
shabble
13y ago
The obvious solution is of course a bit of tape, but that's less convenient when you do actually want to use the camera. I notice that the EFF have some nifty little 'ultra-removable adhesive' stickers[1] that might do better
368.
▲
by
shabble
13y ago
Thanks for your constructive reply. Your exact statement was: > Can data be transferred via acoustics over a 2 conductor 16 gauge wire at the speeds memory is accessed or is sent to the CPU? No Which is of course true, if you're
369.
▲
by
shabble
13y ago
Ah, the Maginot Line[1] argument. Given the sheer number of possible emissions channels, are you proposing they all be universally protected against in hardware? Or that there should be special classes of 'protected against $FOO'
370.
▲
by
shabble
13y ago
This is a very weak dismissal. Have you read the actual details they claim? Side-channel attacks (like power analysis) in the presence of other activity are well established. Electrical signals causing audible frequency output are also well
371.
▲
by
shabble
13y ago
If only that was how Time-travelling Debuggers[1][2] worked! [1] http://chrononsystems.com/products/chronon-time-travelling-d... [2] https://www.gnu.org/software/gdb/news/reversible.html
372.
▲
by
shabble
13y ago
Because if you stop serving up the remote reference before it gets requested by a particular client, it won't be there. If it's archived {immediately,on first request} permanently thereafter, there's now another copy outwith
373.
▲
by
shabble
13y ago
Yes. Whilst you can embed images as MIME attachments (or data:// uri trickery and the like), the vast majority are <img> tags referencing external http:// uris. A message with remote image references is not a com
374.
▲
The Night Watch
(research.microsoft.com)
2 points
by
shabble
13y ago
|
0 comments
375.
▲
by
shabble
13y ago
Unless I'm missing something important, it's locking so the same page can only be rendering once at a time; if another request that would cause a rebuild comes in while a previous rebuild is still in progress, it gets bounced.
376.
▲
by
shabble
13y ago
No, only views which hit a stale copy of the rendered page and have to call that render() function. Normal views would (I imagine, I haven't traced it back) use the get_rendered() instead, which checks that the cached version is curren
377.
▲
by
shabble
13y ago
LXC + eggs + setuptools + something, I guess? As a current member of the `pip freeze > reqs.txt' brigade, I'd be interested in seeing a more detailed look at how to do it "right"/better.
378.
▲
by
shabble
13y ago
On Error Resume Next
379.
▲
by
shabble
13y ago
> Developing countries trope, Check! Because the best place to compete with huge established logistics chains is in places with well-developed road & rail infrastructure? > ridiculous comparison (drone faster than a truck?) Fa
380.
▲
by
shabble
13y ago
> Should the guy working hard all day to make the Zyklon B have refused to do so? ABSOLUTELY Initially at least, Zyklon B was an entirely legitimate pesticide/vermicide that had a broad range of uses. The original form contained a
381.
▲
by
shabble
13y ago
> It's not possible to predict the uses of one's work Probably not in all cases, but you can often make an educated guess. You could at least consider classes of activity, ranging from: Primary, sole purpose is to cause direc
382.
▲
by
shabble
13y ago
In a previous loss of Co-60 in Mexico (back in 1983), the material ended up being melted with recycled steel into rebar and used in all sorts of construction, until it was discovered largely by accident when a delivery truck carrying contam
383.
▲
by
shabble
13y ago
I don't believe Co-60 is capable of activating (making radioactive) other materials to any significant degree, so the danger is really only from direct exposure to the source material. So you get irradiated, but you don't become r
384.
▲
by
shabble
13y ago
> After all, this is a fairly basic Fermi problem. I was greatly concerned for a second there, before realising I was confusing Fermi Paradox [1] with Fermi Problem [2]. Unless there's something the sheep are keeping very well h
385.
▲
by
shabble
13y ago
One wonders if he wouldn't have been better[1] off downloading their app source, and using that to find 'in-scope' vulns much easier than everyone else. They might catch on if you're too effective though. Maybe a spot of
386.
▲
by
shabble
13y ago
http://pdos.csail.mit.edu/scigen/
387.
▲
by
shabble
13y ago
It's a way to use the bitcoin blockchain as a non-centralised way to record the fact that you were in possession of a particular file at a particular time, without exposing what that file is, or who you are. The problem has been around
388.
▲
by
shabble
13y ago
Quoting from the Cloudflare article[1]: Red October is based on combinatorial techniques and trusted cryptographic primitives. We investigated using complicated secret primitives like Shamir's sharing scheme, but we found that a simpl
389.
▲
by
shabble
13y ago
is "awry" better or worse than the status quo?
390.
▲
by
shabble
13y ago
Do you have any reliable references for this use of Naloxone as a "lunch hour fix-ender"? I'm led to believe the administration of it isn't particularly pleasant under any circumstances, and the risk of an excessive dose
More ›