Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
alcari
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
Show HN: ZFS Implementation in Python
(github.com)
411 points
by
alcari
7y ago
|
86 comments
2.
▲
by
alcari
8y ago
The parser as described _only_ cares about identifiers; it has no concept of operator precedence, which is not required for its purpose.
3.
▲
by
alcari
9y ago
Here's the easy 50% of it: https://github.com/alcarithemad/typetrace
4.
▲
by
alcari
9y ago
This is a cool idea. Please don't take the below as gratuitous negativity, just a reminder that these are hard problems for which there are no general solutions. The README says it was tested on ZFS, but I doubt its utility in real-wor
5.
▲
by
alcari
10y ago
Here's the requisite cynical comment lamenting the death of "standards". They could easily have implemented RFC 3091 [0], but instead they chose to create yet another proprietary API with vendor lock in, just as cloud service
6.
▲
by
alcari
10y ago
Regardless of the title editing discussion in the sibling comments, the title at the source was changed to "Omnibox hostname heuristics misunderstand internal redirects.", which accurately reflects the problem.
7.
▲
by
alcari
10y ago
As an alternative, predating Portmap by around 700 RFCs: tcpmux[0]. Everything connects to port 1 and asks for services by name. [0]: https://tools.ietf.org/html/rfc1078
8.
▲
by
alcari
10y ago
OpenJDK was created by Sun.
9.
▲
by
alcari
10y ago
Are you aware of Spring[0]? It's another open source RTS that's effectively data file compatible with TA. [0]: https://springrts.com/
10.
▲
by
alcari
10y ago
The client connects to the backend with a binary protocol that, among other things, gives it a token which it hands off to a web API that returns a valid cookie for the Steam store. They inject that cookie into the integrated browser instan
11.
▲
by
alcari
10y ago
The rationale was that if, password hashes got compromised, the attacker would only have until the next forced rotation to crack the passwords and take over accounts. edit: or, in particularly terrible systems, if plaintext passwords were l
12.
▲
by
alcari
10y ago
It's not much of a secret: https://en.wikipedia.org/wiki/Truffle#Cultivation
13.
▲
by
alcari
10y ago
The front page demo does it with the while loop.
14.
▲
by
alcari
10y ago
The CPUs in question support up to 16 GB of LPDDR3 or 32 GB of DDR4, but do not support LPDDR4. Apple needs the LPDDR* variant to meet their power budget.
15.
▲
by
alcari
10y ago
They're in the article, and the original post is linked at the end.
16.
▲
by
alcari
10y ago
Those are symmetric(!); the real killer is the contract duration, the installation/activation fees (up to $1000 total), and the installation time frame (up to 8 weeks).
17.
▲
by
alcari
10y ago
> >Modern anonymity breaks generally work by getting code to run on your local system > Would you have any reference to specifics on this? FBI using a Firefox js bug to unmask tor users a couple years ago: http://arstech
18.
▲
by
alcari
10y ago
From a quick look through, most of it. Modern x86 micro-architectures still use integrated memory controllers and ~3 level CPU caches. All the timings are a little faster, the caches a little bigger, and the buses a little wider, but it
19.
▲
by
alcari
10y ago
This was released about 26 hours ago. Steam says I've played 15 hours. Send hel--more microelectronics. It's TIS-100, but with a native multiply! and unsynchronized broadcast! and digit get/set! Still supremely difficult.
20.
▲
by
alcari
10y ago
The GP means that the cost[0] is several orders of magnitude below the heat dissipation from resistance, and thus negligible. [0]: https://en.wikipedia.org/wiki/Landauer%27s_principle
21.
▲
by
alcari
10y ago
Not likely. That's the comment start marker in many dialects of SQL. For commands, shell metacharacters like `, |, &, and $() are much more important.
22.
▲
by
alcari
10y ago
Be aware that there are known issues with the certificate manager, and some changes may not work as you expect: https://bugzilla.mozilla.org/show_bug.cgi?id=585352
23.
▲
by
alcari
10y ago
That's what I included "for the obvious issue": even in the backdated certificates they still have "reasonable" notAfter dates, and we (will) have a list of every certificate they've issued in the relevant time
24.
▲
by
alcari
10y ago
We can do it without breaking websites: a TLS implementer could reject all certificates issued by a particular CA after a certain date. (For the obvious issue) WoSign's recent certificates are in the CT logs and they're promising
25.
▲
by
alcari
10y ago
I wish we lived in a world where X.509 name constraints[0] were actually useful, but unfortunately we don't, and I think getting browsers (never mind other TLS clients) to enforce them is even less likely than the various root stores r
26.
▲
by
alcari
10y ago
Here's a thread from mozilla.dev.security.policy where the CA responds to this and two other(!) misissuance incidents they failed to report (someone's even claiming a third incident at the end): https://groups.google.co
27.
▲
by
alcari
10y ago
PCI-DSS says 112 bits of security is "strong cryptography", just so people can continue using 3DES.
28.
▲
by
alcari
10y ago
But Valve hasn't locked out the Oculus. Plug one into a computer with Steam and it'll pop up a prompt to setup SteamVR just the same as plugging in a Vive. It even includes a link to Oculus-specific instructions: you need to set i
29.
▲
by
alcari
10y ago
Mister Rogers[0] was the host of an American children's show, and was known for being extremely nice, both on and off the show. [0]: https://en.wikipedia.org/wiki/Fred_Rogers
30.
▲
Journalist sentenced to 24 months in prison after hacking-related conviction
(arstechnica.com)
6 points
by
alcari
10y ago
|
1 comments
More ›