123 karma · joined December 10, 2021
>AVI [Age Verification App Instances] SHOULD support the generation of Zero-Knowledge Proofs
Maybe I'm not seeing the full picture but as long there is a 'should', the whole thing is worthless. Keep in mind, national states need no implement their own solutions and AFAIK during the pilot phase ZKP was just skipped. Could be for other reasons (was not finished yet) but in the end a 'should' is a 'should' and no 'must'.
Source: https://ageverification.dev/av-doc-technical-specification/d...
It runs super smooth, with the build in 'wayback machine' and 'curated' Arch distro (7.0 zen kernel just dropped a week ago) pretty much bullet proof for beginners or as a daily distro if you want to get stuff done w/o caring much about it - just loving it. On the other hand side you have cutting edge gaming tech like wine/proton staging versions per default, so I'm playing Blizzard games with NTSYNC (the tech from the article) for several months now :) Forgot about most of the flashy default UI though :D
Making the assumption that the same amount of money needed to attack a critical vulnerability is also required to find and fix it.
Lets say we have a project with 100 modules, and it costs us $100 000 to check these modules for vulnerabilities. What is stopping an attacker from spending the same amount of money to scan, lets say 10 modules but this time with 10x the number of tokens per module than the defender had when hardening the software?
I'm playing on wine now for several years now, my deepest respect for the developers involved. Thank you!
[0]: https://www.linuxcompatible.org/story/geproton109-released/
The 2015 statement can be found here:
https://www.scribd.com/document/399594551/2015-06-22-MARK-S-...
https://iprpraha.cz/uploads/assets/dokumenty/sharing_experie...
No issues were found on either of them.
Sure, mistakes happen, but it's hard to take an article seriously when such fundamentals are messed up 8 words into the article...
Also, what is this headline even about? Why the bashing on fintech? I worked for 4 fintechs and communicated with many more, not a single one was blockchain related.
Why is this even on hn?
If you want to read proper criticism of blockchain, read Molly White's essays instead
Its a curated version of Arch, releases drop in with a ~2w delay. It's brutally stable. As I said, I'm running the first installation for almost 2y now, doing my updates (everything comes with GUI support) daily to weekly and I faced one single hick up so far. I resolved it on the most user friendly way, picked the last snapshot during the boot (it automatically created before the update) and it acted like nothing ever happened. BTRFS with Timeshift works like magic for these rare edge cases.
I wonder how it compares to CachyOS, will definitely test it in a few weeks on my laptop
Remote: Yes
Willing to relocate: No
Technologies: Java, Angular, vue.js, node.js, TypeScript, PostgreSQL Azure/AWS, DevOps, Linux (with an interest in: Solidity, Golang and Rust)
E-mail: (check CV or DM me)
Former SE Manager/CTO with a 10y foundation as a full-stack developer, particularly in the financial sector. Equally comfortable leading international/remote teams or diving into hands-on coding, I thrive in roles that demand both technical expertise and strategic oversight.
> Start: Are you a girl?
man, I was not prepared for that lol
Remote: Yes
Willing to relocate: No
Technologies: Java, Angular, vue.js, node.js, TypeScript, PostgreSQL Azure/AWS, DevOps, Linux (with an interest in: Solidity, Golang and Rust)
E-mail: (check CV or DM me)
Former SE Manager/CTO with a 10y foundation as a full-stack developer, particularly in the financial sector. Equally comfortable leading international/remote teams or diving into hands-on coding, I thrive in roles that demand both technical expertise and strategic oversight.
This behavior is peak willful ignorance. Its sold as risk planing by EU entities but after all its just liability planing.
What I mean by that is, for convenience reasons everyone goes along with US Clouds knowing it is technically absolutely possible to access the data but as long the contracts are clean and state they are following EU law its fine. Just in case you can make the point the contract was broken the paper is of relevance.
I'm not super into the topic, but let me give you two niche examples that are definitely not Top 40 material, yet are considered to have a strong identity within their communities.
I guess one of the reasons the game Yasuke Simulator has like 10x more sales (don't pin me down on that) on Steam than the actual game Assassin's Creed: Shadows is its very catchy soundtrack, with lyrics that are funny and strongly aligned with the content. [0]
Another example, not focused on lyrics and from a completely different niche genre, is this jazzy death metal song that was particularly well received, not only because of the intentionally hallucinatory video. One could even argue that the hallucination is perceived as a feature, not a bug. So why shouldn't the same be true for audio? [1]
Remote: Yes
Willing to relocate: No
Technologies: Java (Spring), Angular/TypeScript, SQL, Azure/AWS, Docker, Linux (with an interest in: Solidity, Golang and Rust)
E-mail: (check CV or DM me)
Former CTO/SWE Manager with a 10y foundation as a full-stack developer, particularly in the regulated financial sector. Equally comfortable leading teams or diving into hands-on coding, I thrive in roles that demand both technical expertise and strategic oversight.
A more feasible 'attack' would probably be to just make the private companies black list addresses like they did last week with the bybit hack.
Remote: Yes
Willing to relocate: No
Technologies: Java, Angular/TypeScript, SQL, Scala, Python, Azure/AWS, Docker, Linux (with an interest in: Solidity, Golang and Rust)
E-mail: (check CV or DM me)
Former SE Manager/CTO with a 10y foundation as a full-stack developer, particularly in the financial sector. Equally comfortable leading teams or diving into hands-on coding, I thrive in roles that demand both technical expertise and strategic oversight.
Remote: Yes
Willing to relocate: No
Technologies: Java, Angular/TypeScript, SQL, Scala, Python, Azure, Docker, Linux (with an interest in: Solidity, Golang and Rust)
E-mail: (check CV or DM me)
Software Engineering Manager with a 10y foundation as a full-stack developer, particularly in the financial sector. Equally comfortable leading teams or diving into hands-on coding, I thrive in roles that demand both technical expertise and strategic oversight.
"3. Lack of Vision from Leadership" comes in different flavors.
One scenario is exactly as described: leadership genuinely lacks vision, which inevitably leads to layoffs. Another, is when management is already aware of impending layoffs but cannot talk about it yet. While this may seem nefarious, it often has legal implications that restrict transparency. I've been in the difficult position to continue to manage teams while the companys closure was already known to management. Not allowed to inform people is one thing but trying to emotionally prepare them for whats coming is a different, so the drop may not be as high.
Forcefully reducing server costs by 50% and cutting of contractors is hardly considered a vision. 'A lack of vision' could be the actual message. By the time I knew what is going on and costs got reduced I encouraged the best kind of development within the team: CV-driven-development with vague sprint goals!
You want to make use of the new fancy LLM APIs and play around with it? Sure! Introducing a new tech stack? I can not think of a better idea!
While its far from an ideal scenario, its often better than wasting energy on dead features. My idea was to giving people the opportunity to work on something they find personally meaningful and is driven by self motivation. I hope it helped, at least after speaking to every one personally after the bomb dropped, no one was really surprised.