Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
Tharre
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
Tharre
1mo ago
There are two issues with the articles calculations, that end up making the already bad payback time even worse, before considering opportunity costs. Numbers are for Germany since that's the more favorable case: 1 - degradation: assum
2.
▲
by
Tharre
1mo ago
System RAM and/or NVMe storage still has a real cost. And swapping out the context between VRAM and system RAM / NVMe still consumes bandwidth. I don't have a clue on what the real cost to inference providers comes out to, bu
3.
▲
by
Tharre
1mo ago
How could that possibly work? Deepseek was undercutting every other provider by an order of magnitude on cached tokens. Do they just set a super low caching time and hope that drops effective cache rates low enough? Do all other providers s
4.
▲
by
Tharre
1mo ago
Why would you voluntarily pretend to be a AI bot, when those have already a much higher chance of being blocked? Seems holly unproductive. Best hypothesis I can come up with is to somehow make the AI companies look bad, but they seem to be
5.
▲
by
Tharre
2mo ago
You're saving a fraction of a cent per device, while banking on customers not sending it back as defective because it didn't charge when they tried it with a random cable. If it is a deliberate choice, it's a really, really d
6.
▲
by
Tharre
2mo ago
They skipped out on literally 2 resistors. That's it, that's all that is required for real USB-C charging.
7.
▲
by
Tharre
2mo ago
No? Passive fully-featured USB-C cables had the same amount of wires and active components, which really is just the e-marker chip, since day one. The same 5 Gbps cable can now do 20 Gbps if the cable was made well enough. Active cables are
8.
▲
by
Tharre
2mo ago
The "cost" they're cutting of course being 2 simple resistors, that cost absolutely nothing. So less of a executive decision and more a case of whoever designed the board didn't do a quick google search to figure out how
9.
▲
by
Tharre
3mo ago
I've been running Qwen3.6-35B-A3B (and 3.5 previously) locally and it's a great model for many small tasks, probably a significant chunk of what most normal people are using LLMs for right now. But for coding in a harness? In my e
10.
▲
by
Tharre
3mo ago
I don't know what kind of straw man you built up in your head, but I can assure you I don't believe in any of that.
11.
▲
by
Tharre
3mo ago
And demand will probably go up a lot further still. Right now fuel prices are kept artificially low by every country releasing their strategic reserves, but these will run out at some point. Europe is heading into the worst energy crisis si
12.
▲
by
Tharre
3mo ago
> If a PKGBUILD is running a command to download something not listed in source, that's a sign that something nefarious could be happening, and such a PKGBUILD absolutely requires careful human review. First, although I don't d
13.
▲
by
Tharre
3mo ago
> You do realize that the people relying on the service also get served malware, right? The service is already disrupted. Huh? No they don't. I'm not sure what part of the attack your misunderstood, but most people are going to
14.
▲
by
Tharre
3mo ago
From the concrete example someone posted below, you'd see that a post-install hook exists, literally this line: > install=toggldesktop-bin-deps.install And the toggldesktop-bin-deps.install contains this: > post_install() {{ >
15.
▲
by
Tharre
3mo ago
"Hey, let's take down all of npm, because there's a package that installs something malicious, and some people may install it without reviewing it first. The thousands of other people relying on this service can wait." D
16.
▲
by
Tharre
3mo ago
Some of these have corporate backing and/or better funding and thus more manpower to review things, but yeah it essentially applies to all of them. It's no accident that there's news about a new npm package being compromised
17.
▲
by
Tharre
3mo ago
I assume you're talking about the "remote: " messages? I've only ever seen those on push operations, not sure if they're even available for clone. Maybe they'd be an option, but then the whole "making sure
18.
▲
by
Tharre
3mo ago
Any and all modifications to PKGBUILDs may download something and execute it, that's the very purpose of PKGBUILDs, to download and install new software. I'm sure it would be great to have trusted reviewers look over every update,
19.
▲
by
Tharre
3mo ago
You seem confused about how the AUR works. There is no "client" like you're talking about that can show the user anything. There are AUR helpers, but these are completely unaffiliated with arch and the people running the AUR.
20.
▲
by
Tharre
3mo ago
No it shouldn't. You don't break everyone's workflow just because some people refuse to take basic security advise seriously. > New API should have infrastructure for informing users and making sure they've read the m
21.
▲
by
Tharre
3mo ago
People need to get into their heads that the AUR is just a collection of user-produced PKGBUILDs. You have to review the source of every PKGBUILD from the AUR you install, full stop. Yes that includes any updates. This really has always bee
22.
▲
by
Tharre
3mo ago
What points could we even discuss? It's all terribly vague and I imagine nobody here can even tell how that supposed 'strategy' is different from the one 5 years ago. And half of the things mentioned there, like the EUDI Wall
23.
▲
by
Tharre
3mo ago
"IPv6 is weird. One of the more strange parts of the standard is that every interface's link local addresses are in fe80::whatever`." How is IPv6 weird here, it's the exact same thing in IPv4, no? If you have two differe
24.
▲
by
Tharre
3mo ago
I can't even register, it tells me "Something went wrong on our side. Please try again later.". And from a quick scan of the website, I don't see how yours is different from the million other websites that generate AI vi
25.
▲
by
Tharre
4mo ago
The more I think about this, the more I become convinced that consciousness, as understood by humans, is meaningless once you can stop, store and replay the internal machinery that is supposed to produce it. A human brain in a jar is still
26.
▲
by
Tharre
4mo ago
> Consciousness is not produced by the cortex but rather by the brainstem, where signals from all over the body converge (e.g. pain, hunger, itchiness, etc). Which just begs the question of how pain or hunger is any different from a rewa
27.
▲
by
Tharre
4mo ago
LLMs still do not pass the turing test as it is commonly understood. Ask the right questions, and it becomes apparent very quickly which party is the machine and which is the human. Hell, there are enough people on here that can probably te
28.
▲
by
Tharre
6mo ago
And yet, it's exactly what all the AI companies are doing. However much it costs them in server costs and good will seems to be worth less to them then the engineering time to special case the major git web UIs.
29.
▲
by
Tharre
6mo ago
> But Clawbert seems like a worse attack vector than just getting OpenClaw itself to execute the malicious instructions. OpenClaw already has root access. Well the assumption was that you could secure OpenClaw or at least limit the damag
30.
▲
by
Tharre
6mo ago
I don't get it. The point of OpenClaw is it's supposed to be an assistant, helping you with whatever random tasks you happen to have, in natural language. But for that to work, it has to have access to your personal data, your cal
More ›