HNHacker News
TopNewBestAskShowJobs

0xCMP

2,707 karma · joined December 31, 2014

submissionscomments
0xCMP··on Claude’s memory architecture is the opposite of ChatGPT’s
Just because it's not independent and autonomous does not mean it could not be intelligent.

If existing humans minds could be stopped/started without damage, copied perfectly, and had their memory state modified at-will would that make us not intelligent?

0xCMP··on Claude’s memory architecture is the opposite of ChatGPT’s
One has a more obvious route to building a profile directly off that already collected data.

And while they are making lots of revenue even they have admitted on recent interviews that ChatGPT on it's own is still not (yet) breakeven. With the kind of money invested, in AI companies in general, introducing very targeted Ads is an obvious way to monetize the service more.

0xCMP··on The MacBook has a sensor that knows the exact angle of the screen hinge
I believe the initial tweets/demos have some calculation errors which were later corrected.
0xCMP··on Blogs used to be different
We've collectively learned that besides the OPSEC concerns most of the "diary" type posting is very boring to consume (most people are boring) and therefore it's pretty likely your posts aren't that great either.

To make them interesting you must put effort, which we see some people doing, but anyone who has done it knows how the amount of effort needed detracts from the actual meaningful part of experiences/life/relationships.

In a way blogs are the worst medium now for this: Hard for people to consume casually, hard to meaningfully control the audience, and constantly scraped/archived by 3rd-parties. Most who still want to do this more causal, diary-type posting are better served by a private Instagram and posting occasionally, but mostly focusing on low-effort Stories. The key part/fix is the ephemeral nature of the majority of posts/content.

And there you see exactly how/why most people end up doing exactly that.

0xCMP··on Spiped – secure pipe for SSH, SMTP, etc.
Ah okay, yea I wasn't sure if I remembered that correctly or not. I double checked it was using OpenSSL and assumed.
0xCMP··on Spiped – secure pipe for SSH, SMTP, etc.
iirc spiped uses TLS/OpenSSL for securing the connection, the symmetric key avoids the key-exchange and worrying about certificates, and therefore is better capable of efficiently using the connection than SSH by itself.

Because it's much simpler it's also a good way to expose a system to the internet, although Wireguard with a PSK is a very similar and possibly superior solution.

0xCMP··on Mosh Mobile Shell
Agreed. In this company the IT team was being spread thin without their budget being increased so Tailscale was the obvious solution here, but a non-starter for them. "We already pay for a VPN. Let's just use that."

We managed to survive with our solution for a while thanks to it being super simple and "free" besides the instance running wireguard. Last I heard (I left), they shut that all down a few years ago.

0xCMP··on Mosh Mobile Shell
I used to heavily use Blink Shell, but a combination of changes to their application and also that ShellFish + Tailscale is so easy and reliable made me switch entirely to ShellFish as well.

I also enjoy the ability to quickly launch/manage Digital Ocean instances useful sometimes as well.

0xCMP··on Mosh Mobile Shell
And really they didn't even do anything special. This was a killer reason we loved Wireguard at our company and pitched heavily to keep it around to he company who acquired us and wanted us to switch to their VPN Appliance instead.
0xCMP··on Notion releases offline mode
Once iOS 26 drops Apple Notes will be much-much more useful with the combination of supported linking between notes and supporting Markdown.

Before it rapidly became untenable as a place to actually store my notes. I use it more as a "temporary note" that will be moved to the proper place later.

0xCMP··on PyPI Preventing Domain Resurrection Attacks
One of the founders is doing exactly that: https://foks.pub/

Thread with comments announcing it: https://news.ycombinator.com/item?id=44520419

0xCMP··on End well, this won't: UK commissioner suggests govt stops kids from using VPNs
Yea doing it "right" and "yourself" by setting up your own server(s) is some work, but not a lot.

Downloading an app to your phone is easy. And it's crazy cheap for most of these services. If not free and they mine what you're visiting or use you as a node in their scraping system.

0xCMP··on 95% of generative AI pilots at companies are failing – MIT report
Yes, I wish it was written "Pilot Programs" or something.
0xCMP··on ADHD drug treatment and risk of negative events and outcomes
I've also heard something similar. That maybe the reason so many are diagnosed today[0] is they were self-medicating via smoking.

[0]: Which requires it to be affecting your life -- NOT that you actually do or don't have it and are dealing with it okay. Diagnostic criteria is that it must be hindering you in a job/school/relationships/etc.

0xCMP··on Journaling using Nix, Vim and coreutils
Yea I don't see Nix doing much here particularly, but for me I typically would do something like this to make the system as consistent as possible over a long period of time without being actively maintained.

I guess this does ensure the key `journal` command works exactly the same because the dateutils binary will stay locked to the version in the `flake.lock`.

I would have assumed that nvim would also be locked because that's where I would expect more possible breaking changes with the existing special config.

With little tools/projects like these I could easily see months-years before it would get any active attention from me again (or simply I wouldn't be using it; so it doesn't matter).

0xCMP··on The Missing Protocol: Let Me Know
I want this to exist, but so few would adopt it that would make it mainstream/normal to use because a lot of those places rely on getting your email to tell you about other things.

This would be fairly limited to blogs which have no intention of writing a newsletter or consistently enough to merit subscribing via RSS.

Although I'd love for everything I just said to turn out to be false.

0xCMP··on How I use Tailscale
I don't see why people don't just run their own CAs more for private stuff.

If exposed for others I think the wildcard cert is also what I did, but most tutorials have you issuing certs via ACME for internal or local-only things which doesn't even need to happen.

I personally run my own CA and even setup an ACME server and internal DNS. Nobody knows what I am doing there.

0xCMP··on Emailing a one-time code is worse than passwords
I do something similar with KeePass because a lot of my 2FA is stored on my YubiKey. When I register with YubiKey I also register with a KeePass vault intended as a "break-incase-of-emergency". So rarely opened and with lots of security options set to max.
0xCMP··on Converting existing users to systemd-homed managed users
The encrypted volume has an encrypted copy of the `~/.identity` file in it's metadata fields.

The same key which encrypts the volume decrypts the metadata, but they use different IVs.

You could assume that most systems the key would be secured with the TPM so this won't be much of a big deal to the user, but otherwise when they try to login it would prompt for this password first.

0xCMP··on Coffeematic PC – A coffee maker computer that pumps hot coffee to the CPU
That is how it works. There is the water which goes outside pumped through pipes on the floor of the pool like in-floor heating.

That is pumped so it cools down the water going through the computers.

It has gone through several revisions plus complications with wanting to heat up solar panels too.

0xCMP··on Visa and Mastercard are getting overwhelmed by gamer fury over censorship
I guess you mean users would need to manually send money to the company's E-mail/Phone on Zelle right? Then it's up to the merchant to know if the payment has been received.

Cause I don't think there is any kind of way to buy things with Zelle and possibly it would be a TOS issue.

0xCMP··on SQLx – Rust SQL Toolkit
I know it's annoying (and apparently there is a solution for generating the required files before the build), but in these kinds of situations Go and Rust are great for doing a static build on the system and then copying into a scratch image.

Versus Python and Node often needing to properly link with the system they'll actually be running in.

0xCMP··on It's time for modern CSS to kill the SPA
This doesn't seem fair to say. Linear is special even among SPAs; it's by far not the norm. No one said "ban SPAs and remove javascript from the browser".

Linear's speed comes from being "offline-first", but I challenge you to name almost any other product in common usage that does it that way. It's just not common. On the other hand if I want to buy tickets I'd rather most of that website be SSR and do SPA where you actually still need it. Or forums, news sites, blogs, and informational sites.

There is so much out there that would be better developed with SSR and then use CSS to make it feel SPA-like than to actually be a SPA.

0xCMP··on Cerebras launches Qwen3-235B, achieving 1.5k tokens per second
> MemoryX has lower latency, but also far lower bandwidth
0xCMP··on Postgres LISTEN/NOTIFY does not scale
Agreed, I am struggling to understand why "it does not scale" is not "we used it wrong and hit the point where it's a problem" here.

Like if it needs to be very consistent I would use an unlogged table (since we're worried about "scale" here) and then `FOR UPDATE SKIP LOCKED` like others have mentioned. Otherwise what exactly is notify doing that can't be done after the first transaction?

Edit: in-fact, how can they send an HTTP call for something and not be able to do a `NOTIFY` after as well?

One possible way I could understand what they wrote is that somewhere in their code, within the same transaction, there are notifies which conditionally trigger and it would be difficult to know which ones to notify again in another transaction after the fact. But they must know enough to make the HTTP call, so why not NOTIFY?

0xCMP··on uBlock Origin Lite Beta for Safari iOS
Honestly, I was using Orion as a daily driver for a few months now and it's crazy unreliable in my experience. It also somehow uses more RAM than Chrome/Brave doing the same things, but with lots of tiny incompatibilities.

I actually just switched my self back to chrome/brave for what I was using Orion for.

0xCMP··on Locally hosting an internet-connected server
I think both are great options. Personally I do split-dns so I can access things "directly" while using Tailscale and via Cloudflare Tunnel when I am not.

I also selectively expose via the Cloudflare Tunnel. Most things are tailscale only.

0xCMP··on Locally hosting an internet-connected server
In this case they're re-exposing the server(s) to the public internet, but their actual IP Address is still very much hidden behind the Wireguard connection to the VPS.

The IPs they're talking about exposing are ones which are on a VPS, not their home router, or the internal IPs identifying a device in Wireguard.

0xCMP··on Locally hosting an internet-connected server
I haven't actually used Funnel, but I do use Cloudflare Tunnels + a VPS.

What I've done is that the VPS Nginx can talk over Tailscale to the server in question and the Cloudflare Tunnel lets those not on Tailscale (which is me sometimes) access the VPS.

0xCMP··on A proposal to restrict sites from accessing a users’ local network
IIUC this should not break redirects. This only affects: (1) fetch/xmlhttprequests (2) resources linked to AND loaded on a page (e.g. images, js, css, etc.)

As noted in another comment this doesn't work unless the server responding provides proper CORS headers allowing the content to be loaded by the browser in that context: so for any request to work the server is either wide open (cors: *) or are cooperating with the requesting code (cors: website.co). The changes prevent communication without user authorization.

← PreviousPage 2 of 34Next →