Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
djjaxe
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
djjaxe
12y ago
Not an idiot :) You make a good point that people don't have their phones on them & alive all the time which is where totp can come in with dongle totp's (like http://www.securemetric.com/secureotp-time.php ) a
2.
▲
by
djjaxe
12y ago
> Not everyone has smart phones. > Not everyone that has smart phones keep it on them all the time. > Not everyone that has smart phones that keep it on them all the time have a working (charged) phone all of that time. What do sma
3.
▲
by
djjaxe
12y ago
YubiKeys still can cost you up to $50, where as TOTP using something like google authenticator(doesn't have to be google auth) costs you? Nothing?
4.
▲
by
djjaxe
12y ago
> This sounds less convenient, harder to implement, and no more secure than OpenID In what way is it less convenient? A standard user has their phone with them...24/7? At least in the sms realm it's more convenient than trying
5.
▲
by
djjaxe
12y ago
> On both OSX and many Linux distros, Py 2 comes pre-installed but Py 3 does not. Because python 3 was not the most stable at the time of distribution of that operating system. Why would I the developer of said operating system release a
6.
▲
by
djjaxe
12y ago
Because Apple usually just goes along for the ride... ?
7.
▲
by
djjaxe
12y ago
If you clicked on the 86446f74 You would have gotten: https://github.com/expressjs/body-parser/commit/86446f74d5c6... Which shows parents 0
8.
▲
by
djjaxe
12y ago
Basically the cut down to everything is the laziness of how it is developed and how many people are actually looking over the entire code. ATS allows the developers to know that the can be even more lackadaisical about coding as ATS will re
9.
▲
by
djjaxe
12y ago
Wow sorry I can't laugh at something jeez. So, you have never in your life just felt like re-posting a quote off something and just added a little something to it to show the spirit in which it was meant to be. Now you are just being n
10.
▲
by
djjaxe
12y ago
So rust & ATS & ADA & higher level languages can modify memory space? That I am aware of most higher level languages stray from being able to modify memory space on purpose as it's dangerous but, someone has to do it for th
11.
▲
by
djjaxe
12y ago
Just because this alternative language would have avoided this bug does not mean a much worse but would not have been created with a higher level language or even ATS.
12.
▲
by
djjaxe
12y ago
Ada is a higher language weather or not it has linkage to C or not. The UNIX community cares about performance, performance, performance.
13.
▲
by
djjaxe
12y ago
Maybe because most of the code currently out there being use by the biggest companies in the world still use these "unsafe" languages. & tons of the job market still is in these "unsafe" languages.
14.
▲
by
djjaxe
12y ago
That's still not my point. At the time of starting openssl I don't believe that ATS was around. In any case my point is that back then C lang was the best choice for performance and still is revered as the "fastest" as `
15.
▲
by
djjaxe
12y ago
LOL "* In theory. Rust is a work-in-progress and may do anything it likes up to and including eating your laundry."
16.
▲
by
djjaxe
12y ago
I read the article is does not mention speed, performance once, in which it had nothing to do with what I stated. I was simply stating that higher level languages will cause the library to be slower also less easy to be used by other high l
17.
▲
by
djjaxe
12y ago
Speed or security?... Age old question.
18.
▲
by
djjaxe
13y ago
paypal accepts transactions without accounts just cards...
19.
▲
by
djjaxe
13y ago
well this could be fixed by using something like bittorrent sync to allow you to keep your "inbox" wherever you want all you need is the code... and storage space... and well at least 1 of your own computers that already has the i
20.
▲
by
djjaxe
13y ago
And good point I forget that the web is basically insecure from government intrusion :[
21.
▲
by
djjaxe
13y ago
Then I think it's time to look at a mail system that doesn't need servers something built on top of the bit torrent grid or similar system that the government can watch all they want but won't get any information back from it
22.
▲
by
djjaxe
13y ago
Well it would be nice if google could check the url it was visiting and if there is any sqli in it to not send the request (though this could potentially slow their crawling...)
23.
▲
by
djjaxe
13y ago
But the only point in this is to take down a site you won't be able to get into useful information back from this request as the request's response will be heading back to the spoofed address... (though if you are using for ddos i
24.
▲
by
djjaxe
13y ago
Wouldn't Lavabit be better if all decryption was done on client side, either with javascript or a client side add-on/extension? This way the only thing that is ever on the server is the public key? The only thing left would be if
25.
▲
by
djjaxe
13y ago
LOL fair enough, fair enough
26.
▲
by
djjaxe
13y ago
or possibly a self checking script that only executed if it was complete... ie: the script is escaped and must run unescape(escaped_script) to be lethal but by then you can confirm that the script is infact whole and as the creator intended
27.
▲
by
djjaxe
13y ago
Don't mess up/risk your own computer just your friends... You must have trusting friends. lol
28.
▲
by
djjaxe
13y ago
though BTsync is "meant for large files" I wouldn't really advise syncing truecrypt files as it syncs the entire file not just updating lines in the file... (though that would probably be much more efficient) even still using
29.
▲
by
djjaxe
13y ago
"Engineer? of software?" I know he is an engineer of software I was not disputing that. If you read my first comment I knew that I was disputing that he had any right to comment on hardware as he did which would put him into the e
30.
▲
by
djjaxe
13y ago
I was not objecting to him being an engineer, he can be an engineer of software which does define him as an "engineer" but Microsoft would really hire someone who does not have a degree in the area of the job?
More ›