Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
wfunction
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
121.
▲
by
wfunction
9y ago
dang, this is literally the first time I recall ever seeing a mod respond like this, and I've seen some pretty off-topic comments before. The comment was pretty darn civil, we've had political discussions all the time, and you kno
122.
▲
by
wfunction
9y ago
I'll ask it differently: why are we not getting a black bar for this?
123.
▲
by
wfunction
9y ago
Oh cool, okay thanks!
124.
▲
by
wfunction
9y ago
Seems like part of this could've been prevented by just tweeting with (1/) or (2/) in the beginning of multi-tweet posts.
125.
▲
by
wfunction
9y ago
This is cool but strange and sad. Do you ever feel it goes in the opposite direction for a fraction of the people you meet? Like do you feel anyone who knows your real background (if anyone does...) treats you better because of that rathe
126.
▲
by
wfunction
9y ago
Do you know if it's easy to patch the binaries so that this effect is nullified?
127.
▲
by
wfunction
9y ago
Has this recently changed (e.g. was it different from v4)? Or was it always the trend?
128.
▲
by
wfunction
9y ago
Oh geez, thanks for the link. I'd cut him some slack. I feel like if I was working under Trump I wouldn't be eagerly jumping in the middle of a crowd of reporters and telling them to throw questions at me in my first 2 months eith
129.
▲
by
wfunction
9y ago
Could you link to something? Would be interested in reading more, since I haven't seen this in the news.
130.
▲
by
wfunction
9y ago
To be honest, I'm no fan of oil company CEOs, but I have yet to see anything bad from Tillerson as secretary of state. He seems like a pretty normal secretary of state, and almost like the only sane guy in the administration.
131.
▲
by
wfunction
9y ago
He's doing this because he thinks he's a competent politician who could make the world better? Or because he's looking at Trump and eyeing the throne, realizing everything a billionaire president could get away with?
132.
▲
by
wfunction
9y ago
Ah, yeah, that would explain it. Thanks!
133.
▲
by
wfunction
9y ago
> There was however one moment where Amazon got it right: they recommended to me a book that only a week earlier I had purchased on a whim from an independent bookstore with cash. Creepy good. That is creepy. Any way it might've b
134.
▲
by
wfunction
9y ago
Wow, that's nice to know. Thanks for that bit of info!
135.
▲
by
wfunction
9y ago
Ohh okay, gotcha.
136.
▲
by
wfunction
9y ago
How reliable are hybrid storage drives? I feel like the last one I saw failed pretty shockingly quickly but not sure (it wasn't mine)...
137.
▲
by
wfunction
9y ago
Their biggest problems seemed to just stem from their arbitrary choice to use subdomains instead of subdirectories. If they just put everything on the same domain (/sites/stackoverflow, /sites/superuser, etc.) then they
138.
▲
by
wfunction
9y ago
Because a normal person will "just click the lock in the address bar" on every single HTTPS website he visits to make sure his company isn't MITMing him, right?
139.
▲
by
wfunction
9y ago
You're not describing the attack, you're describing the damage that could be done after an attack has already compromised the system. I'm saying describe the exact attack scenario, i.e. how any of these could be made poss
140.
▲
by
wfunction
9y ago
> If your router or scanner is to be accessible over the network then it needs its own name and it needs to be able to certify that that's its name. Anything else is just too dangerous. A user expects addresses they enter into the b
141.
▲
by
wfunction
9y ago
Er, what "internal CA" are you even talking about? Like imagine my grandma gets Comcast, her internet is not working, and I tell her to go to 10.0.0.1 to see if it shows anything. Suddenly she's supposed to get an HTTPS err
142.
▲
by
wfunction
9y ago
> (1) If you trust them to write secure router firmware you can trust them to keep their HTTPS certificates safe wha? uhm, no. Just because I trust you to do something correctly once that doesn't mean I trust you to keep something e
143.
▲
by
wfunction
9y ago
How is it supposed to get a publicly routable address when it's not necessarily connected to the internet?
144.
▲
by
wfunction
9y ago
As a matter of fact I don't. I'm keeping track of my root certs.
145.
▲
by
wfunction
9y ago
OK, and (1) how are you supposed to trust that the manufacturer won't get hacked one day (or whatever) and the IP address won't change to something external/malicious? (2) what if I don't have an internet connection and
146.
▲
by
wfunction
9y ago
Add an exception for every single internal site ? You know how annoying that gets?
147.
▲
by
wfunction
9y ago
Who is supposed to do this exactly? Me the consumer who buys a router, or me the manufacturer of said router? (router/access point/whatever it's called...)
148.
▲
by
wfunction
9y ago
How is a gateway serving a configuration page at 192.168.1.1 to internal users supposed to eventually get an HTTPS certificate for that address...?
149.
▲
by
wfunction
9y ago
If you trust a company's internal CA then aren't you trusting them to issue certificates for every website and not just their own? Isn't that dangerous?
150.
▲
by
wfunction
9y ago
And why would I trust a company I work at to be able to sign certificates for every single website on the internet ? Especially if I need to install that root certificate on a personal device?
More ›