Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
flippingheck
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
flippingheck
5d ago
The device is acoustic. Think of it as a babel fish for telling fire to stop.
2.
▲
by
flippingheck
6d ago
It's a big bet to not have a plan for needing power. I expect as LLMs penetrate further, we'll see much more of it, continually running, and doing more 3D work.
3.
▲
by
flippingheck
6d ago
> I need help. Call SOS on your telegraph?
4.
▲
by
flippingheck
7d ago
That is much fewer LoC than I expected. How is "offline e-reader" handled? Does CUPS retry? Do you do this outside of your LAN?
5.
▲
by
flippingheck
7d ago
> open platform like the Xteink is that it should uncover loads of novel and unsatisfied use cases +1. And it's worth celebrating the underlying technologies that enable this: ESP32, and RISC-V. Anyone know what's needed for ei
6.
▲
by
flippingheck
9d ago
I just read your original comment "is this any conceptually different from using PKCS11 provider for TPM in OpenSSL?" and yes, I agree it's not conceptually different. Sorry to have missed that!
7.
▲
by
flippingheck
9d ago
I thought you was suggesting a TPM wasn't needed at all, but a TPM is needed to get quotes. That said, TPM quotes are attesting the value of TPM PCRs which are just registers of hashes (representing the state of the machine). When maki
8.
▲
by
flippingheck
9d ago
Is this is meaningfully different than the risk to any engineer working in security on ~central infrastructure? > even if you don't have the keys you may still control the implementation The sorts of places that care about remote at
9.
▲
by
flippingheck
9d ago
> is this any conceptually different from using PKCS11 provider for TPM in OpenSSL? PKCS11 doesn't allow you to attest that the key is resident in the PKCS11 provider, which as you say, the author alludes to, but doesn't cover.
10.
▲
by
flippingheck
9d ago
Yeah, a typical TPM chip has much lower throughput than OP. Not suitable for servers, since it's such an easy DoS vector.
11.
▲
by
flippingheck
9d ago
TPM is just a spec, it isn't necessarily a black box. ARM TrustZone, for example, can run this OSS TPM: https://github.com/OP-TEE/optee_ftpm I expect there are equivalents for Intel/AMD.
12.
▲
by
flippingheck
10d ago
> through every scandal, Zuckerberg’s net worth has climbed to nearly $200bn, according to Forbes. Fines mean nothing to those with wealth like his, so the first step to safeguard society is to give Meta a fresh start without Zuckerberg’
13.
▲
by
flippingheck
10d ago
The greater the dependence, the greater the risk.
14.
▲
by
flippingheck
12d ago
Does that somehow also explain why many (most?) desktop users survive with just a browser? To be clear, I'm not saying it doesn't. I'm saying I don't understand.
15.
▲
by
flippingheck
12d ago
> decision we have made This might oversell the agency that practicioners have. Sandboxed zero-install delivery will outcompete anything with more frictionful installs. It's probably not the right model for a pacemaker though. Web&#