Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
sparkinson
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
sparkinson
12y ago
This is a tool I developed after struggling with an increasingly large bash script for my pre-commit hook. The focus is on enabling others to easily develop their own checks/reviews. I'll be looking at adding Mercurial and SVN sup
2.
▲
Show HN: StaticReview – An extendable framework for version control hooks
(github.com)
1 points
by
sparkinson
12y ago
|
1 comments
3.
▲
by
sparkinson
13y ago
Is it up? is correctly reporting: http://isitup.org/google.com Same at http://www.isitdownrightnow.com/google.com.html
4.
▲
by
sparkinson
13y ago
Looking around there doesn't seem to be any news on a breach at name.com, official or un-official (aside from this of course). It does have me worried however.
5.
▲
by
sparkinson
13y ago
Are you saying that you are happy to type in an entire sonnet when prompted for a password? Being realistic, to expect someone to type in such a long password regardless of if they can remember it or not is clearly unreasonable.
6.
▲
by
sparkinson
13y ago
The thing is for your personal bank account a 15 character password is acceptable. But for x many customer credit card details you're really looking for a much longer password that that. I'm talking 64 characters or more of pure random data
7.
▲
by
sparkinson
13y ago
Not really, just more than one person as is implied in the grammar. Edit: Theses "making an assumption" arguments are silly. It is good practice to assume the worst case, to assume the best in this situation is bad.
8.
▲
by
sparkinson
13y ago
It'd be worth having a read of the logs, if true it appears that the attack was only to compromise a specific target. The fraud won't occur till the database is released and the private key is cracked.
9.
▲
by
sparkinson
13y ago
I'd argue that actually it's better to assume the worst case here, not what it potentially could be. That and the fact that an offline attack can be run on this key is not promising.
10.
▲
by
sparkinson
13y ago
> in our heads So it's short enough to remember and likely has some sort of pattern. There's a limit to what a person can remember, lower if there are several people that have to remember it.
11.
▲
by
sparkinson
14y ago
> I'd prefer a new foreign car that has certain limitations to a used Jeep that I can extend in any way I want. Are you sure about that?
12.
▲
by
sparkinson
14y ago
Check out CloudFlare, they provide some great DNS services with some added bonuses.
13.
▲
by
sparkinson
14y ago
I doubt it's robust and stable enough to use in a hospital yet.
14.
▲
by
sparkinson
14y ago
I believe the unit and frame are separate. As mentioned there are a few examples of the units being on standard glasses with lenses.
15.
▲
by
sparkinson
14y ago
I would have thought it'd pair with your phone, with the phone doing all the hard work. The glasses really just being a display and recorder.
16.
▲
by
sparkinson
14y ago
That's just their small device (NEO). I have two of their normal sized one that I use for several sites already for 2-Factor. The YubiKeys are actually pretty robust and safe enough to keep on a keyring. The key to this is to still require
17.
▲
by
sparkinson
14y ago
I understand that there is an expectation for Nokia to resolve this concern in some manner, but why do endpoint sites not simply block requests from the proxy? I mean if I was a bank it'd properly be in my interest to protect my customers f
18.
▲
by
sparkinson
14y ago
No need to spend a whole load of cash if it's only personal. Check out http://www.lowendbox.com/ for some dirt cheap VPS deals and guides on how to configure a limited resource server if you're new to it. I currently use two providers I f
19.
▲
by
sparkinson
14y ago
Oh wow, I didn't even notice how old it was. Guess it was more of a hit a run thing. A shame really, though it was a nice use of Mechanical Turk.
20.
▲
by
sparkinson
14y ago
Seems your site is taking a bit of a hit: http://isitup.org/www.domainpolish.com What a great idea though, glad to see it's a success! Now you just need to automate it a bit further.
21.
▲
by
sparkinson
14y ago
Ah thanks for pointing that out, it was baffling me and I couldn't even send feedback :P
22.
▲
by
sparkinson
14y ago
Humorously, when their stats script gets blocked none of the links actually work in my Chrome build.
23.
▲
by
sparkinson
14y ago
I think they could see the number of unique users vs number of sales. The article didn't mention if they could see any more detail than that though.
24.
▲
by
sparkinson
14y ago
This is a guess: User opens up their dashboard, which displays a post that contains the XSS. That script then makes a post using the users account to their own blog, further spreading the rogue script.
25.
▲
by
sparkinson
14y ago
For those trying this tool the IP prefix is 5.0.0.0/18. 29/11/2012 10:20 to 10:30.
26.
▲
by
sparkinson
14y ago
Only how to pronounce it. I couldn't spell it to save my life.
27.
▲
by
sparkinson
14y ago
Seems unnecessary if it can simply be DDG, a true acronym for the same or less characters than your suggestion.
28.
▲
by
sparkinson
14y ago
Now what's the reasoning for doing something like that?
29.
▲
by
sparkinson
14y ago
You're right actually. I think at the moment you can't turn off individual "goodies" either. That would be a good set of options however.
30.
▲
by
sparkinson
14y ago
Bang syntax (like !hn) will take to directly to the sites search. Try for example "!g hacker news". Plugins, or goodies I think ddg calls them keeps you within the site and provides more info in that zero-click box.
More ›