Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
usmannk
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
33 ms
·
151.
▲
by
usmannk
6y ago
Their whole point on the stock market is this: > The big issue with all of these is that it’s very difficult to participate in the stock market anonymously. The SEC has all sorts of monitoring in place to catch more common forms of insid
152.
▲
by
usmannk
6y ago
I recommend ignoring this misinformed WSJ article and reading this: https://www.kalzumeus.com/2019/6/26/how-brokerages-make-mone... After that come back and see how the WSJ article is just a poorly written hi
153.
▲
by
usmannk
6y ago
Looks like a mistake, should only be in New Features.
154.
▲
by
usmannk
6y ago
I noticed CUDA 11.0 was almost ready for release last week when I went to install CUDA and the default download page linked to the 11.0 Release Candidate. The 10.1 and 10.2 links were buried behind a link off to the side labeled "legac
155.
▲
by
usmannk
6y ago
Square: https://developer.squareup.com/blog/squares-growth-framework... https://docs.google.com/spreadsheets/d/12h50IYqd7fsO7tJ0l1Ou... Noticed you linked the blogpost but may have missed tha
156.
▲
by
usmannk
6y ago
What’s interesting about those robots txt files?
157.
▲
by
usmannk
6y ago
In this series they move on to gravitational waves.
158.
▲
by
usmannk
6y ago
This is exactly the scenario in the books ;)
159.
▲
by
usmannk
6y ago
> Maybe something is out there, but out of reach, or deliberately silent? Have you read The Three Body Problem series by Cixin Liu? It's a terrific (and recently quite famous + awarded) sci fi trilogy that explores this idea. That a
160.
▲
by
usmannk
6y ago
Is this article addressing a strawman? I certainly raised an eyebrow at their use of the name but is there actually a "controversy"? And if so, why not be similarly upset over YOLOv4? That edition confused me just as much as v5, g
161.
▲
by
usmannk
6y ago
Oh huh, I see. Thanks for the papers. "Someone was going to have to go first. Intel happened to take greater risks in the name of performance, and all of their technologies (including their first-to-market enclave technology) are suffe
162.
▲
by
usmannk
6y ago
> Signals new PIN thing relies (almost) entirely on SGX being secure to make their encrypted profile and contact backups secure. This just seems irresponsible. How could they excuse this? It seems like anyone who has even peripherally be
163.
▲
by
usmannk
6y ago
At this point SGX is just so broken that it seems like its only purpose is to provide PhD students something to write a paper on :) I'm hesitantly excited for AMD's SEV enclave to roll out. Anyone know if it's shaping up to b
164.
▲
by
usmannk
6y ago
Agh, I think it was cert pinning. Looks like the connection is terminated if you're snooping. I see the same results as you now. Thanks!
165.
▲
by
usmannk
6y ago
Ah I see, looks like we're not running quite the same experiment. I suspect that anything including an app bundle ID is going to see some more interesting traffic.
166.
▲
by
usmannk
6y ago
This is odd, my proxy doesn't seem to show this. I will try to load my root cert into Wireshark and check. Edit: Checked and double checked: When I run a new shell script, syspolicyd just makes a connection with no application data
167.
▲
by
usmannk
6y ago
That's a string found in the disassembly of syspolicyd (I've found it as well). However, the actual URL you see in the TCP logs has no path whatsoever.
168.
▲
by
usmannk
6y ago
I did see the previous article (another comment of mine should be easy to find on its HN post). Do you know how to find the issue that was referenced? There was an ID given but I have no clue what tracker that was on.
169.
▲
by
usmannk
6y ago
There is so much confusion here. The OP and most others are missing one of the biggest points: Look at the packet trace. There is _no data_, not even a hash, being sent. It's a TLS negotiation and then the connection ends. I have to su
170.
▲
by
usmannk
6y ago
0.0.0.0 is non-routable and generally only valid as a src not a dest
171.
▲
by
usmannk
6y ago
If the connection fails it goes ahead and grants permission.
172.
▲
by
usmannk
6y ago
Yes but it looks like there is no actual session, at least for shell scripts that don't have an app bundle ID. There is just an HTTP CONNECT, TLS negotiation, then nothing.
173.
▲
by
usmannk
6y ago
I can't edit anymore but it seems like the OCSP link could potentially be a red herring just checking the cert for the next request to https://api.apple-cloudkit.com/ . It's worth looking further!
174.
▲
by
usmannk
6y ago
It seems like there is a lot of confusion here as to whether this is real or not. I've been able to confirm the behavior in the post by: - Using a new, random executable. Even echo $rand_int will work. Edit: What I mean here is generat
175.
▲
by
usmannk
6y ago
This is very helpful! Thanks for taking the time to reply. "The better thing though to discuss is new potential funding directions that you would enable them to avail themselves of." This is something I haven't considered be
176.
▲
by
usmannk
6y ago
This comment is extremely helpful to me right now and I'm sure may be to many others as well. Thanks for writing it. If I may, how did you prep for those chats? What did you .. say when you got there? Read some of their papers and brin
177.
▲
by
usmannk
6y ago
American English perspective: We'd never say "in future, could you please refrain from eating loudly." There would always be a "the" after "in". "I'm in hospital." same thing, "in the&q
178.
▲
by
usmannk
6y ago
So true. My first thought was this as well. I'm about the same age as you and played RS at much the same time. Personally the experience was greatest due to the huge black market community. Hell, I even first learned to code in order t
179.
▲
by
usmannk
6y ago
The parent is talking about the former.
180.
▲
by
usmannk
6y ago
Try opening Lyft on iOS, hard crash on boot. I don't wish to be someone working on that right now!
More ›