Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
unluckier
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
unluckier
2y ago
The thread that the title comes from is from a Twitter user that later stated about the issue: "And YES: I LOVE hyping the sh1t out of this stuff because apparently sensationalism is the only language that forces these people to fix. &
2.
▲
by
unluckier
2y ago
Disabling the firewall for testing is simple enough. If things work after turning off the firewall, then this is your problem.
3.
▲
by
unluckier
2y ago
It's easily reproducible with a fresh macOS install. Yes, ESET has its own issue. But this is a problem in and of itself. https://imgur.com/a/Nr7Gk6c
4.
▲
by
unluckier
2y ago
See: https://waclaw.blog/macos-firewall-blocking-web-browsing-aft... If disabling the firewall (for testing) solves this problem, this is likely your issue.
5.
▲
by
unluckier
2y ago
Sequoia also breaks an application's ability to use DNS (or presumably anything UDP-based) if the macOS firewall is enabled, and an app is listed as "Block incoming connections". https://waclaw.blog/macos-fire
6.
▲
by
unluckier
8y ago
So... two of the routers affected by the recent VPNFilter malware? Interesting choice.
7.
▲
by
unluckier
10y ago
No mention of ASLR. Helping to prevent memory corruption bugs apparently isn't on their radar?
8.
▲
by
unluckier
11y ago
If you're on BSD, that'll kill dd.
9.
▲
by
unluckier
11y ago
What version of IE is that dialog from? 6? Things have changed quite a bit since then. Yes, SSL inspection is a security tradeoff. Whether the folks rolling it out realize this is another story.
10.
▲
by
unluckier
11y ago
Even done in the best way possible, SSL inspection puts end users at increased risk. In the real world, vendors make mistakes, which put them at even higher risk. https://insights.sei.cmu.edu/cert/2015/03/the
11.
▲
by
unluckier
11y ago
"It desperately wants to just upgrade whenever it wants." Do you think that it's better that operating systems get security updates or that they get left alone? "Copy and paste is still a bit frustrating." You reall
12.
▲
by
unluckier
11y ago
Or just turn off the web features. It's quite trivial to do so. http://www.howtogeek.com/224344/how-to-disable-spotlights-we...
13.
▲
by
unluckier
11y ago
It's the FreeBSD folks that didn't bother. Not you.
14.
▲
by
unluckier
11y ago
We all know that exploit mitigations aren't perfect. But to not even bother using them... that's just ridiculous. There are plenty of scenarios where ASLR helps prevent exploitation. And the fact that FreeBSD doesn't even
15.
▲
by
unluckier
11y ago
I've heard the opposite. Although it's comparing to OpenBSD in this case, here's a good graphic that shows the exploit mitigations that FreeBSD provides by default: http://networkfilter.blogspot.com/2014
16.
▲
by
unluckier
11y ago
How's FreeBSD doing in the exploit mitigation department? Last I checked, they didn't even have ASLR. http://networkfilter.blogspot.com/2014/12/security-openbsd-v...
17.
▲
by
unluckier
11y ago
You have to block outbound communication for "Search" in the Windows firewall. Regardless of whatever privacy settings you may have set.
18.
▲
by
unluckier
11y ago
If you have a proven technique for making Windows 10 not phone home, post the details here.
19.
▲
by
unluckier
11y ago
Did you install the CA certificate from whatever software you're using to MITM your machine?
20.
▲
by
unluckier
11y ago
At least for Android: https://docs.google.com/spreadsheets/d/1t5GXwjw82SyunALVJb2w... There are several banking-related apps listed here.
21.
▲
by
unluckier
11y ago
What do you mean "apps like this" ? The OP is talking about the Windows 10 OS, which uses the OS CA store.
22.
▲
by
unluckier
11y ago
It's pretty simple if the OS you're using allows you to install a trusted root CA certificate.
23.
▲
by
unluckier
11y ago
Is it really necessary to use a host that requires JavaScript to display an image? Anyway, I've confirmed this. I've disabled web search and all of the other privacy options I've seen with Windows 10 during and after install
24.
▲
by
unluckier
11y ago
He did use a JPEG...
25.
▲
by
unluckier
11y ago
See also: Idiocracy https://www.youtube.com/watch?v=hL1-340ODCM
26.
▲
by
unluckier
12y ago
And why exactly do they do this?
27.
▲
by
unluckier
12y ago
Neither of those links imply that PrivDog is bundled with those apps. It just mentions it as something you can download. Edit : Just re-read the linked document. Yes, it does indicate that it's an install-time option. However, I
28.
▲
by
unluckier
12y ago
Daily short tests and weekly long tests seems reasonable. These drives show that they've gone thousands of hours since the last test.
29.
▲
by
unluckier
12y ago
None of those drives show evidence of regularly-scheduled self tests. They must not really care about them.