HNHacker News
TopNewBestAskShowJobs

ananonymoususer

227 karma · joined June 30, 2018

submissionscomments
ananonymoususer··on Are Package Registries Holding Open-Source Hostage?
Of course you COULD just pay them a reasonable fee for their service.
ananonymoususer··on About iSH’s pending removal from the App Store
iSH is awesome. I've been using the beta for about a year (or more) and have provided some feedback to Theodore a few times. This eventuality was almost certain because of the App Store restrictions that have been in place since before the iSH project was launched. In this way, Apple sucks. They have complete control over what an app can and cannot do. There is no alternative (besides jailbreaking) to the Apple App Store for iOS apps. This is part of the deal that you should know about when you buy an iOS product.
ananonymoususer··on What “Roguelike” Meant
This article seems PC-centric. Apparently the author is too young to know about "rogue" for CP/M or "hack" for Unix. Both of those were in the 80's and predate everything he mentions by at least a decade.
ananonymoususer··on DM41x: a modern take on the HP-41CX
I wonder if it would run any "synthetic" programs. https://www.perlpower.com/prisma/prisma-1984-ppc.pdf

My guess is no since it probably does not emulate the original microcode.

ananonymoususer··on Cloudflare keeps sending emails over a year after account was cancelled
Cloudflare isn't the only one with this sort of problem. I continue to get email from FedEx every month instructing me to update my credit card information. The information they have on file is from a card that expired over 10 years ago, and I closed my account with them 12 years ago. I called them last month to ask them why they continue to send me these emails, and asked them to stop. Their response was that they cannot stop the emails. Even when I pointed out that my having no business relationship with them, and them not offering a way to opt-out is a violation of the "Can Spam" act, they shrugged.
ananonymoususer··on Conditions of ACME's Unconditional Guarantee
Oh, and another good story from when I still had the same boss. A few years later I thought I would prank my office-mate (and show how easy it was to spoof email headers). This was back in the days with SMTP didn't have any security. From a hallway computer (not directly traceable to me), I composed a "You're Fired!" email from my boss to my office-mate. My office-mate had an east-European surname that was easy to misspell and I did. So the email bounced back to my boss and my office-mate never saw it. My boss knew right away who was responsible. He laughed.
ananonymoususer··on Conditions of ACME's Unconditional Guarantee
All very true! My story is from about 10 years before Randal's, but it was after the CFAA was passed so I guess I dodged a bullet.
ananonymoususer··on Conditions of ACME's Unconditional Guarantee
Just to be clear, I obtained the passwords (including root) with "crack", but I NEVER used them. I did not ever attempt to log into any account that I was not authorized to use. All I did was to notify the actual administrator of the system about the security issues. The issues being both that even through "shadow passwords" was working properly, one could still obtain encrypted passwords by using "ypcat passwd", and that some users (including him) were using insecure passwords. The user who panicked and called my boss had just assumed that I accessed his Windows account. Oh, and there were never any hard feelings between us after that. We are still friends today.
ananonymoususer··on Conditions of ACME's Unconditional Guarantee
Don't sweat it Cliff. My kids have a low opinion of me too. Love your work BTW!

Here's a good one for you about the younger generation: “The children now love luxury; they have bad manners, contempt for authority; they show disrespect for elders and love chatter in place of exercise. Children are now tyrants, not the servants of their households. They no longer rise when elders enter the room. They contradict their parents, chatter before company, gobble up dainties at the table, cross their legs, and tyrannize their teachers.”

― Socrates

ananonymoususer··on Conditions of ACME's Unconditional Guarantee
I read this book shortly after he wrote it. I was a junior engineer at a big company, and the final chapter (on humans being the weakest link in computer security) inspired me to run "crack" on the password (shadow) file of one of our networked Sun workstations. (I actually wrote some code to re-create the shadow file from the output of ypcat because we were running NIS.) Crack managed to obtain about 20% of the users passwords, including root. I wasn't an admin on that network, so I informed the admin and his reaction was that he did not care if I had admin on his network. (I ran a few others already.) One of the cracked user passwords struck me as funny so one day in the hallway I casually asked what that word meant (to the owner of the password). The terror-stricken user froze and asked me why I wanted to know. Instead of recognizing the issues associated with using a dictionary word for a password, he went and complained to my manager. I got called on the carpet for "hacking his windows account." (Apparently he used the same password everywhere.) Fortunately my boss had a good sense of humor and nothing came of it. This was before the company even had a computer security policy. A year or two later, doing what I did would become a fire-able offense.
ananonymoususer··on Conditions of ACME's Unconditional Guarantee
Cliff is a funny guy. https://en.wikipedia.org/wiki/Clifford_Stoll
ananonymoususer··on RBG – An Example for Our Times
My politics are 180 degrees from hers, but I respect that she could put human relationships above politics. We need more of this.
ananonymoususer··on Titan II Missile Explosion in Arkansas – 40 Year Anniversary
Arkansas was never in danger. I heard stories about this incident from a missileer I worked with. The issue was that as the fuel leaked out of the tank, the structure of the missile was no longer able to support its own weight. The nuke was not "armed" and had lots of fail-safe devices to ensure it would never go off. The commander was severely reprimanded for sending in the two poor (unqualified) souls who perished.
ananonymoususer··on Immortal Beloved (1812)
This was the basis for the 1994 film: https://en.wikipedia.org/wiki/Immortal_Beloved_(1994_film) Very well done movie with a terrific soundtrack.
ananonymoususer··on YouTube please give back option to stop seeing an ad
Where is the tolerance?
ananonymoususer··on A Tech Star Blackmailed
Tragic, but I wonder why anyone would consider bringing sensitive data on their phone or laptop on such a trip? If not the Iranians, the USCPB would almost certainly grab a copy of it all upon his return.
ananonymoususer··on Police Want Your Smart Speaker–Here's Why
Fortunately for most, the legal system in the United States does not (usually) require us to prove innocence.
ananonymoususer··on Back to the Future: Unix Wildcards Gone Wild (2014)
Many tools allow the use of the "--" argument to stop argument parsing. It's a clumsy work-around, but it's better than nothing.
ananonymoususer··on Chromium's Impact on Root DNS Traffic
That is just not true. It may be the case if the key itself is compromised, but consider that you may have many different accounts scattered on different servers. Once one of them is compromised, the attacker now has access to every other account because they are all chained together.
ananonymoususer··on Chromium's Impact on Root DNS Traffic
And for those who don't understand why this is a bad thing, I will present my own use case. I run pi-hole at home and frequently work from there for another company. That company has provided me with a laptop that uses Cisco's DNS "Umbrella", which is some sort of security feature: https://docs.umbrella.com/deployment-umbrella/docs/point-you... Because my company laptop doesn't pay attention to the DNS servers recommended by DHCP, and ignores the local domain search TLD, if I try to ssh into a machine on my local network (without a FQDN) from the company laptop, it replaces the local search domain with the corporate domain, then does the lookup, and gets an A record from Umbrella that is not on my local network. It makes the ssh connection and (surprisingly) reaches an ssh server, which asks me for my password. The login fails, and my password (in plain text) could very well have been harvested by the ssh server on the catchall host. Now you are going to tell me that I shouldn't use ssh passwords, and should instead be using RSA keys for ssh. Regardless of what the NSA tells you, THIS IS ALWAYS A BAD IDEA because once any account is compromised, ALL OTHER ACCOUNTS with locally stored keys ARE ALSO COMPROMISED.

Sorry for the rant, but wildcard catchall DNS is a REALLY BAD THING.

ananonymoususer··on America is finally coming around to Starship Troopers
The author obviously did not read the (Heinlein) book.
ananonymoususer··on YouTube deleted an electronics repair channel [video]
Google will never post a list of clear rules. It would restrict their ability to take down content that goes against their political ideology. Facebook and Twitter are the same in this respect.
ananonymoususer··on YouTube deleted an electronics repair channel [video]
Same goes for Mark Twain.
ananonymoususer··on Sweden Has Become the World’s Cautionary Tale
Infection rates are climbing everywhere because of increased testing, but most of the latest infections are of younger people. Thus many are symptom free or mild, and mortality rates have continued to fall since the peak in April. Look carefully at what the news reports say, and also consider the political agenda of the source. (The next POTUS election is four months from now.)
ananonymoususer··on Ad blocking with Raspberry Pi and Pi-hole
Probably lightweight enough for the free EC2 tier too!
ananonymoususer··on Ad blocking with Raspberry Pi and Pi-hole
Pi-Hole is a great project, and it's not limited to running on a Raspberry Pi either. I've got it running as a (x86-64 Ubuntu) VM in the same hypervisor that hosts my firewall. It's lightweight, super responsive, and provides great statistics on what it is doing.
ananonymoususer··on Cloudflare silently deleted my DNS records
The OP made it clear that he used a gmail account for contact so there was no excuse for him to have not received a message regarding the deletion of his domain records.
ananonymoususer··on Some Boeing 737s can't land on some runways with true heading 270 [pdf]
Background for the post above: https://xkcd.com/327/
ananonymoususer··on Early Color Television
While reading this, I came across mention that Los Angeles was operating with a 50Hz AC grid in the 1940s. This was very surprising to me because 20 years after the switch (in 1948), I began to tinker with electronics, and I never encountered any legacy 50Hz appliances. Here's an interesting history of the issue: https://gizmodo.com/before-1948-las-power-grid-was-incompati...
ananonymoususer··on Ask HN: Are you contracting on the side (while working full time)?
I have never had to seek work. It has always been from people I knew or people who knew my coworkers. If one has good skills, the work will speak for itself and lots of repeat business/new customers will come knocking on the door.
← PreviousPage 3 of 5Next →