Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
aj3
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
1.
▲
by
aj3
2y ago
The strategy that MEV bots use is not a law. It is not even defined or endorsed by Ethereum standards, and arguably is not an intended feature of the network. You could alternatively claim that the guys defined their own protocol which addr
2.
▲
by
aj3
2y ago
> Tokens are property. What law says this? Technically, tokens are smart contracts, basically OOP classes with both data and behavior. They also by design have public methods which are meant to be triggered by anyone on the chain. It
3.
▲
by
aj3
2y ago
I bet this indictment will be used as a case study to justify the need for government oversight and taxation.
4.
▲
by
aj3
2y ago
But you're not signing EULA's in order to participate in the network. Moreover, there are no real "laws / regulations" within the network either, specifying what you are or are not allowed to do. Ethereum standards
5.
▲
by
aj3
3y ago
It's weird to consider paying taxes as a tradeoff. "Digital nomad" isn't a code for tax avoidance, is it?
6.
▲
Thinking Obliquely: Robert T. Jones, the Oblique Wing, NASA's Ad-1 Demonstrator
(nasa.gov)
1 points
by
aj3
3y ago
|
0 comments
7.
▲
Web Highlights
(web-highlights.com)
1 points
by
aj3
3y ago
|
0 comments
8.
▲
by
aj3
5y ago
Android has different security guarantees compared to desktop/server Linux. E.g. people should expect that none of the installed software can hijack the phone completely and that most damage from malware should be mitigateable by unins
9.
▲
Network Infrastructure Security Guidance (NSA) [pdf]
(media.defense.gov)
1 points
by
aj3
5y ago
|
0 comments
10.
▲
by
aj3
5y ago
There were over a dozen of 0day exploits this year alone. Some used in water hole style attacks, so not even that targeted. And these are state of the art incidents which would have pwned even users with all the updates installed. After the
11.
▲
by
aj3
5y ago
Right. Session is stored either in cookies or in Local Storage. Both get cleared when you "clean cookies". If there is no device session, next time you're trying to log in, service will ask to show the second factor (so that
12.
▲
by
aj3
5y ago
It's not user agent, it's session (cookies, localStorage) that they didn't have in Firefox, but still had in Chromium. And this isn't Google specific at all.
13.
▲
by
aj3
5y ago
Most probably they've added MFA and lost it. Devices that have been authenticated already can be used with the bare login & password, but new sessions will ask for the MFA they can't access.
14.
▲
by
aj3
5y ago
Well yeah. If the recovery process is weaker than regular authentication, that's what bad guys will use for account takeover. You don't want to lose Gmail because someone bruteforced your backup code?
15.
▲
by
aj3
5y ago
AFAIK, there are exactly two ways to avoid getting phished. One is using physical security keys (not implemented everywhere and we can't expect everyone in the world to buy one). The second one is checking the domain you're in. Pl
16.
▲
by
aj3
5y ago
That's awesome for phishing.
17.
▲
by
aj3
5y ago
The official repair shops that Apple Repair will guide you to should never ask for the pin, afaik. There is that mode for diagnostics which you need to approve, but you don't need to provide the pin - just unlock the phone and press ap
18.
▲
by
aj3
5y ago
Android has exactly this feature, two in fact: "Safe Folder" for regular files and "Locked Folder" for photos specifically.
19.
▲
by
aj3
5y ago
Employer might have been defense contractor. Most jobs without clearance don't even have "threat assessment coordinaror".
20.
▲
by
aj3
5y ago
Counter example where companies didn't stay silent: https://en.wikipedia.org/wiki/Operation_Aurora
21.
▲
by
aj3
5y ago
Archived version: https://archive.md/z3t8O Note that it uncritically accepts report from 2009 which according to company was meant to be risk modeling exercise. Authors outright dismiss everything either KPL or CapGemini ha
22.
▲
by
aj3
5y ago
From the security perspective both snaps and flatpaks are preferable to dep/rpm for browsers, email clients, office suite, document viewers and other stuff that is used to parse untrusted data often (due to [wip] sandboxing and auto up
23.
▲
by
aj3
5y ago
Nice story, but it's just a coincidence that the platform you found uses NFTs, as far as I can see just as easily it could have been regular centralized platform operating over Stripe or PayPal.
24.
▲
by
aj3
5y ago
Your last sentence reads like FOMO. Not sure if it's intended, but it seems that you are making an argument for NFTs as a tool for speculation.
25.
▲
by
aj3
5y ago
That's exactly what's happening right now. But before NFTs the most plausible ways were either opening a business accepting crypto (not unlike meatspace money laundering involving cash-accepting businesses) or having lucky strikes
26.
▲
by
aj3
5y ago
What's the benefit of making those resellable? To encourage scalping?
27.
▲
by
aj3
5y ago
How do you check who was the first in practice? Blockchain is large and will grow larger. NFTs hold URLs not hashes, so the same artwork could be represented by multiple hashes. The url could also point to a different artwork now compared t
28.
▲
by
aj3
5y ago
Artist still could sell the same artwork multiple times on a single or multiple exchanges. Or someone could steal their keys and sell the artwork multiple times.
29.
▲
by
aj3
5y ago
More importantly people don't work like that. In practice most "fake news" are based on quote mining which is easy to disprove without any knowledge of cryptography whatsoever by just checking the original source, but people
30.
▲
by
aj3
5y ago
Yes, but if you buy the watch you can put it on your hand, use it and show it to me. NFT is more akin to a photo of an invoice from the workshop you attended - it might have some sentimental value to you, but it's not a watch, does not
More ›