Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
tsujamin
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
tsujamin
1mo ago
Surely that added flexibility negatively impacts the density/parameter count of the model you could etch?
2.
▲
by
tsujamin
2mo ago
I ended up migrating to ebooks.com and importing them into Calibre (after some work to get Adobe Digital Editions to import nicely) and using that to manage my Kindle. Did the same with my old Amazon library too when they were talking about
3.
▲
by
tsujamin
2mo ago
> not who made it I’m not going to get the wow of “how did they perform that phrase/melody/rhythm” the same way from music that wasn’t actually performed (ack this doesn’t apply to all genres obviously)
4.
▲
What Makes a Vulnerability Report Excellent
(blog.disclose.io)
1 points
by
tsujamin
3mo ago
|
0 comments
5.
▲
Do Excellent Vulnerability Reports
(daniel.haxx.se)
4 points
by
tsujamin
3mo ago
|
0 comments
6.
▲
by
tsujamin
4mo ago
That warning also doesn’t render right on my iPhone (the buttons are overlapping slightly), and I don’t recall seeing it on other repos. Is it new/bespoke?
7.
▲
by
tsujamin
5mo ago
And this is a comment, about a comment, about a book review, about a book, about a book reviewer who reviewed books.
8.
▲
lookup.disclose.io: One Tool to Find All Security Contacts
(blog.disclose.io)
1 points
by
tsujamin
5mo ago
|
0 comments
9.
▲
by
tsujamin
5mo ago
For what it’s worth, Trusted Signing verification has been a moving target over the last 12 months. It was open for individuals, then it was closed to anyone except (iirc) US businesses with DUNS numbers, then it opened again to US based in
10.
▲
by
tsujamin
5mo ago
They did, just further into the article: > According to a post on Hacker News, the popular VPN client WireGuard is facing the same issue.
11.
▲
by
tsujamin
8mo ago
It could be a flag in the per-network CarrierConfig bundle. I imagine that would help with jurisdictions that might require this protocol for legislative reasons
12.
▲
by
tsujamin
8mo ago
That the original post to HN linked in the blog was done on a throwaway kind of implies a level of awareness (on the part of the dev) that the code/claims were rubbish :) https://news.ycombinator.com/item?id=46780837
13.
▲
Azul 9.0 is Open Sourced (Australian Cyber Security Centre)
(australiancybersecuritycentre.github.io)
1 points
by
tsujamin
8mo ago
|
0 comments
14.
▲
by
tsujamin
9mo ago
To name a few (presumably): drivers, proprietary protocols, vendor warranties/support, licensing/relicensing, paying you to do the work, waiting for the work to be done/tested, paying for workforce re-training, justifying thi
15.
▲
by
tsujamin
9mo ago
There’s also API Sets: where DLLs like api-win-blah-1.dll acts as a proxy for another DLL both literally, with forwarder exports, and figuratively, with a system-wide in-memory hashmap between api set and actual DLL. Iirc this is both for v
16.
▲
by
tsujamin
9mo ago
Strong recommendation for Alistair Reynold’s Century Rain if you want another of his. It’s part 20th century alternate history, part hard boiled crime noir, and part hard space opera.
17.
▲
by
tsujamin
9mo ago
Cutting a long list short, the _best_ thing I read this year was W. Somerset Maugham’s Of Human Bondage. It’s not a book where the world changes greatly or great things are done, but honestly that’s kind of nice: It’s a compelling story of
18.
▲
by
tsujamin
9mo ago
I thought I was going crazy, but it started feeling materially worse sometime in last few weeks.
19.
▲
by
tsujamin
9mo ago
> Great Dead Bars of New York: > 1. SIBERIA in any of its iterations. The one on the subway being the best. Timely, as the latest reincarnation of SIBERIA just re-opened in 59th Street/Columbus Circle station
20.
▲
Simple trick to increase coverage: Lying to users about signal strength
(nickvsnetworking.com)
439 points
by
tsujamin
11mo ago
|
181 comments
21.
▲
by
tsujamin
1y ago
So long as you’re writing your smart contracts with a chisel, into a stone tablet, with no compilers or assemblers in sight!
22.
▲
by
tsujamin
1y ago
A Pwnie for "unilaterally shutting down a counterterrorism operation”
23.
▲
by
tsujamin
1y ago
You say beautiful, I say existentially terrifying, let’s split the difference
24.
▲
by
tsujamin
1y ago
Obviously not speaking for others experience, but it all makes me feel pretty fatigued, and as if this growing expectation of "AI-enhanced productivity" is coming at the expense of a craft and process (writing software) that I enj
25.
▲
Using AI to Create an Exploit for CVE-2025-32433 Before Public PoCs Existed
(platformsecurity.com)
2 points
by
tsujamin
1y ago
|
1 comments
26.
▲
by
tsujamin
1y ago
> wireless file transfers between Android and iOS being completely impossible at the moment P2P proximal wireless transfer, sure, but there's half a dozen apps on your phone that'll let you punt a document, a photo, an invite t
27.
▲
by
tsujamin
2y ago
They already have a compostable automation api with 3rd party integrations: Shortcuts! It’s not perfect, but surely you could natural language -> llm -> temporary shortcut script and that gets you a decent part of the way to a smarter
28.
▲
by
tsujamin
2y ago
How does SBOM and such account for this? If you’re a package maintainer, do you need to include CI pipeline plugins, their dependencies, going down as far as the pipeline host, in your security-relevant dependencies? Hard problems :/
29.
▲
by
tsujamin
2y ago
I can’t remember the example (it was a conference talk a few years ago), but I’m pretty sure there’s LE and DFIR companies who also reverse this stuff and assist in recovery, they just don’t publish the actual flaws exploited to recover the
30.
▲
by
tsujamin
2y ago
Presuming this results in a cryptosystem change for Akira, there’s a real number of victims who won’t get their data back as a result of this disclosure. Whether the number is more than that of victims to date who can recreate this? Who kno
More ›