HNHacker News
TopNewBestAskShowJobs

5ilv3r

698 karma · joined October 4, 2015

I get a lot of downvotes.
submissionscomments
5ilv3r··on Ted Nelson on What Modern Programmers Can Learn from the Past [video]
I believe this is called "being mechanically minded". If you understand the physical rules and the components, you understand the inner workings. Good mechanics have this. Bad mechanics don't. Sadly being an auto mechanic pays little, but the skills are obvious in good programmers too.
5ilv3r··on Intel Has a Big Problem
Lots of Intel apologists in this thread. I for one am excited by the idea of healthy competition in the processor market.
5ilv3r··on Skyfall and Solace vulnerabilities – A follow up on Meltdown and Spectre?
So the register says it's a hoax because their chip contacts won't confirm it. However, those chip contacts are probably a little grouchy about the last coordinated boondoggle, so I doubt they would admit to or deny anything at this time.
5ilv3r··on Neopets HTML Guide
Ah neopets.... your character limits forced me to ditch frontpage and actually learn how to make html with notepad.
5ilv3r··on Harvard Study Shows Why Big Telecom Is Terrified of Community-Run Broadband
ecommerce retailers would peer with them directly and the entertainment networks would then be left holding nothing.
5ilv3r··on The day I accidentally killed a little boy
Facebook is notorious for making those connections impossible when they are truly needed most. It's a marketing tool with aggressive filtering, not a family message board.
5ilv3r··on James Damore has filed a class action lawsuit against Google
You will never achieve social justice with hate.
5ilv3r··on James Damore has filed a class action lawsuit against Google
Maybe this will even lead to something good for everyone, like more ethical diversity practices.
5ilv3r··on James Damore has filed a class action lawsuit against Google
I did, it asked me. Was I being given a "personalized" application perhaps?
5ilv3r··on James Damore has filed a class action lawsuit against Google
It's a very good argument. Behavior that is ok for one group should be ok for another group, and viceversa. That is a truth of equality.
5ilv3r··on James Damore has filed a class action lawsuit against Google
Ethnicity and gender are on their job application form.
5ilv3r··on Blizzard's Battle.net Updater Installs Root Certificate
My argument was that centralizing trust as a service is unsustainable. That's all.
5ilv3r··on Blizzard's Battle.net Updater Installs Root Certificate
They could. That would be a bit tricky though since http libs usually use the shared system cert store.
5ilv3r··on Blizzard's Battle.net Updater Installs Root Certificate
A root lets you make a valid cert for any domain. It can be used to create a man-in-the-middle attack if paired with a proxy.
5ilv3r··on Blizzard's Battle.net Updater Installs Root Certificate
This is how the system was meant to work. The irresponsibility of the centralized CA infra has been known for a little while now, and it's time to let the users see how shaky this trust model really is. Let them have certs that are actually made by the companies they trust instead of some stupid third party.
5ilv3r··on Chrome Apps are dead, as Google shuts down the Chrome Web Store section
Local seems to be the next frontier. As in, a storefront. What's old is new again (again)!
5ilv3r··on Chrome Apps are dead, as Google shuts down the Chrome Web Store section
Native means it uses the os rendering engine and widgets. Electron is not that. I don't know when web devs decided they could put a website in a box and call it native, but it's not very nice.
5ilv3r··on Virtual Keyboard Developer Leaked 31M Client Records
I agree completely. One must know their tools before they can use them safely. Ask anyone who has used a saw.
5ilv3r··on macOS High Sierra: Anyone can login as “root” with empty password
No, not always. I just mean that sudo is a (very very popular) hack.
5ilv3r··on macOS High Sierra: Anyone can login as “root” with empty password
Uhg, ok I forgot some people don't know the code. The old adage is "On your first day as the new sysadmin, change all the root passwords". The idea is that a SECURE root is good, possibly better than no root (which is sort of a hack in itself). There are best practices for root passwords. Things like length, composition (no dict words), disabled for remote access, and care in who is allowed to have it.

Simply pretending root does not exist is a rather new idea and is not best practice. It's only for convenience.

5ilv3r··on macOS High Sierra: Anyone can login as “root” with empty password
Do you have any good history on this you can link to? Sounds very interesting.
5ilv3r··on macOS High Sierra: Anyone can login as “root” with empty password
The problem is that this is not a zero day in new technology. They made a jr sysadmin mistake. As a company who wants a reputation for good security, that is not acceptable.
5ilv3r··on macOS High Sierra: Anyone can login as “root” with empty password
Do you live in some horrible place where your neighbors will throw gas on your burning house unless you can quickly and quietly get the fire department there first, to put out the fire that the FIRE DEPARTMENT started?

Dude. That was your example.

5ilv3r··on macOS High Sierra: Anyone can login as “root” with empty password
Oh my goodness I totally forgot they had to build it first! /s
5ilv3r··on macOS High Sierra: Anyone can login as “root” with empty password
That may be true for cisco and juniper where upgrades must be carefully rolled out across globally distributed critical infrastructure, but this is APPLE. They need no such help. They can push to everyone, now, and it will be fine. Forcing their hand is safer than trying to hide a flaw a 3 year old could find on accident.
5ilv3r··on macOS High Sierra: Anyone can login as “root” with empty password
Time and time again we have been shown that the way to a company's heart is through it's PR department. This is a dev complaining to Apple like a lunchgoer would complain to Mc D's about a bad burger. Expect more of it.
5ilv3r··on macOS High Sierra: Anyone can login as “root” with empty password
Or he cares more about doing the right thing than about following best practices designed to protect the guilty under the guise of helping users.
5ilv3r··on macOS High Sierra: Anyone can login as “root” with empty password
You are comparing an arsonist to a fire department.
5ilv3r··on macOS High Sierra: Anyone can login as “root” with empty password
If setting a root password is a hack, I'm Donald Duck.
5ilv3r··on Facebook users in Romania see content related to street protests reviewed
The US has no problem doing that as a service for other countries...
Page 1 of 13Next →