Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
alex1
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
alex1
10y ago
There should be recalls from more manufacturers. Someone I know purchased a surveillance camera with a major brand name (Samsung) from Costco [0] just a few weeks ago that gave me a root shell by simply telneting in as root with no password
2.
▲
by
alex1
10y ago
> probably the more likely scenario is that some insider leak some of the distributors private keys which would allow certain releases to be cracked - but would likely also trigger key roll over. It could also be the case that someone le
3.
▲
WWDC 2016
(developer.apple.com)
6 points
by
alex1
10y ago
|
0 comments
4.
▲
by
alex1
10y ago
I think that's because OCI currently only has a specification for the runtime, not the distributable image. But it seems like as of a few weeks ago, work is underway to standardize the distributable image as well: https://gi
5.
▲
by
alex1
11y ago
Yep, I agree and that's where I install stuff on everything other than OS X. One distinction though, I think, is that most of the stuff I install on OS X I don't want to be available system-wide. I'm (typically) not using Hom
6.
▲
by
alex1
11y ago
Mostly because of my (perhaps irrational) OCD in not wanting to touch global system paths or files, even though under FHS /usr/local is where you're supposed to install manually-managed libraries and binaries. I believe Hom
7.
▲
by
alex1
11y ago
I'm curious to know if there's a reason everyone installs Homebrew in /usr/local (other than it being the default installation path). I've always chosen to install it in ~/.homebrew and haven't had any pro
8.
▲
LG: “Apple has also announced that they will release the iMac 8K”
(lgdnewsroom.com)
10 points
by
alex1
11y ago
|
6 comments
9.
▲
Superfish Root CA Checker
(twitter.com)
2 points
by
alex1
12y ago
|
0 comments
10.
▲
“Would anyone know why Apple would be downloading my entire store's catalog?”
(reddit.com)
3 points
by
alex1
12y ago
|
0 comments
11.
▲
by
alex1
12y ago
Why did Stellar decide on using Facebook accounts to enforce the one account per person rule, instead of something better like mobile numbers? There are more people with cell phones than there are with Facebook accounts. Acquiring large bat
12.
▲
Firefly acquired by Pegasystems
(blog.usefirefly.com)
9 points
by
alex1
12y ago
|
0 comments
13.
▲
FCC's Response to the VC Open Internet letter
(nickgrossman.is)
1 points
by
alex1
12y ago
|
0 comments
14.
▲
by
alex1
12y ago
Sure, they wouldn't be able to proxy all HTTP requests through their own servers like they're doing now, but they'd still be able to do MITM attacks at the IP level. They're already messing with routes to Google Public D
15.
▲
by
alex1
12y ago
You're right. Maybe if they turned on and required SSL for everyone visiting www.youtube.com and added www.youtube.com to Chrome's preloaded HSTS list and somehow got everyone to use Chrome. Sadly, this probably won't hap
16.
▲
by
alex1
12y ago
Yeah, looks like they're mucking with the routes for Google Public DNS anycast IPs. EDIT: More evidence that this is what's happening (they're doing to same to OpenDNS's anycast addresses): https://twitter.com
17.
▲
by
alex1
12y ago
Can you do a traceroute to 8.8.4.4? If it's actually reaching Google's network, then yeah, they're doing deep packet inspection on DNS traffic. If not, they're probably just routing 8.8.4.4 to a DNS server they control.
18.
▲
Apple OpenSSL Verification Surprises
(hynek.me)
21 points
by
alex1
13y ago
|
0 comments
19.
▲
Apple SSL/TLS Bug 'goto fail;' T-Shirt (Proceeds to EFF and FSFE)
(teespring.com)
3 points
by
alex1
13y ago
|
0 comments
20.
▲
by
alex1
13y ago
Good point. I just checked that file ever since it was open-sourced in 10.8 and it stays exactly the same throughout all of 10.8.x (10.8 - 10.8.5) and only changes in 10.9. (You can check for yourself here: http://opensource.appl
21.
▲
by
alex1
13y ago
Here's a diff of that file from OS X 10.8.5 (Security-55179.13) to 10.9 (Security-55471): https://gist.github.com/alexyakoubian/9151610/revisions Check line 631. Appears seemingly out of nowhere.
22.
▲
by
alex1
13y ago
FWIW, here's what I got on an Ubuntu 12.04.3 server running on my LAN. It looks like we should be fine with the defaults on Ubuntu at least. (Obviously always a good idea to use ufw/iptables to block everything you don't need
23.
▲
by
alex1
13y ago
> Also, web servers might want to consult NTP servers now and again. CloudFlare doesn't host web servers for their customers. They forward HTTP/HTTPS requests to origin servers outside of their network (or serve from their ca
24.
▲
by
alex1
13y ago
Looks like those credentials were disclosed in April of last year: http://turtle.dereferenced.org/~nenolod/linode/linode-abridg... Something doesn't add up here. Surely Linode can't be that careless.
25.
▲
Facebook Acquires Branch
(techcrunch.com)
106 points
by
alex1
13y ago
|
40 comments
26.
▲
Bipartisan bill introduced to forbid California from helping NSA
(utsandiego.com)
2 points
by
alex1
13y ago
|
0 comments
27.
▲
How Twitter's largest outside investor tricked me
(finance.fortune.cnn.com)
1 points
by
alex1
13y ago
|
0 comments
28.
▲
by
alex1
13y ago
Facebook looks shady?
29.
▲
by
alex1
13y ago
Just made a Facebook group for this year. Coordinate rideshares, lodging, etc: https://www.facebook.com/groups/705664592796188/
30.
▲
by
alex1
13y ago
Last year a bunch of people coordinated rideshares on a Facebook group. Someone should set up a new one for this year. EDIT: Just made one for 2013, join up: https://www.facebook.com/groups/705664592796188/
More ›