Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
zrm
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
91.
▲
by
zrm
2y ago
It's an extremely common exception for exactly the reason you don't like it. If you block it you get widespread breakage because so many things use it. Then even more things use it because it's allowed and novel protocols are
92.
▲
by
zrm
2y ago
It's not the developers who did this, it's the "network security" people. If you block all outgoing ports except for HTTPS and ssh, everything is henceforth going to be tunneled over HTTPS or ssh. This is also the reason
93.
▲
by
zrm
2y ago
Not really. The era of "modern efficient CPUs" started some 10-15 years ago. Under light loads, Ivy Bridge or Haswell is going to have a similar thermal profile to modern machines. Many of the new machines are actually worse, e.g.
94.
▲
by
zrm
2y ago
I was vaguely aware of this and I don't know if I want to say I was just being careless or if that was the point because the original comment was kind of a mess and I was defending it in jest.
95.
▲
by
zrm
2y ago
LLMs are essentially predicting what token could plausibly come next. They sort the possible next tokens by probability, often throw out the the ones with very low probabilities (p-value too low) and then use a weighted random number genera
96.
▲
by
zrm
2y ago
Reaching the scale where it shows actual returns isn't all that difficult. You need it to happen 7.6 million times to save 1 CPU second, but each CPU core can execute it nearly that many times every second. Probably you don't leav
97.
▲
by
zrm
2y ago
> they can attack it before it reboots. But they can do that anyway? If they would guess your password or exploit your OS from the lock screen then they get access to your files even if the running OS is the one certified by the hardware
98.
▲
by
zrm
2y ago
You're trying to catch the specific implementation of the attack rather than the general attack. Suppose they don't lie about the size of the memory, instead they find a way to mask out one of the address bits so reads from higher
99.
▲
by
zrm
2y ago
Suppose that a portable computer uses full disk encryption. On boot it requires a long passphrase, or requires a short passphrase and connects to a remote server to supply a long decryption key but the remote server rate limits attempts. Ei
100.
▲
by
zrm
2y ago
> And if they have static addresses like labs often do, NAT will already need to happen. Only if the static addresses also need to be static global addresses, which, if you were to use NAT for network portability, they wouldn't be
101.
▲
by
zrm
2y ago
If you're only maintaining one version of the library that everything uses then what do you get from static linking? The reason people want static linking is to be able to use all different versions of the library, which is what causes
102.
▲
by
zrm
2y ago
The old reason for shared libraries was to share memory/cache and not waste disk space. That's not gone, but maybe it's less important than it used to be. The modern reason is maintenance . If 100 apps are using libfoo, in p
103.
▲
by
zrm
2y ago
> thousands of people and multiple separate organizations poured blood sweat and tears into these various bundling technologies for no good reason. Why’d they do that? Because stability and rapid change are incompatible, and they wanted
104.
▲
by
zrm
2y ago
> The problem, for me, is that there is nothing to relate intelligence (fluid or otherwise) and pupil size. Without something plausible linking the two, this is just meaningless. Catecholamines: https://en.wikipedia.org/w
105.
▲
by
zrm
2y ago
One of the reasons that it's a bad idea is that whoever does have the domain can get a certificate for any name under it from any public CA, which your devices would generally still trust in addition to your private CA.
106.
▲
by
zrm
2y ago
> You can't accidentally publish .internal. Well sure you can. You expose your internal DNS servers to the internet, or use the same DNS servers for both and they're on the internet. The root servers are not going to delegate a
107.
▲
by
zrm
2y ago
It's not so much that you can't do it, as that if you want to e.g. extricate snap from Ubuntu, now you have to do work whereas Debian is good enough to not come with it.
108.
▲
by
zrm
2y ago
EV was never really good for anything because names aren't unique. The Beatles' record label is called Apple. So is a large tech company. Either of them could get an EV cert that says "Apple" on it. You can form a brand
109.
▲
by
zrm
2y ago
What stops you running Android apps on it?
110.
▲
by
zrm
2y ago
We could plausibly land a human on Mars within our lifetimes and they wouldn't immediately die. To get Venus to that point would take minimum hundreds, more likely thousands of years. Which is neat, but between the two it implies somet
111.
▲
by
zrm
2y ago
That doesn't necessarily follow. Even if the network latency is 50ms, the variance in network latency can often be less than 1ms, and then even smaller timing differences can be measured through statistical sampling.
112.
▲
by
zrm
2y ago
Not just a year starting in March, a year with 10 months -- and 304 days. It was quite frosty that June and people were hoping for a warm summer come December.
113.
▲
by
zrm
2y ago
Any private keys for your domain are your private keys. What makes them yours is who they allow to be impersonated.
114.
▲
by
zrm
2y ago
> Google's calculator app has no unit conversion and a very bare-bones "scientific" mode. Surely there are untold many suitable calculator apps on Google Play or F-Droid?
115.
▲
by
zrm
2y ago
That hasn't always been the case. Many of their products have been extremely functional -- and even repairable. Have a look at the inside of a PowerMac G4. But they get into this weirdness where they produce a well-designed functional
116.
▲
by
zrm
2y ago
"Everything is securities fraud." -Matt Levine
117.
▲
by
zrm
2y ago
Intel stagnated for several years, allowing AMD and Apple (both using TSMC) to produce CPUs that are simultaneously faster and more power efficient than Intel's. There wasn't really anything Intel could do about the power efficien
118.
▲
by
zrm
2y ago
Any of it has to be done deliberately. The length of the data reveals something about its contents whether it's compressed or not. The special concern with compression is when attacker-controlled data is compressed against secret data
119.
▲
by
zrm
2y ago
The attack you're referring to is not specific to compression. It's the same class of attack that can reveal keystrokes over older versions of ssh based on packet size and timing, even on uncompressed connections. Conversely, fixe
120.
▲
by
zrm
2y ago
What if you give each slot independent command pins but not a complete memory channel? What if you use a similar technology to registered or load-reduced memory, but put the register on the system board instead of the DIMM so it's in f
More ›