Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
sprin
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
sprin
10y ago
This is very grave problem that especially affects Tor users. > In a nutshell, the vulnerability allows a blind off-path attacker to infer if any two arbitrary hosts on the Internet are communicating using a TCP connection. Further, if t
2.
▲
by
sprin
10y ago
This is not about integrating Tor into Firefox, rather it is about incorporating switches into Firefox for the security/privacy improvements that have been made in Tor Browser. You can think of Tor Browser as a better Firefox that just
3.
▲
Xen exploitation part 3: XSA-182, Qubes escape
(blog.quarkslab.com)
81 points
by
sprin
10y ago
|
5 comments
4.
▲
XSA-182: Xen PV guest to host escape
(xenbits.xenproject.org)
1 points
by
sprin
10y ago
|
0 comments
5.
▲
by
sprin
10y ago
Reading the docs, this seems to be targeted towards personal data backups for individuals. References to photos, interactive usage, support for consumer cloud storage backends, etc. Thus it surprises me that a tool for personal data backup
6.
▲
by
sprin
10y ago
> it's inevitable to have a trust contract with them, it's pretty much essential to the notion of the cloud. I disagree. It's possible to make good use of public infrastructure without handling any important secrets on pu
7.
▲
by
sprin
10y ago
Fantastic! While not as bulletproof as receiving the hash out-of-band for a critical resource, this is better than verifying against a hash received from the same origin as the resource, and far better than no hash verification at all. And
8.
▲
by
sprin
11y ago
Etherpad ( http://etherpad.org ) is an OSS cloud document editor app. It has a pretty reasonable set of formatting, revision, and import/export options out of the box, and also a large set of plugins ( http://static
9.
▲
by
sprin
11y ago
This looks great! From the screenshots, it looks like a nice, clean, thoughtful design. I would love to use it if I could run it myself. The app needs some pretty private data, and I would hate to lose it all in the middle of a job hunt if
10.
▲
by
sprin
11y ago
This was interesting at first glance - it's very approachable in it's simplicity, and I can see it having an impact on the typical Google app user. Something like this could be a useful resource for people who may not think about
11.
▲
by
sprin
11y ago
Thanks for sharing your project. What other CLI password managers did you review, and in what ways did you want Steel to be different? I noticed that, after being opened, the SQLite database appears to be stored on disk unencrypted, and mus