Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
raesene2
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
raesene2
6y ago
Doesnt look like that comment came from nat? Username for that comment is naikrovek not natfriedman
2.
▲
by
raesene2
6y ago
Or Robert Seacord’s Effective C
3.
▲
by
raesene2
7y ago
Shame they didn’t include traffic to security.stackexchange.com . I would have thought that would show a more noticeable change. Also would be interesting to see what tags there show the biggest increases
4.
▲
by
raesene2
8y ago
Not really. They can be used to replace one element of the docker stack, runc
5.
▲
by
raesene2
8y ago
“Why bother posting this?” - that’s easy, because it might hit the front page of HN and someone from Google might see it and actually apply human reasoning to the problem. And then it might get resolved well...
6.
▲
by
raesene2
8y ago
Fair play, it is getting late :)
7.
▲
by
raesene2
9y ago
For uk banking systems it is very likely that the passwords are stored symmetrically encrypted with the key stored in an HSM (based on my experience working as an IT security consultant in UK banks). Whilst limiting passwords isn’t good, wi
8.
▲
by
raesene2
9y ago
If you base off alpine, you can get useful containers quite a lot smaller than 100MB. One example i use is an agent i deploy to kubernetes clusters to do some security scanning. The scripts are ruby and the image clocks in at 9MB compresse
9.
▲
by
raesene2
9y ago
Have you tried pocket? I used to keep a load of bookmarks but the problem was that after a while many of the source urls would die off. So something like pocket is very handy as it takes a copy of the page you're interested in.
10.
▲
by
raesene2
9y ago
Well there is, but it's not cheap. You get a trusted third party to Audit you and publish the result of their Audit, something similar to a SAS70. It's not a perfect solution but it's an option to consider
11.
▲
by
raesene2
10y ago
The bear is more a favourite animal of the author
12.
▲
by
raesene2
10y ago
Gotta say I disagree with this. I'd say what it means Is recognize that DNS security is important and treat it as such. The reason I disagree is that if you use something like gmail or outlook.com for logins/ password resets ther
13.
▲
by
raesene2
10y ago
Yeah go look on security stackexchange and you'll see it quite a bit, people just cargo cult the idea of obscurity == bad and don't consider the points made in OP's article
14.
▲
by
raesene2
11y ago
Actually you are , AFAIK, incorrect there. Microsoft's consent decree from their antitrust trial expired in 2011/2012.
15.
▲
by
raesene2
11y ago
It's never a good sign for your argument when you have to resort to ad hominem attacks.... No real point I trying to respond if that's your track but remember this is just a discussion on a website, no need to start throwing arou
16.
▲
by
raesene2
11y ago
Of course I can as it was my personal experience. On the other hand you made a general assertion about their actions which really needs a citation. Reinstalling an os is a technical task, which requires some knowledge to do effectively. H
17.
▲
by
raesene2
11y ago
So a company who doesn't have a monopoly should be restricted from changing their product because it didn't use to be that way.... Seems a bit harsh to me... if Microsoft still occupied the same kind of dominent position they did
18.
▲
by
raesene2
11y ago
So your pc or fedora has a bug which prevents you changing os and it then follows that Microsoft have a monopoly power in PCs... Sorry I don't quite think that follows
19.
▲
by
raesene2
11y ago
I have bought and installed linux on laptops from hp and Lenovo with no problems at all. Also you can buy laptops from Dell with linux pre-installed. Can you provide any citations for the assertion that Microsoft are currently (2016) forcin
20.
▲
by
raesene2
11y ago
But surely they're not closing off the pc platform, just potentially restricting what can happen on their OS. You can still use PCs with linux without any lock in. Long gone are the days when Microsoft was a monopoly on client computi
21.
▲
by
raesene2
11y ago
Pentester: I'll use mass scan, someone else already solved this problem. https://github.com/robertdavidgraham/masscan
22.
▲
by
raesene2
11y ago
My understanding is that most people would suggest that that only applies to the head of state (currently queen Elizabeth) But Prince Charles isn't the head of state... So assuming that you're suggesting that this principle doesn&
23.
▲
by
raesene2
11y ago
You don't think those protections should be in place for the 99% of users of these devices who have no idea what a firmware is, let alone would want to update them?
24.
▲
by
raesene2
11y ago
Its a shame to see the company react like this, but the author is taking a bit of a risk here. Finding sql injection requires active testing of the site which, without authority to test, may fall into a gray area of uk law about whether its
25.
▲
by
raesene2
13y ago
The wiki is not uneditable. You should be able to create an account, then you can edit pretty much any page on the site..
26.
▲
by
raesene2
13y ago
Assuming it's possible to say that two images are from the same person, it would be trivial to work out specifically who that was with any frequent flyer. You'd just build up a body of images of "person 1" then cross-ref
27.
▲
by
raesene2
13y ago
I think that what this could achieve is stating the importance of the issues to the main political parties. Most "mainstream" political parties that I've seen will change their positions on things if they think it will get
28.
▲
by
raesene2
13y ago
If anyone's interested in some more details for write endurance I'd recommend Anantechs SSD reviews. http://www.anandtech.com/show/7173/samsung-ssd-840-evo-revie... . If the numbers in those are accurate
29.
▲
Can't we do better than, "We use SSL"?
(blog.scotsts.com)
1 points
by
raesene2
13y ago
|
0 comments
30.
▲
by
raesene2
13y ago
There are some benefits to removing things like banner headers especially where there is limited effort required to do so.. If the version headers are removed a manual attacker would have to try harder (make more requests) to attempt to ide
More ›