Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
steventhedev
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
10 ms
·
61.
▲
by
steventhedev
6y ago
As others have pointed out, mosh doesn't support port forwarding, and because ssh doesn't support udp forwarding, can't easily be used with proxyjump servers. Story time: I had tmux sessions active on all our servers and woul
62.
▲
by
steventhedev
6y ago
If you're seeing retransmission errors on a wired lan, then you should replace cables and any network equipment until they go away. A basic assumption of TCP is that retransmission only happens due to congestion. It fundamentally assum
63.
▲
Preventing impossible game levels using cryptography
(robertheaton.com)
4 points
by
steventhedev
6y ago
|
0 comments
64.
▲
Jane Street Podcast: NTP, PTP, and Clock Sync
(signalsandthreads.com)
5 points
by
steventhedev
6y ago
|
0 comments
65.
▲
Mathematicians Should Stop Naming Things After Each Other
(nautil.us)
12 points
by
steventhedev
6y ago
|
11 comments
66.
▲
by
steventhedev
6y ago
Weren't Iranian devs banned from github last year[0]? That aside, I dont see any first hand source for the repo owner being Iranian, only speculation in the comments. The situation is sad, but a reasonable response to a PR that has leg
67.
▲
by
steventhedev
6y ago
Assuming the mean is close to the median, they are reporting ~10B requests daily with a median response size of around 1KB. 10TB daily is a little under 1Gpbs. Traffic is spiky, but this isn't particularly complex once you consider the
68.
▲
by
steventhedev
6y ago
For the majority of applications that follow this guide (or need to), the OS mitigations don't matter anyways: 1. They're running only trusted code. 2. L1 cache attacks aren't relevant if there's only one thread ever run
69.
▲
by
steventhedev
6y ago
Few bits of advice/comments: 1. the schedule syntax. It can seem much easier to work directly with English, but there's a reason most systems use cron-style schedules and it isn't because it's legacy. There's a bene
70.
▲
by
steventhedev
6y ago
Most likely it will be added to the OFAC sanction list at which point both Google and apple will delist the app within a few days. You can read up on how the SDN lists are basically the long arm of US law and can completely excise someone f
71.
▲
by
steventhedev
6y ago
It's wrong in the sense that anyone who's studied standard accounting will look at your books and consider them to be incorrect. This is important if you want to share your books or reports with your local tax office, who will beg
72.
▲
by
steventhedev
6y ago
I think this is partially because it's applicable to so many different domains (cryptography, statistics, etc) that each have their own notational quirks. Avoiding collisions between notation in the application domain is more important
73.
▲
by
steventhedev
6y ago
Which exact headers are being leaked by GitHub? Depending on what they leak, this could be something only useful for counting hits (if all they leak is the implicit time of the request), or for fully tracking users (if they leak Etags, orig
74.
▲
by
steventhedev
6y ago
Many of the violations discussed on the security lists are not end of the world at all. The 63-bit instead of 64-bit serial number entropy issue is a good example of this. But the strict enforcement of all violations makes it easier to spot
75.
▲
by
steventhedev
6y ago
That's the type of behavior I would applaud. If a country is not handling law enforcement to your satisfaction, then simply don't do business there. My issue is with an American company literally furthering their business interest
76.
▲
by
steventhedev
6y ago
On the one hand I can look at what he did and say that his intent was good and he protected those women and protected his company. However, Mr. Sullivan is clearly taking the law into his own hands (even if that law is in another country).
77.
▲
by
steventhedev
6y ago
There's a vast difference between a noncompete agreement between employee and employer and a noncompete/nonsolicitation clause in a contract between businesses. The first limits the individual employee's ability to compete in
78.
▲
by
steventhedev
6y ago
How does this compare to a full reverse index? I would expect a full index to be much simpler to implement and would compress better. Still very impressive work, and gives me a new reason to learn Rust.
79.
▲
En L'An 2000: 19th century vision of the year 2000
(stolenhistory.org)
2 points
by
steventhedev
7y ago
|
0 comments
80.
▲
by
steventhedev
7y ago
I've used mosh extensively over the last few years with very few issues. It composes well with tmux. The only barrier to me really advocating it is the lack of support for bastion hosts and working around firewalls.
81.
▲
A Git Murder Mystery
(github.com)
5 points
by
steventhedev
7y ago
|
0 comments
82.
▲
by
steventhedev
7y ago
How is this not filtered out by a lowpass filter? Wouldn't this only block the ultrasonic beeps they embed in ads?
83.
▲
by
steventhedev
7y ago
New banks are getting FDIC approval[0]. Latest one was approved last Friday. Perhaps you meant something else? [0]: https://www.fdic.gov/regulations/laws/bankdecisions/depins/i...
84.
▲
by
steventhedev
7y ago
Neat. Can you fix the numbers in the readme? It's difficult to trust a project that has glaringly obvious math errors on the front page (0.068 * 720 = 48.96, not 600.96).
85.
▲
by
steventhedev
7y ago
Put yourself in the attackers shoes. Your goal is to spread this to as many machines as possible. The best and easiest way to do that is to add your library as a transitive dependency. What better way to infect people than to get everyone w
86.
▲
by
steventhedev
7y ago
The actual paper: https://www.math.ucla.edu/~myding/papers/baking_paper_final....
87.
▲
by
steventhedev
7y ago
As an aside, is this the new pipe curl to sudo bash? docker run --rm --privileged docker/binfmt:66f9012c56a8316f9244ffd7622d7c21c1f6f28d
88.
▲
by
steventhedev
7y ago
Even if you disallow command execution on the bastion (good idea), this will still allow an attacker to pivot to servers behind the bastion. The whole point being that the strong auth (e.g. MFA) enforced by the bastion is a roadblock to piv
89.
▲
by
steventhedev
7y ago
Yes[0] [0]: https://github.com/uBlockOrigin/uBlock-issues/issues/338
90.
▲
Practical Drift Towards Failure
(risk-engineering.org)
24 points
by
steventhedev
7y ago
|
1 comments
More ›