Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
tikums
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
11 ms
·
31.
▲
by
tikums
12y ago
Sweeping-under-rug is a common approach. It seems that in this instance, they have followed Linus Torvalds mantra, who once said: "I don't have any reason what-so-ever to think it's a good idea to track security bugs and anno
32.
▲
To Change Everything, an anarchist appeal
(crimethinc.com)
2 points
by
tikums
12y ago
|
0 comments
33.
▲
by
tikums
12y ago
> What docker allows you to do is to isolate all those 20 services in separate containers that if any of them is being hacked your attacker will end up compromising only that service without any access to the main server. Except that: co
34.
▲
by
tikums
12y ago
In light of Russia's recent acitons, non-proliferation is an impossibility. Russia is using its status as a nuclear state to bully their neighbouring states into submission (Ukraine, Georgia, Moldova, Poland)[1]. This is not dealt with
35.
▲
by
tikums
12y ago
> A couple of other examples of critical bugs that were revealed in 2014: shellshock and heartbleed. Should we dismiss bash, C, etc, as terrible languages because of these? Yes.
36.
▲
by
tikums
12y ago
NSA old boy Stewart Baker is a fascinating character. Here's what he said at the Economic Warfare Institute at American Center for Democracy in 2012 (before Snowden leaks): "We will map your social graph, compromise every computer
37.
▲
by
tikums
12y ago
Are you saying it's resistant to penetration by Russian security services? Sorry if I don't take your word for it. They have just successfully hacked into several of the top financial institutions in the world: http://w
38.
▲
by
tikums
12y ago
And then be sure to read this: https://estoniaevoting.org/ E-future cannot be built if we don't fix serious issues with software engineering. There is no guarantee of security. There is no assurance. We basically don&#
39.
▲
by
tikums
12y ago
Not so fast https://www.youtube.com/watch?v=0EB7zh_7UE4
40.
▲
by
tikums
12y ago
Please, read the article that's referenced on GitHub: "He beckons me over to one of his eight computers and presses several keys, activating Blockfinder. In less than 30 seconds, the program lists all of the Internet Protocol addr
41.
▲
by
tikums
12y ago
Exactly. This doesn't seem to be popular around here, but unless secure coding practices are mandated, commercial aspects (first-to-market etc.) will take precedence. This is an industry-wide policy issue. Regulation works -- we shou
42.
▲
by
tikums
12y ago
> I'm aware of [one case] where the developer of exploit code was found criminally liable You're probably referring to Stephen Watt (a.k.a. "Unix Terrorist"), who wrote the POS sniffer. His friend, Albert Gonzalez, th
43.
▲
by
tikums
12y ago
This is patchwork, at best. It may slightly improve posture...they'll hunt for bugs in already published software, instead of demanding strong security principles for software engineering. “The software security industry today is at ab
44.
▲
by
tikums
12y ago
There's an interesting parallel with Tarkovsky's advice: "What would you like to tell people? I don’t know… I think I’d like to say only that they should learn to be alone and try to spend as much time as possible by themselv
45.
▲
by
tikums
12y ago
The Baltic States would like to disagree with you. France is selling Mistral warships to Russia, and a large part of Europe depends on Russia's natural gas. The local population on the border with Russia, including Poland, does not fee
46.
▲
by
tikums
12y ago
Just wanted to say that I enjoy your submissions. Alas, there's no way to "follow" on HN.
47.
▲
by
tikums
12y ago
On Android, iptables packet filter can be used to control what network connections apps are allowed to make. It is, however, an increased maintenance burden. Recent versions of CyanogenMod also have Privacy Guard pre-installed, which can be
48.
▲
by
tikums
12y ago
DOJ Plans To Indict State-Sponsored Cyber Attackers http://www.defensenews.com/article/20121218/C4ISR01/31218000... The above article was published in 2012. They are right on track, all predictions, down to t
49.
▲
by
tikums
12y ago
Russian FSB (formerly KGB) has reverted back to using typewriters for this very reason.
50.
▲
Cisco 2014 Annual Security Report [pdf]
(cisco.com)
1 points
by
tikums
12y ago
|
0 comments
51.
▲
Current Certificate Revocation System Does Not Scale
(grc.com)
2 points
by
tikums
12y ago
|
0 comments
52.
▲
by
tikums
12y ago
Which goes to show that you're not the intended end-consumer of this product and don't know their credentials. They are not newcomers to this space. If their tone is off-putting, maybe you should stop relying on OpenSSH too.
53.
▲
by
tikums
13y ago
Who uses :x, when you can ZZ?
54.
▲
by
tikums
13y ago
I agree, it's not necessarily the right OSI layer we should be trying to secure. Unfortunately, NSA sabotaged IPv6 goal of "encrypting everything by default": https://en.wikipedia.org/wiki/IPsec#Alleged_N
55.
▲
by
tikums
13y ago
No. It's developed in-house by the OpenBSD project.
56.
▲
by
tikums
13y ago
For the same reason why we don't exercise or always follow healthy eating habits: https://en.wikipedia.org/wiki/Default_effect_%28psychology%2...
57.
▲
by
tikums
13y ago
Possibly related: "Jimmy Wales launched an investigation to determine if any of the pseudonyms who edit the world's biggest encyclopedia belong to Edward Snowden." http://www.examiner.com/article/jimmy-wa
58.
▲
by
tikums
13y ago
"He was apparently really careful about connecting to the server. " That is not, by any measure, careful. That's awful OPSEC, and what got him in the end. He thought Tor to be inconveniently "slow", and used VPN ins
59.
▲
by
tikums
13y ago
Any particular reason why they couldn't become as agile as IDF ISNU? http://www.al-monitor.com/pulse/tr/contents/articles/busines...
60.
▲
by
tikums
13y ago
That's why you have several children as backups.
More ›