Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
jamieweb
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
jamieweb
6y ago
I looked into this a few years ago[1]. The solution I came to involves putting the hash of the most recent Bitcoin block in your document, and then signing the hash of your document into the Bitcoin blockchain. This cryptographically proves
2.
▲
by
jamieweb
6y ago
This has been absorbed into an internal repo now, but the original version that I wrote a couple of years ago is here: https://gitlab.com/jamieweb/travis-ci_csp-tester/
3.
▲
by
jamieweb
6y ago
cURL doesn't load subresources or honour Content-Security-Policy headers as this is beyond the scope of what it's supposed to do.
4.
▲
by
jamieweb
6y ago
I use it to test my Content-Security-Policy by crawling my whole site and capturing any violation reports that are sent.
5.
▲
by
jamieweb
6y ago
Cloudflare Registrar - it's one of the only truly security-oriented ones out there, and they offer wholesale rates, which is a nice bonus.
6.
▲
by
jamieweb
6y ago
I use Cloudflare Workers for: * Serving a standard security.txt file for all websites within my account * Automatically rewriting the case of URLs for a CMS that doesn't support case-insensitivity * Adding security headers to sites tha
7.
▲
by
jamieweb
6y ago
Feedly lets you 'subscribe' to YT channels, so you can see all of the uploads in your Feedly feed. Just search for a channel when adding a source. If it doesn't come up, paste in a direct link to the channel homepage and it&#
8.
▲
by
jamieweb
6y ago
For those who've ended up here, my solution for now is to use Feedly.
9.
▲
Tell HN: YouTube have discontinued email notifications
6 points
by
jamieweb
6y ago
|
4 comments
10.
▲
by
jamieweb
6y ago
My main reason for disliking Snap is the fact that it allows anybody in the world to publish a package with minimal moderation. This completely undermines the inherent trust that system package managers should have. When installing critical
11.
▲
Self-Surgery
(en.wikipedia.org)
1 points
by
jamieweb
6y ago
|
0 comments
12.
▲
Using Tor as a SysAdmin Tool
(jamieweb.net)
4 points
by
jamieweb
6y ago
|
0 comments
13.
▲
by
jamieweb
6y ago
tac
14.
▲
by
jamieweb
6y ago
Just to confirm, this only seems to relate to popcon/popularity-contest, and not the other data collection features. The other two main ones are Apport for crash reporting, and ubuntu-report, which sends system info if opted-in at inst
15.
▲
by
jamieweb
6y ago
Allow developers/engineers to use an OS and tooling that they're comfortable with. There must be choice between text editors, IDEs, browsers, shells, etc. Also don't try to control this centrally. Once developers have proven
16.
▲
by
jamieweb
6y ago
Yes, would love a 'pull' based system. You can usually tell just from the subject/preview whether you actually need an email.
17.
▲
by
jamieweb
6y ago
My favourite one is a CMS, which stands for Crematorium Management System.
18.
▲
by
jamieweb
6y ago
The tk, gq, cf, ml and ga TLDs offer free registration, so they're widely used in scams and fraud. In most cases you can safely block all traffic to/from them, as well as email addresses using them.
19.
▲
by
jamieweb
6y ago
My recommendation is Fastmail for personal/business email/mailboxes, and Mailgun for a transactional email API.
20.
▲
by
jamieweb
6y ago
Pop!_OS
21.
▲
by
jamieweb
6y ago
Pop!_OS is what you're looking for IMO.
22.
▲
by
jamieweb
6y ago
You can transfer a domain with no downtime. The name servers will remain during the transfer, so as long as your DNS isn't dependent on the domain registrar, you'll be fine. If you are using the registrar's built-in DNS hosti
23.
▲
by
jamieweb
6y ago
I love your service, I use it every day. :) I find that a lot of phishing sites these days are hosted on legitimate sites that have been backdoored, but are continuing to operate as normal. The phishing page is hidden away in the /.wel
24.
▲
by
jamieweb
6y ago
https://n-o-d-e.net
25.
▲
by
jamieweb
6y ago
As a side note, I was very impressed/delighted by the message on the site when JavaScript is disabled: > Sorry pal, but this won't work without a JavaScript. You are probably doing that for privacy reasons, and I do respect th
26.
▲
by
jamieweb
6y ago
A somewhat relevant project of mine, where you can test how good you are at spotting these sort of domains: https://www.jamieweb.net/apps/lookalike-domains-test/
27.
▲
SONiC – An Open Source Network Operating System
(azure.github.io)
116 points
by
jamieweb
6y ago
|
43 comments
28.
▲
by
jamieweb
6y ago
Relevant: https://publiccode.eu
29.
▲
by
jamieweb
6y ago
This is especially concerning considering that GitLab is a technology company consisting of mostly technical staff. For a crafted spear-phish like the one used in this test, I wonder what the failure rate would be in larger, non-tech organi
30.
▲
by
jamieweb
6y ago
Ah yes, I love working out which is the most recent document out of: * Document1 FINAL * Document1 FINAL DRAFT (DO NOT EDIT) * Document1 FINAL EDITED * Document1 v2 FINAL
More ›