Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
y7
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
14 ms
·
91.
▲
by
y7
5y ago
The regulator's antitrust case is probably much broader than IAPs, but the findings are not yet public.
92.
▲
by
y7
5y ago
Firefox has an "official" add-on called Multi-Account Containers. This isolates website state (cookies etc.) but not history/settings/extensions. Alternatively, you can start Firefox with `--no-remote -ProfileManager` fl
93.
▲
by
y7
5y ago
> Recent research from the U.K. suggests that vaccinated people are about 50% less likely to develop long COVID than those who are unvaccinated. To me that doesn't sound like that great of a risk reduction.
94.
▲
by
y7
5y ago
Because if you put it in a sock, you risk it getting stolen or lost in a fire. And it's more of a hassle to pay with it. So the negative interest rate might be worth the safety and convenience of your bank account. As for the reason: i
95.
▲
by
y7
5y ago
Maybe try Nikolayeva's recordings? WTC: https://www.youtube.com/watch?v=sNpwAZf6thY Inventions and sinfonias: https://www.youtube.com/watch?v=_bL7oyuqEwA Lots of people recommend Gould in this thread.
96.
▲
by
y7
5y ago
On iOS I recently found beorg [1] for org-mode, and so far I'm happy with it. I've got it set up to connect through WebDAV to a GitFS mount on my homeserver, so that I automatically get versioning. I sync to the Git backend on my
97.
▲
by
y7
5y ago
> I’m a classical neophyte and struggle with composer/orchestra/conductor fit. If you're new to classical music you really don't need to worry about this. Almost all available professional recordings are of high qua
98.
▲
by
y7
5y ago
Cross-posting from another thread [1]: 1. Obtain known CSAM that is likely in the database and generate its NeuralHash. 2. Use an image-scaling attack [2] together with adversarial collisions to generate a perturbed image such that its Neur
99.
▲
by
y7
5y ago
> the perceptual hash used is secret Yes, although I'm sure a sufficiently motivated attacker can obtain some CSAM that they are reasonably sure is present in the database, and generate the NeuralHash themselves. > At that point,
100.
▲
by
y7
5y ago
I assume these "non-private image derivatives" are downscaled versions of the original image. But for downscaling there also are adversarial techniques: perturb an image such that the downscaled version looks like a target image.
101.
▲
by
y7
5y ago
Now that the model is known, I wonder how hard it is to create "adversarial collisions": given an image and a target hash, perturb the image in a way that is barely perceptible for a human, so that it matches the target hash.
102.
▲
Disabling Snap Autorefresh
(popey.com)
2 points
by
y7
5y ago
|
0 comments
103.
▲
by
y7
5y ago
I agree. If Apple wants to go this route, they should abstain from pushing the user towards using iCloud as they currently do, and instead just present a clear opt-in choice. "Do you want to enable iCloud photos? Your private photos wi
104.
▲
by
y7
5y ago
The technical assessments speak about "visual derivatives". I'm guessing they mean a low resolution thumbnail.
105.
▲
by
y7
5y ago
I think phones can be both waterproof and modular. Going by [1], waterproof gaskets usually come from either glue or silicone. Glue obviously inhibits modularity, but silicone gaskets work fine. 1: https://www.ifixit.com/New
106.
▲
by
y7
5y ago
This is such a weird article. It's basically an ad for software that claims to "break" VeraCrypt by extracting encryption keys from a memory dump. And apparently it doesn't even work if you set VeraCrypt to encrypt keys
107.
▲
by
y7
5y ago
Thanks, I stand corrected.
108.
▲
by
y7
5y ago
Yup, you can't. Keys are perfectly trackable by Cloudflare, but they promise they won't do this. Edit: I was wrong. Cloudflare claims they could track people, but it would require tracking via cookies. [1] The hardware security ke
109.
▲
Data from Israel shows Pfizer-BioNTech vaccine 95% effective against infection
(eurekalert.org)
2 points
by
y7
5y ago
|
0 comments
110.
▲
by
y7
5y ago
Yes, the seL4 project that is being discussed.
111.
▲
by
y7
5y ago
> What precedent are we setting by legally mandating what a corporation can do on a platform they solely built? This does not concern setting precedents. The antitrust laws are already there, this is just a case of them being applied. Mo
112.
▲
by
y7
6y ago
I think this is the total fine for the entire EU. Usually one of the Data Protection Authorities takes charge of the investigations, and since Booking has their HQ in Amsterdam, it was the Dutch one in this case. They mention that they coor
113.
▲
by
y7
6y ago
If you're willing to rely on client-side code for authentication, there are better mechanisms, such as https://en.wikipedia.org/wiki/Secure_Remote_Password_protoco... There is a standard for it, called TLS-SRP, bu
114.
▲
by
y7
6y ago
This demo is also really cool: http://javier.xyz/control-user-cursor/ Via: https://news.ycombinator.com/item?id=14124285 (2017)
115.
▲
by
y7
6y ago
You wouldn't encrypt/hash it, since 4-5 letters (say 30 bits) is trivial to brute force anyway. Talking about offline password encryption/hashing is a bit of a red herring anyway, since it distracts from the fact that you
116.
▲
by
y7
6y ago
> you undertake to keep all copies of the Font Software secure and to maintain accurate and up-to-date records of the number and locations of all copies of the Font Software That's an interesting clause given that everyone can just
117.
▲
by
y7
6y ago
This is one piece of software that I really love using. One big feature is that it allows me to keep track of Twitter/Youtube channels without being logged into an account, while also keeping everything in one place.
118.
▲
by
y7
6y ago
I think the author's argument becomes more clear when you consider multiplication in rings other than the integers, for example (square) matrices. The product of two matrices A*B does not correspond to repeated addition, and it is not
119.
▲
by
y7
6y ago
Why should we care about the absolute risk reduction rather than the 20x relative risk reduction (i.e. "95% effectivity")? The idea of these fixed-term RCTs is that the numbers generalize to larger periods of time, right?
120.
▲
by
y7
6y ago
Finally! I've been waiting for HTTPS to be the default for a while now. From a security standpoint it's annoying that bar something like HSTS it's trivial for a man in the middle to force a downgrade to non-secure HTTP. The f
More ›