Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
hashstring
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
121.
▲
by
hashstring
1y ago
This^ and to add to that, at the very least MITRE assigned IDs which is great. Plus they did an initial scoring, which, well… will never be perfect like you said and I’m sure these things evolve throughout time and get better (not talking n
122.
▲
by
hashstring
1y ago
What do you mean with “a nightmare to install and work with” exactly?
123.
▲
by
hashstring
1y ago
True, same here. There needs to be a good balance of formal and practical/general information.
124.
▲
by
hashstring
1y ago
I think it was not implied that there is something wrong with it. It’s just that, that requires having access to it and being available to take it.
125.
▲
by
hashstring
1y ago
Real, I feel the exact same way.
126.
▲
by
hashstring
1y ago
Wow. https://xcancel.com/netblocks/status/1902230361968427206
127.
▲
by
hashstring
2y ago
Ah just noticed I misunderstood your initial post, my bad. I agree with you. Yes, about ~23% of the USD debt is international. I mentioned China to focus on places where taxes go internationally.
128.
▲
by
hashstring
2y ago
You took the $165 / 12 and arrived at 13 bucks per month per taxpayer. But if you had read the rest of the transcript, you’d arrive at this beautiful part: “The numbers we came up with, the $165 per person and the $11.25 per person, ar
129.
▲
by
hashstring
2y ago
real
130.
▲
by
hashstring
2y ago
> It sounds like we’re attaching a few conditions in hopes to end the killing You really believe that the current administration is acting out of “hopes to end the killing”? What do you think Greenland is about? About spreading christi
131.
▲
by
hashstring
2y ago
This.
132.
▲
by
hashstring
2y ago
The fact that you try to make this about “being cool” is absurd.
133.
▲
by
hashstring
2y ago
Yes, I agree. However I also expect that Swift-compiled apps can do this without a web browser component. It’s a different threat model though, having installed a malicious app vs browsing a malicious site.
134.
▲
by
hashstring
2y ago
The vendor requested embargo timelines can get pretty crazy. Intel requested an embargo for 21 months for SRBDS/Crosstalk. For Downfall, a more recent one, Intel requested a 12 month embargo to release a microcode update.
135.
▲
by
hashstring
2y ago
What about turn JS off on your favourite iOS browser?
136.
▲
by
hashstring
2y ago
They carefully added “immediate”.
137.
▲
by
hashstring
2y ago
Right, and “where two subdomains of the same site can be merged into one process” is normal right, given Site Isolation ≠ Origin Isolation. A PSL flaw is important, but also a low-cost fix. Thanks for pointing this out.
138.
▲
by
hashstring
2y ago
It makes a lot of sense. Twitter is not the community that it used to be. Twitter used to provide me with new updates and cool communities of people. Since the platform got repurposed to become X, the feeds became a negative in my day— so m
139.
▲
by
hashstring
2y ago
I believe it should be accurate enough, I can tap three times on the back of my phone to make it switch to dark mode. Cheers. https://support.apple.com/en-us/111772
140.
▲
by
hashstring
2y ago
Hey there, Thank you so much— just redeemed. This is a really fun small cool app. I played it for ~5 minutes, but I think I am beginning to like it a lot. One thing I found is that you can click “Click here to feel an example” quite a few t
141.
▲
by
hashstring
2y ago
Awesome, can I get a promocode? Looks very interesting.
142.
▲
by
hashstring
2y ago
I am grateful too, but I don’t think that this person could have earned more via blackmarkets. This backdoor in ssh was NOBUS. You cannot exploit it unless you have the private key.
143.
▲
by
hashstring
3y ago
I think that you might actually observe that finding attacks on systems is common, while developing a “perfectly secure system” is much harder to do, if not impossible.
144.
▲
by
hashstring
3y ago
Project Zero is not defensive. Infosec Twitter has both sides. I do agree with you that defense is a large part of the industry. My perspective is even that most organizations are looking for “defense” roles. The field is very wide (e.g., f
145.
▲
by
hashstring
3y ago
On privacy, I see they mention “E2EE”… That shouldn’t even be a feature in 2024. It’s more interesting to know how they are handling the privacy in the application itself.
146.
▲
by
hashstring
3y ago
Thank you for the info! DMARC roll-out in itself could also attract the marketing department because it improves deliverability under the hood. I also think implementing SPF, DKIM and DMARC can be done without compromising availability by p
147.
▲
by
hashstring
3y ago
Registering a domain and hosting a phishing website usually comes at a small price (around 10$) which is just 1% of the VMC (I just learned that). “Expensive” is very subjective, I think it highly depends on the financial standard of the ac
148.
▲
by
hashstring
3y ago
Anyone willing to share opinions on BIMI? I’m wondering if it is worth it for most medium-large organization or if this is specifically worth it if you are doing a lot of commerce and sending e-mails to customers etc. Furthermore, (stating
149.
▲
by
hashstring
3y ago
> OpenAI cannot tell you if a message is spam, sorry, unless your prompt engineering skills are much better than mine. Sometimes an e-mail message itself does not even contain enough information to accurately classify it as spam or phish
150.
▲
by
hashstring
3y ago
What is it then really? This sounds like a wrapper function…
More ›