Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
kokx
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
8 ms
·
1.
▲
by
kokx
1mo ago
It's not piped to a shell, but to the tar program with specific parameters to directly unpack the tar. You're still installing the program directly from github of course, instead of a source where hopefully a third party has also
2.
▲
by
kokx
7mo ago
The article literally talks about how one of the server implementations does exactly that: > Does this affect Prosody? > Not directly. Let’s Encrypt is not the first CA to issue server-only certificates. Many years ago, we incorporate
3.
▲
by
kokx
1y ago
I wouldn't be surprised if this happened without JD Vance's knowledge. This sounds like a thing that Secret Service would make happen to make sure they can secure him at all times.
4.
▲
by
kokx
1y ago
Our politics does have some good parts. The political system we have is reasonably good. We have many political parties due to the proportional representation system. A single party is also unlikely to get a majority in parliament on their
5.
▲
by
kokx
1y ago
This depth you are never going to get in a college education anyway. Especially not since programming isn't (and shouldn't be) the only thing you learn in a Software Engineering / Computer Science bachelor.
6.
▲
by
kokx
2y ago
The type of work the people working at an APT do, is mainly office work, while it still is very much "hands-on-keyboard" work (so you cannot set an action to automatically occur when nobody is checking the results in the middle of
7.
▲
by
kokx
2y ago
The biggest piece of advice I have is to not give up too easily. The writeup makes things seem a lot easier than they actually are. While working on this project I had many moments where I almost gave up. Pushing past such roadblocks can ge
8.
▲
Reverse Engineering the Duco Connectivity Board
(github.com)
35 points
by
kokx
2y ago
|
4 comments
9.
▲
by
kokx
2y ago
With a little trickery with URL's you could construct something like: https://github.com/example/project/releases/@example-project... Due to everything in a URL before the @ being interpreted as a userna
10.
▲
by
kokx
3y ago
Usually that CFO doesn't have admin privileges. However, the exe he ran could very easily make use of a privilege escalation exploit on a service that does run with admin privileges. An exploit that is a buffer overflow or otherwise an
11.
▲
by
kokx
3y ago
As a pentester that did exactly this in many corporate networks: this is extremely effective. Just announce with a router advertisement that there is a DHCPv6 server and start handing out link-local IPv6 addresses while you specify your own
12.
▲
by
kokx
4y ago
FWIW, I'm typing this on my framework right now, and I'm in Europe (Netherlands). So it is available in parts of Europe. Don't remember them promising delivery in all of Europe though?
13.
▲
by
kokx
5y ago
I'm from the Netherlands as well, and I'm very scared of the talks of permanent DST over here. Which means that the sun would rise at 9:45 if we permanently switch to DST. Our country would be better suited at UTC, instead of UTC+
14.
▲
by
kokx
5y ago
As a pentester at a security company doing assessments for customers, I can say that this is definitely false. We value our independence highly. It is what ultimately brings in business. It would be very bad business if one our customers ge
15.
▲
by
kokx
5y ago
I have literally done this once with a friend of mine, transfer a file over netcat. It cost us about 10 minutes of figuring out the exact commands, and we were at the same LAN party, and thus had a direct network path to each others systems
16.
▲
by
kokx
5y ago
It doesn't expose a Google Cast device. It only allows streaming media from a Jellyfin instance to that device.
17.
▲
by
kokx
5y ago
Part of his (reported) reasoning is really strange: because Bitcoin is doomed to crash, we have to take action, so the Netherlands should ban it. Causing it to crash earlier rather than later. He also says that he isn't afraid that ban
18.
▲
by
kokx
5y ago
Bicycles replace both walking and driving trips. In Dutch cities, most people walk or cycle to the grocery store, which is a great example of cycling replacing walking trips. In smaller villages however, that are more spread out and usually
19.
▲
by
kokx
5y ago
It is a great argument that non-immunocompromised people should get vaccinated. If non-immunocompromised people are vaccinated, the probability that immunocompromised people get infected gets smaller, thus causing less variants.
20.
▲
by
kokx
5y ago
Within the EU, flights rarely get overbooked. Especially on cheap flights like with Ryanair, the reimbursement that the airline has to provide in case of overbooking can easily be more than 10x the ticket value.
21.
▲
by
kokx
5y ago
Because a user could simply provide the cookie again on the next request. If you still see the JWT as valid even though you deleted the cookie, the user could stay logged in during that time. Cookies are managed by the browser, hence they a
22.
▲
by
kokx
5y ago
I don't think we should count on the rich to not try to find loopholes anyway while keeping their taxes low. I'm pretty sure they would do so whether their taxes are low or not. Trying to stay on their good side hoping they will &
23.
▲
by
kokx
5y ago
What you do during pentesting is against the law, if you do not discuss this with your client. You're trying to gain access to a computer system that you should have no access to. The only reason this is OK, is that you have prior perm
24.
▲
by
kokx
5y ago
In countries where assault rifles are banned, these things generally still are possible. With strict rules, for example you're only allowed to have your rifle and ammo at a shooting range, and psychological review of everyone involved.
25.
▲
by
kokx
5y ago
The source you mention does not explicitly give a one in 30.000 figure, and it is not something that can be safely concluded from the data in the paper. The authors state that at the time 132,686 people had received their first AZ shot in N
26.
▲
by
kokx
5y ago
On the other hand, these comments are only met with responses indicating that the source for that is an old whitepaper without any more information. While the person replying is the MobileCoin CEO. So they at least try to embellish the curr
27.
▲
by
kokx
5y ago
I'm not sure if they strictly need to be warned. Every ship of such size runs lots of radars already. They probably noticed the ship slowing down already, and adjusted their own speed.
28.
▲
by
kokx
5y ago
I'm very aware of microG. They have done some amazing work. But unfortunately apps like banking apps require that you pass Google's SafetyNet. Which (understandably) is a lot more complicated to support in microG.
29.
▲
by
kokx
5y ago
Which are both Android ROMs/distributions. Still requiring Google Play Services to do any of the things I want Android for. And they definitely do not have the same kind of hackability that full on Linux phones have. LineageOS is what
30.
▲
by
kokx
5y ago
Yes, Anbox exists, and has done some amazing things. But can this run apps that require Google Play Services, such as WhatsApp, most banking apps, and governmental apps? It is very unfortunate that so much of the Android ecosystem relies on
More ›