Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
roddux
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
roddux
8mo ago
Adding ' https://www.surveillancewatch.io/noise-anim.gif ' to your favourite rule-based adblocker fixes this.
2.
▲
by
roddux
8mo ago
The stupid dancing fuzz filter across the entire website renders the content almost completely illegible, and is a struggle to read. Shame.
3.
▲
by
roddux
3y ago
Rather than seeking an impossible ideal (>2 people who agree on what 'good' code is)-- instead read ALL sorts of code. This will then help you learn to distinguish between what is good and not good, and what makes it so. Simp
4.
▲
Readline crime: exploiting a SUID logic bug
(blog.trailofbits.com)
5 points
by
roddux
4y ago
|
1 comments
5.
▲
by
roddux
4y ago
Looking at a local privilege escalation (on some systems) that works due to a logic bug in readline, when used with SUID programs.
6.
▲
by
roddux
4y ago
Find a new provider that won't randomly shaft you for spurious reasons.
7.
▲
by
roddux
4y ago
Solana really seems like the most interesting Layer-1 chain outside of Ethereum... lots of cool tech.
8.
▲
by
roddux
4y ago
https://news.ycombinator.com/item?id=32897812
9.
▲
by
roddux
4y ago
Archive/no paywall: https://archive.ph/Uxssq
10.
▲
by
roddux
5y ago
I love the look of this, but haven't been able to find any information about latency... It seems to be a local network solution? Light on details about how it works, short of reading source.
11.
▲
by
roddux
5y ago
LaTeX for music? nice!
12.
▲
by
roddux
5y ago
Nobody is arguing that users having a 1-2 week patch window is a bad thing. However, this frankly seems incompatible with open-source projects. Silently patching issues does not work in practice; it frequently leads to missed fixes, misappl
13.
▲
by
roddux
5y ago
Don't know why your other comment got downvoted. Silently patching bugs has left many LTS kernels vulnerable to old bugs, because they weren't tagged as security fixes. Also leads to other issues..: https://grsecurity
14.
▲
by
roddux
5y ago
Is it a rule that all NFT art must be algorithmically generated and look like shit? Jesus wept.
15.
▲
by
roddux
5y ago
I am quite interested in your setup! Have you written at all about how you use this, day to day, or perhaps made a screencast? I would be very keen to watch it. I am a huge fan of integrated environments. I often find the promise of extenda
16.
▲
by
roddux
5y ago
Readable version: https://archive.is/GXIeZ
17.
▲
by
roddux
5y ago
https://archive.is/K9JP3
18.
▲
by
roddux
5y ago
So when can we expect ThisEstonianDoesNotExist?
19.
▲
by
roddux
5y ago
Article is pretty light on details; but I don't think much is public yet. I think the big question is, will Windows turn into a subscription-based OS?
20.
▲
by
roddux
5y ago
If anyone else was curious about HarmonyOS, don't bother..: > https://en.wikipedia.org/wiki/HarmonyOS Unveiled on 9 August 2019, Huawei initially stated that it would be an independently-developed, microkernel
21.
▲
by
roddux
5y ago
Looks like an interesting prototype. The problem is, though, is it just a funky UI on top of Webkit/Blink and V8? There's no real innovation under the hood, here - although some of the GUI features look nice.
22.
▲
by
roddux
6y ago
Something you won't gather from skim-reading the headline is that this is that the author has also created a tool, Fickling: https://github.com/trailofbits/fickling - to aid in playing around with pickle files. Fr
23.
▲
by
roddux
7y ago
Months of dedicated research, utilising a wealth of knowledge that comes from spending a not-insignificant portion of your career researching such bugs.
24.
▲
by
roddux
7y ago
>ignoring the security best practices of other systems programming languages Can you please expand on this point?
25.
▲
by
roddux
7y ago
You should add the late Terry Davis to your list, or if that area interests you, read up on his work: https://en.wikipedia.org/wiki/TempleOS
26.
▲
WordPress Woes: Rediscovering a 4-Month-Old 0-Day
(labs.arcturus.net)
2 points
by
roddux
7y ago
|
0 comments
27.
▲
by
roddux
7y ago
Is it possible to verify that you cannot access said system, though? How would that even be done? In most scenarios I can imagine you're still rely on the server telling you something about itself... which it can lie about.
28.
▲
by
roddux
7y ago
The potential application is hinted at with the slide "OSS-Fuzz@Home". Akin to the SETI@Home* mass-distributed computing project, this has the potential to scale in a HUGE way. Anyone with a web browser could simply load the fuzze
29.
▲
by
roddux
7y ago
Of all places I thought I'd see that channel recommended, HN is close to last on the list. That guy puts up some really great stuff.
30.
▲
by
roddux
7y ago
Good, hopefully it hurts the porn industry as a whole.
More ›