Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Boulth
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
Boulth
6y ago
Statistics by Freedman et al is a great introduction to statistics. It took me a year to fully read it but the exercises are fun, real world examples of applying statistical methods.
2.
▲
by
Boulth
6y ago
I haven't seen any mentions or this extension that allows verifying pages before they are rendered: https://github.com/tasn/webext-signed-pages Another thing is non exportable WebCrypto keys that can limit the dam
3.
▲
by
Boulth
6y ago
Ha, great to hear. I always assumed they went back to windows as part of some deal as around the same time Microsoft opened a big HQ in Munich.
4.
▲
by
Boulth
6y ago
Whether the island o stability exists: https://en.m.wikipedia.org/wiki/Island_of_stability
5.
▲
by
Boulth
6y ago
Great resource indeed, thanks! Too bad the latest one is 2 years old :(
6.
▲
by
Boulth
6y ago
Right! I remember now buying the book just to read the chapter about Anders. Was not disappointed. (for the record other "masterminds" were also interesting).
7.
▲
by
Boulth
6y ago
As someone that also used languages designed by Anders I'm also a huge fan of his work. Too bad there are just a few quality interviews with him: https://www.artima.com/intv/anders.html
8.
▲
by
Boulth
6y ago
Yep. Although in my opinion Programming Rust [0] is better even though dated. The word goes that the 2nd edition will be out by the end of the year. [0]: https://www.amazon.com/Programming-Rust-Fast-Systems-Develop...
9.
▲
by
Boulth
6y ago
> the monetisation strategy for New Vector is selling Matrix hosting ( https://modular.im ) and helping out big folks like Governments who want to jump on board Matrix. While the company is certainly not profitable yet, it cert
10.
▲
by
Boulth
6y ago
Nope, worse is that investors subtly want to extract value from them e.g. utilizing user data from identity server on vector.im or so. Even if they just "went Keybase" not having people outside of the org working on it would slowl
11.
▲
by
Boulth
6y ago
Very cool. If you liked that check out their Sorcery series of games. I played them over and over for weeks. Highly addictive!
12.
▲
by
Boulth
6y ago
> Matrix allows you to host your own server, federate messages in real-time between servers, and still benefit from end-to-end encryption between multiple client devices. This sounds like XMPP so nothing new. What sets the Matrix apart i
13.
▲
by
Boulth
6y ago
VC money mixed with open source software again. It didn't end well for Keybase. I hope Matrix has a monetization strategy. Edit: for people interested there are company docs at https://beta.companieshouse.gov.uk/company
14.
▲
by
Boulth
6y ago
Pacman can remove dependencies that are not used: https://wiki.archlinux.org/index.php/Pacman/Tips_and_tricks#... This is explicit rather than implicit but it works even on one package.
15.
▲
by
Boulth
6y ago
Yes, totally. I've also migrated to Linux after decades of working on Windows. Still, it's interesting development (nope, I won't be coming back).
16.
▲
by
Boulth
6y ago
It was some time when I read the explanation on how do they want to approach this but I guess the card identifier will no longer be needed (or all card ids will be stored). If you want to check it yourself https://dev.gnupg.org&#
17.
▲
by
Boulth
6y ago
I worked on Windows for two decades and tried WSL1. Windows is not super annoying but as a developer all my tools were actually Linux native or cross platform so one day I just cut the middle man and switched to Linux. It wasn't such a
18.
▲
by
Boulth
6y ago
> The biggest pain is that I have to reconfigure when I switch yubikey. This is planned to be fixed in GnuPG 2.3.
19.
▲
by
Boulth
6y ago
It's not a big problem because tokens lock themselves after 3 tries so even if someone got your token they'd have to guess it. Having separate subkeys for each token is nice but works best only with the signature subkey. For encry
20.
▲
by
Boulth
6y ago
Yeah I had the same experience using OpenPGP applet on the Yubikey both on Linux and Windows. It just works. Maybe it was a problem once but got improved with time?
21.
▲
by
Boulth
6y ago
I think you confused this with security.txt standard. WKD is not enumerable (unless explicitly configured like that) so the issue doesn't exist.
22.
▲
by
Boulth
6y ago
> Is there a setting that allows that "push to allow" for a short while? Yes there is. In a newer firmware. > 2) when I ssh into a system and touch the button to allow it, and the push allowed the use of they key for a short
23.
▲
by
Boulth
6y ago
I think the proper solution would be 1) don't use forwarding unless necessary 2) setup touch-to-use on a Yubikey so even with your scenario the attacker couldn't just use the key (it requires touch to be used).
24.
▲
by
Boulth
6y ago
Yeah I always wonder how do they get the logo there. Is Pragli asking Facebook for permission to put their logo there?
25.
▲
by
Boulth
6y ago
Yeah maybe it should be more obvious but Mailvelope just adds end to end encryption to existing webmails (through extension overlay).
26.
▲
by
Boulth
6y ago
Thanks for the elaborate answer! I wonder if you considered Dhall ( https://dhall-lang.org/ ) that's declarative but at the same time has functions and other convenience factors.
27.
▲
by
Boulth
7y ago
A different line of arguing may be helpful: not even GnuPG validates DNSSEC signatures (source: https://dev.gnupg.org/T4618 ). That's why DNS key discovery schemes are not enabled by default there (WKD is).
28.
▲
Google Is Shutting Down Google One Today
(droid-life.com)
2 points
by
Boulth
7y ago
|
0 comments
29.
▲
Adviser to the Operator of “Silk Road” Website Pleads Guilty in Federal Court
(justice.gov)
2 points
by
Boulth
7y ago
|
0 comments
30.
▲
by
Boulth
7y ago
If you don't want to self host I'd recommend https://account.conversations.im/ it's paid but properly maintained to have all extensions for modern experience. If you don't want to pay just pick something
More ›