1,692 karma · joined March 19, 2013
It seems to agree with you. There's nothing I could find named imposta.exe or aryala.exe, but I did find installa.exe.
Of note: Google Earth on web[0] and mobile are unaffected. According to the announcement, the Google Earth Pro desktop app will continue working after the June 25, 2027 cutoff date, but new downloads will not be offered.
[Edit: To answer my own question a little bit, I found a post from September 2025 that compares OsmAnd and Organic Maps (which this project forked from): https://blog.firedrake.org/archive/2025/09/OSMAnd_vs_Organic... .
I can't find anything more recent or for CoMaps specifically, other than auto-created "alternatives" pages. I would absolutely love to hear from anybody who has tried both!]
That said, I can't seem to find any evidence of this particular thing being patented to support my case, so it's probable that I'm wrong.
In those days, RAM was measured in megabytes, not gigabytes. My first Windows 95 PC had a grand total of 16 MB of RAM and a 1.6 GB hard drive.
It ran pretty well from what I recall.
Moldova has every right to the ccTLD. It's just that I find that Markdown files can sometimes get auto-linked to the corresponding (and frequently non-existent) domain, which could catch me out if I'm unaware... and I don't even know of any sites using that ccTLD, hence why I block it.
Nothing personal, Moldova.
(.zip and .mov were terrible ideas, though.)
(Hence all the age verification laws cropping up everywhere, most likely. Their primary goal isn't actually about protecting children.)
[0] https://www.linuxjournal.com/content/nsa-linux-journal-extre...
(Yes, the domain "readme.md" exists. Fortunately, whoever owns it is not using their power for evil and does not have any webserver there... but I'm not risking it.)
If that's the case, then yes, the forms method would be 'better'.
It does, though. See my reply at https://news.ycombinator.com/item?id=48618539 .
The browser basically never forces you into a particular format. You don't even need to do the trick with the form stuff that the sibling was talking about. Consider the following JavaScript:
var xhr = new XMLHttpRequest();
var url = "http://localhost:12345/endpoint";
xhr.open("POST", url, true);
xhr.setRequestHeader('Content-Type', 'multipart/form-data');
xhr.send('{"hello":"world"}');
No trickery required, it just does it.[Edited to illustrate my point better.]
I've seen a web application that did, in fact, check the Content-Type header to make sure that "application/json" was there - but it didn't check that the header value started with that. That meant that setting the header to "multipart/form-data; boundary=application/json" was enough to bypass a CORS preflight!
An attacker might use JavaScript to set a "multipart/form-data" Content-Type (thereby bypassing the otherwise required OPTIONS preflight), but send JSON in the request body. Unless your web application specifically parses the body based on the Content-Type (web servers don't do this for you), then you wouldn't detect that.
For example, a POST request with a Content-Type of "text/json" would not be allowed to be sent to third-party hosts without an OPTIONS preflight, but one with a Content-Type of "multipart/form-data" would be allowed and wouldn't be stopped by CORS at all, even to third-party hosts.
(And, of course, if your endpoint just assumes JSON without strictly checking the Content-Type, then congratulations, you've just allowed any website to POST to you, with no user action required.)
I do have a question that the article doesn't seem to attempt to answer, though. The article says (paraphrased in my new understanding) that any spectra which makes the cones in your eyes react the same way will result in seeing the same colour. Do we know of any examples of this?
(Colour-blindness seems like an obvious example; I'm curious though if there are any examples of two common scenarios where it can be demonstrated that there are different spectra in each, and yet most people will see them as the same colour.)
My understanding is that it is impossible to unlock the bootloader on a new recent (Android 7+ at least; possiblt earlier) Android phone until it has connected to the Internet. After that, the ability to unlock the bootloader is permanent.
(At least this is what my memory is telling me. I could be mistaken, but that's what I remember.)