Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
mafriese
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
mafriese
4mo ago
I posted a comment on the announcement when it was posted here: >As someone who is working in incident response and malware analysis I have to say that is one of the worst ideas I have ever seen. A lot of companies have issues with Click
2.
▲
by
mafriese
4mo ago
As someone who is working in incident response and malware analysis I have to say that is one of the worst ideas I have ever seen. A lot of companies have issues with ClickFix [1] and other social engineering campaigns and now Google wants
3.
▲
by
mafriese
5mo ago
From my experience OpenAI has become very sensitive when it comes to using their tools for security research. I am using MCP servers for tools like IDA Pro or Ghidra (for malware analysis) and recently received a warning: > OpenAI'
4.
▲
by
mafriese
7mo ago
I’m not saying that this is related to Wikipedia ditching archive.is but timing in combination with Russian messages is at least…weird.
5.
▲
by
mafriese
7mo ago
From the conclusion > Importantly, this work also highlights the defensive implications of such techniques. While Secure Boot and firmware integrity mechanisms would prevent this attack chain when correctly enforced, the explicit require
6.
▲
by
mafriese
8mo ago
maybe it's a mix of both :)
7.
▲
by
mafriese
8mo ago
You can define the tools that agents are allowed to use in the opencode.json (also works for MCP tools I think). Here’s my config: https://pastebin.com/PkaYAfsn The models can call each other if you reference them using @
8.
▲
by
mafriese
8mo ago
Nope it isn’t. I did it as a joke initially (I also had a version where every 2 stories there was a meeting and if a someone underperformed it would get fired). I think there are multiple reasons why it actually works so well: - I built a
9.
▲
by
mafriese
8mo ago
Ok it might sound crazy but I actually got the best quality of code (completely ignoring that the cost is likely 10x more) by having a full “project team” using opencode with multiple sub agents which are all managed by a single Opus instan
10.
▲
by
mafriese
11mo ago
I am still torn on this issue. On the one hand, it feels like a copyright violation when other people's works are used to train an ML model. On the other hand, it is not a copyright infringement if I paint a picture in the Studio Ghibl
11.
▲
by
mafriese
1y ago
I never doubted that it's possible but it's way harder than identifying bank accounts. There is a massive business behind crypto tracking, that's why companies like MasterCard have acquired CipherTrace. Some years ago there
12.
▲
by
mafriese
1y ago
You can easily establish the connection from a bank account to a person. A connection from a crypto wallet to a person is extremely difficult. Money laundering with crypto is also much easier (and cheaper usually).
13.
▲
by
mafriese
1y ago
> The threat actor appears to have obtained this information by paying multiple contractors or employees working in support roles outside the United States to collect information from internal Coinbase systems to which they had access i
14.
▲
by
mafriese
2y ago
This is perfect advertising for the Ladybird browser. I hope that some of the developers (if this really goes live on the release channel) will join other projects. I can understand that Mozilla needs money, but I don't think this feat
15.
▲
by
mafriese
2y ago
Is this in any way better than eza? https://github.com/eza-community/eza
16.
▲
by
mafriese
2y ago
The website uses "Enter your 6-digit authentication code" as an example and then shows a 4-digit auth code in the text field https://imgur.com/a/u4STHPe
17.
▲
by
mafriese
2y ago
https://github.com/mafriese/scarecrow Can upload any files you want there. Direct DL for one of the files: https://github.com/mafriese/scarecrow/raw/main/autoruns.exe
18.
▲
by
mafriese
2y ago
This "thing" is always spawning 3 processes at the time. The processes are always the ones from the virustotal link. I can upload the DLL to a file sharing service of your choice if you don't have a VT premium license. I can
19.
▲
by
mafriese
2y ago
I don't understand why the software is built how it's built. Why would you want to implement licensing in the future for a software product that only creates fake processes and registry keys from a list: https://pastebi
20.
▲
by
mafriese
4y ago
You guys are getting paid?
21.
▲
by
mafriese
5y ago
Use Bitwarden instead. fixed. https://bitwarden.com/
22.
▲
by
mafriese
5y ago
Because the 99$/year are for the dev platform and the 15%/30% cut are for using the infrastructure needed for in app purchases.
23.
▲
by
mafriese
5y ago
they do - the first 1m$ only cost 15% - It's btw the same with the Google Play Store
24.
▲
by
mafriese
5y ago
Well... That's the same amount of money you have to give to Google, Microsoft and Amazon if you want to use their services. Google and Apple both take 15% if you make less than 1.000.000$/year. Again - As a user I also don't
25.
▲
by
mafriese
5y ago
Honestly as a user I will avoid any app that is trying to offer me a purchase outside the App Store. Users mostly don't care about the issues between the developers and Apple and at least I am willing to pay more for my IAPs and be ab
26.
▲
by
mafriese
5y ago
yep
27.
▲
by
mafriese
5y ago
I think the problem with emojis is that everyone has the same options to pick from - if you have stickers you can express yourself in a way that fits more your own style(?)
28.
▲
by
mafriese
5y ago
Your app feels really clean! I like the dropping buttons when you want to delete a sticker and the sticker effect when you view a sticker and you pull it up or down. iCloud Sync also works like a charm! Hope you manage to get Whatsapp suppo
29.
▲
by
mafriese
6y ago
I notice that you have no one in your circle of acquaintances who has illegally downloaded movies about torrents and got caught. I don't know how it is in other countries, but here in Germany friendly people ring your doorbell and take
30.
▲
by
mafriese
6y ago
That's exactly what I'm thinking! Further I can't find the EULA of the app on the internet - maybe I'll find it later. But I could bet that they sell the data for marketing purposes. And I could also bet that they remove
More ›