Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
photon12
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
photon12
3y ago
Here's an interesting paper that looks at blood plasma protein contents and uses bioinformatics processes including learned models to identify plausible biofeedback pathways responsible for protein concentrations deviated from baseline
2.
▲
by
photon12
3y ago
There used to be stricter capital requirements and oversight for regional banks, until: https://www.washingtonpost.com/business/economy/trump-signs-... See also: https://www.nbcnews.com/politics&#x
3.
▲
by
photon12
3y ago
These are fair criticisms. Fodder for future studies. I only added these to say there's enough evidence to be questionable of the null hypothesis with regard to long COVID physiopathology.
4.
▲
by
photon12
3y ago
Though it is worth noting there is experimental clinical data providing a plausible pathway to suggest long COVID is a result of cell activity dysfunction with plausible biomarkers of dysfunction, and we've known this long enough to kn
5.
▲
by
photon12
3y ago
If you build robust privacy guidance mechanisms into the fabric of your startup from the beginning, your ability to handle risk management around these types of cases can be resourced to scale with the customer expectations of the system yo
6.
▲
by
photon12
4y ago
Are they going to put "fired the people who used to enforce our change control procedures" in the post-mortem?
7.
▲
by
photon12
4y ago
> $80k could easily afford this, which is a low bar for someone with a moderately decent job. $80k is not a low bar, and this is insulting to really talented people I know stuck in below $40k jobs.
8.
▲
by
photon12
4y ago
I used to dig ditches in places where excavators couldn't go for a living, and I'm familiar with the contract rate differences for that type of labor and equipment. My point is that the disparity is such a chasm that my brain ca
9.
▲
by
photon12
4y ago
Yes, there is an inconsistency in the amount of effort expended to survive versus the outcomes of that effort. I can't reconcile them in my head. I'm watching my friend trying not to physically deteriorate and have some modicum of
10.
▲
by
photon12
4y ago
> Meanwhile, renters are desperate. They’re begging for housing prices not just to slow, but to fall. I have a friend who is a head chef at a decently popular bar and restaurant on Broadway in Capitol Hill, Seattle (very trendy part of t
11.
▲
by
photon12
4y ago
Customers who care about their data care that it's protected regardless of the size of the business. They care about availability regardless of the size of business. If customers could make more informed decisions about these risks, i.
12.
▲
by
photon12
4y ago
Regulation generally is targeted at preventing consumer harm. Self-regulation is the practice of appropriately mitigating consumer harm. I mean mobile subscription providers here by "industry."
13.
▲
by
photon12
4y ago
This person isn't necessarily an oligarch, but they are a major vendor of market research and VC dollars in the space. This is how important they think the stakes are around fake internet money [1]: > The Biden Administration is try
14.
▲
by
photon12
4y ago
Got this message in my Discord message requests, from 13 hours ago: Yo!*Welcome to [redacted]!* What can we offer you We providing quality crypto pumps. *We share the name of target coin in advance.* *We are professional cryptotrader
15.
▲
by
photon12
4y ago
You can read lots of comments in these threads about the cost/benefit analysis of mitigating the vulnerabilities. And whenever that cost/benefit calculation gets very complex, the default is to not get too worked up about fixing t
16.
▲
by
photon12
4y ago
Also, startups have such an advantage now that there is an ecosystem of COTS and SaaS tooling that can help you do a complete integration strategy. It's arguable MFA regulations would advantage startups because they don't have t
17.
▲
by
photon12
4y ago
While normally I would agree wholeheartedly with this, in this very instance I see meaningless abstraction in service of justifying consumer harm. The phishing TTPs outlined in the article can be mitigated with hardware keys, and the plac
18.
▲
by
photon12
4y ago
The TTPs outlined in the article could absolutely be mitigated by use of hardware keys, and this would reduce customer risk. You are right about the liability and support calculation, but that doesn't mean it's OK to shift risk to
19.
▲
by
photon12
4y ago
Lack of knowledge of vulnerability is not the limiting factor in this case. All a "free for all" would do in this case is make more noise in which malicious actors can hide in the logs.
20.
▲
by
photon12
4y ago
"People" don't need to keep up, the internal controls team needs to keep up, and it's possible to staff such a team with people who know how to mitigate phishing attacks when you are one of the largest corporate targets
21.
▲
by
photon12
4y ago
I agree completely. I didn't ask why government enforced regulation hasn't happened. I asked why industry self-regulation has failed. I've worked in a regulatory/security role for a major conglomerate before. I'm no
22.
▲
by
photon12
4y ago
I recently had to leave working for a cryptocurrency adjacent startup because my stomach kept getting into knots about how oligarchs are doing a lot of VC funding in the space, and the reason they are funding it is to cement their authority
23.
▲
by
photon12
4y ago
There's enough purported primary source data here that I am inclined to believe this reporting entirely.
24.
▲
by
photon12
4y ago
I'm not assuming anything, I'm pointing out a failure of self-regulation given the TTPs listed in the original article, which are distinct from fully insider-supported attacks, should not happen. There is obvious, direct, and de
25.
▲
by
photon12
4y ago
I'm not calling for regulation on general security outcomes. I'm talking specifically about access controls on sensitive and highly privileged systems that have ripple impacts to consumer security, which should already be obvious
26.
▲
by
photon12
4y ago
> T-Mobile declined to answer questions about what it may be doing to beef up employee authentication. But Nicholas Weaver, a researcher and lecturer at University of California, Berkeley’s International Computer Science Institute, said
27.
▲
by
photon12
4y ago
Smart attackers are already/will add `sleep(SOME_NUMBER_LONGER_THAN_SCAN_SANDBOX_LIFETIME)` before anything that does FS or network access. Not to say that this wouldn't be a welcome addition, but the scanning needs to be understo
28.
▲
by
photon12
4y ago
Have you never known anyone in your life for whom this was a requirement? This is a pretty common occurrence for the less well-off folks I've known as the risk profile for lower-income insurance markets puts the cost analysis toward re
29.
▲
by
photon12
4y ago
Money doesn't matter if you can't attract and retain talent, which is my main point. IDK exactly what you are getting at.
30.
▲
by
photon12
4y ago
Welllll, when you are a cloud for the world's governments and systemically important financial institutions, you have operating functions that keep you being able to retain those customers. AWS has had issues in the past with employee
More ›