HNHacker News
TopNewBestAskShowJobs

bierjunge

441 karma · joined January 16, 2019

submissionscomments
bierjunge··on Every search bar looks like a URL bar to users
10-15 years ago a lot of people were saying, that the "digital native" generation will be tech savvy and will surpass everyone with their IT knowledge.

Yeah, right. A few months back in 2021 I was asked how to "make an app on the phone". Not FOR a phone, ON a phone, the complete development only using a phone. WTF?

And no, it wasn't a 12 year old kid, it was a 21 year old guy with a Bachelor of science degree.

bierjunge··on Typography of 2001: A Space Odyssey (2014)
A designer friend explained it to me with this image: https://i.redd.it/38jjcgaqu1g11.jpg

Yes, the font you use to communicate with others matters. It's like the tone of your voice and your body language in a personal conversation.

bierjunge··on Coinbase Phishers Steal One-Time Passwords
Yeah, because Cisco is and always was trustworthy and never put hardcoded passwords and backdoors in their hardware. /s
bierjunge··on Google employees allowed to sue for bans on talking about work issues
https://web.archive.org/web/20211012222546/https://www.sfchr...

Fun fact: no paywall for EU users

bierjunge··on Farm equipment security at DEF CON 29
> "Why would anyone want to interfere with my equipment?"

Because it's interesting and "because we can". It's a challenge without any other motivation besides curiosity.

But lets say some ransomware outfit discovers farmers as their niche, because the security barrier is relatively low and it's a time sensitive business. Your crops are ready to harvest, but your equipment is not starting until you pay the ransom? What can you do then? Waiting and letting the crops rot is not an option, renting hardware from others can be difficult/expensive/impossible, so the most would pay the ransom. I haven't heard of attacks targeting farmers/farm equipment in particular, but it could be a real problem in the future.

bierjunge··on A bit of math around Cloudflare's R2 pricing model
I have a small Hetzner Cloud VPS with 20TB egress 100Mbps included for about 3€/month. The prices for new instances got up a few weeks ago, because of IPv4 prices, but they are still about 4€.

It's not unlimited, but 20TB is more than enough for the most use cases.

bierjunge··on Former NSA Hacker Describes Being Recruited for UAE Spy Program
Nah, then they will try to get the information over other channels. Take the laptop and gift it to someone over craigslist or a similar site. It will take them some time to realize they are not monitoring you, using a persona, but a soccer mom from the suburbs who is really into social media and cooking.

It won't make anything more secure, but it can buy you some time and waste the attackers resources.

bierjunge··on Germany’s no-emotion voting guide surges despite campaign of personalities
We also had SPD/FDP with Helmut Schmidt as chancellor between 1974 and 1982.
bierjunge··on Username ending with MIME type format is not allowed
Yes, don't do that, name the kid "null" and see the world burning.
bierjunge··on Apple explicitly asks employees to merge their personal and work accounts
Yes most of that would be illegal, except you gave them consent in your contract or other legal document.

This is also exactly why I always check all the paperwork for "personal usage" of the devices and services provided by the company (email and stuff). If there is nothing about it, I send my mom a random cat picture from my work email (always outside of office hours, in other cases it could be a contract violation). Why? Because if it's not forbidden, you are implicitly allowed to and after at least one private message was sent by the account, it's legally like a private account.

If your employer snoops in the account, it's a massive privacy violation (Datenschutzgesetz and DSGVO/GDPR) and a strong case in employment law. Never needed it, but it's better to be safe than sorry.

bierjunge··on Ask HN: Development Trends in 2025-2030?
This will only happen if Fuchsia replaces Android.
bierjunge··on Freshly disclosed vulnerability CVE-2021-20090 exploited in the wild
COVID-20 or COVID-19-rev-B would be great names for that.
bierjunge··on Ask HN: How do you chill your mind after work?
This.

I try to get on my BMX as often as possible after work. Either I'm completely concentrated on riding or there will be pain. After 30-60 minutes everything work related is gone.

Also, if you are not on-call, disable work related stuff on your phone (slack, work email, etc.).

One more thing which I consider helpful is using the last 5-15 minutes in the office to write down ideas or problems related to work which I can pick up the next day.

bierjunge··on Man dies of a heart attack after minors swatted him over his rare Twitter handle
Yes, you are right, the military rifle is only for the case of war or the mandatory military training. It's also wrong to believe that there is a military grade gun in every Swiss household, most people leave their rifle at the military or in one central weapons depot run by the state. I'm not sure, but aren't you allowed to shoot it at a gun range? (as Sportschütze) A friend from Zürich was talking about this topic, but my memories about this conversation are a little blurry.

From what I've heard it's way easier to get a gun permit in Switzerland than here in Germany and the Swiss are allowed to have guns you can't even dream of here (I'm talking about stuff like the semi auto H&K MP5, AR-15/AK derivates, etc.).

bierjunge··on Man dies of a heart attack after minors swatted him over his rare Twitter handle
> What we do in the civilized world is we don't allow everyone to have assault rifles at home.

It's not so uncommon to have a assault rifle from the military or other guns at home in Switzerland and their numbers are way lower than in the US [0]. It's not about having guns, it's about proper training and not giving weapons to psychologically unstable people.

[0] https://en.wikipedia.org/wiki/List_of_countries_by_firearm-r...

bierjunge··on Publicly Available Standards
I feel your pain. Most projects I work on are medical software, often connected to hardware. Getting this stuff certified is impossible without paying thousands of euros for the standards and then you pay even more for a few people who judge if you did it like the standard says.

But maybe the next project will be outside of the medical field.

bierjunge··on Google is capping Meet’s group video calls to an hour for free accounts
PM: "Why did we miss the sprint commitment?"

AI (in Samuel L. Jackson's voice): "Legacy code motherf****r"

This could be awesome.

bierjunge··on EU fines German car cartel €875M over clean emissions technology
Yeah, it's getting even better.

> VW will need to pay the bulk of the penalty, €502 million, despite being granted a 45 percent reduction for having cooperated with the investigators.

WTF? 45% reduction for cooperation? Which cooperation? They even tried to bullshit their way out during the investigation.

> BMW is fined the remaining €373 million.

Seems ok. Or not? Didn't they mention a third company?

> Daimler got total immunity as it was the first participant in the cartel to denounce its existence.

1. Get into a illegal cartel 2. Make a lot of profit by breaking the law 3. Snitch, make your competitors pay millions and keep your illegally acquired money

It's a joke and it will not get better anytime soon. BMW, Daimler and VW have too much influence on the german politics to be penalized in a substantial way. Too many jobs are dependent on them, not only directly in their offices, service stations and factories, but also the whole supplier market.

bierjunge··on Evidence found on a second Indian activist’s computer was planted, report says
Lichtenstein, Andorra, Monaco, San Marino, Luxembourg. Can I have a cookie now?
bierjunge··on Copilot regurgitating Quake code, including sweary comments
The Golang example would not even compile, because `sql` is not imported.
bierjunge··on Ask HN: What difficult problems have you or your company solved using AI?
First and most important rule of technical support I've learned: "All users lie, there are no exceptions"
bierjunge··on I made 50k calls to explore the telephone network
Companies in Germany mostly have a local number from the area where they are physically located. If a company has multiple sites around the country, they mostly use a number within their HQ area or they get a service/freephone number redirecting to their call center.

Bundesnetzagentur (the regulatory agency for telecommunication, electricity, gas, etc.) has very strict rules which are enforced and the fines can be very expensive, so nobody tries to find a loophole in the system.

How strict are they? Oh boy, they can be worse then your worst nightmare. About 10-15 years ago, a few friends noticed stuff going missing from the shed (it was beer, so it was very serious). They ordered and installed a cheap wireless camera from china and started recording. A few days later they got a letter from Bundesnetzagentur stating they use a restricted frequency and have to stop immediately or they will be fined X000€ (don't remember the exact amount, but it was four figures so a lot of money for students. Also, pretty high for a first offense). Yes, it was the camera which was using some weird frequency band. But how did the Bundesnetzagentur found them? They were wardriving around the city and checking for unusual signals. Literally a few guys in a van filled with RF equipment driving through the city and looking for suspicious stuff [0].

They probably were driving their laps and checking security, since we have a few high profile institutions here, but got a few drunken university guys with a cheap webcam from the internet.

[0] https://de.wikipedia.org/wiki/Bundesnetzagentur#/media/Datei...

bierjunge··on “Older unlisted videos will be made private unless you opt out”
My old university prof used to say: "How many Germans do you need to change a lightbulb? One, because we are efficient and don't have time for humor." (German university + German prof)

Yeah, the Austrians are saying that, but here in Germany we say the same about them.

bierjunge··on No one likes ads. So let’s do something about it
You need to be a EU citizen or live in a EU country. Then it's pretty easy, just write a email stating that you want to have all data they collected about you including what they shared with which company. Alternatively you can claim, that they violate some paragraph from GDPR and they need to check the claim and give you an answer.

In both cases they have a legal requirement to answer in a few weeks (it's regulated in the GDPR itself).

A different option is to complain directly to your countries data protection office, this puts more pressure on the company, but it's mostly slower.

The European Union and the European Commission have a lot of resources about this topic:

https://gdpr.eu/compliance/

https://ec.europa.eu/info/law/law-topic/data-protection/refo...

bierjunge··on No one likes ads. So let’s do something about it
Nah, this won't work, because too many people just don't care.

The whole situation we are in right now is a arms race between the ad industry and users. Ads are going more and more sophisticated and intrusive (fingerprinting, tracking, autoplay for video/sound, etc.) which causes the ad blockers to get more complex and block the new techniques from the ad makers. This leads to even more shitty tech in ads and so on.

I really don't mind to have some (non intrusive) ad banners on a website if they just show me some stuff I could buy. But no, they can't play nice and try to change my position from potential customer to a product which they can sell and this is not ok.

The only defense right now are ad blockers and GDPR complaints. You see some sketchy tracking stuff? Send the website owner a GDPR complaint. Bind their workforce to respond to the complaints more and more (they are obligated to answer, even if your claim is BS) and after countless hours and $$$ they maybe get the idea. I've done it with a few websites and the ad load and amount of trackers decreased. Was it legal? Yes. Was it nice? Nope. Will I do it again? Oh yeah, I will do it until these people start to be good citizens on the network and stop fucking around with my data.

bierjunge··on How Hard is your Email to Say? (2020)
I've pushed it even harder with a gTLD ('.jetzt' -> 'now' in German). My email looks like ${firstname}@${some-german-word}.jetzt and I never had a problem with German speaking people. Ok, some people, especially state officials, are asking if it's a joke, because they never heard about gTLD's, but it's pretty rare.

I wouldn't use it outside of German speaking regions and that's why I still have a ${lastname}${firstname}@gmail.com address.

bierjunge··on Ask HN: What hardware/furniture/hack greatly improved your WFH setup?
It wasn't intended for working from home, but I've got a hammock with the corresponding structure to set it up everywhere I want.

As Covid-19 hit last year, it was really a great place for having remote meetings. Just set it up in the garden, get a coffee and have a nice day enjoying the sun (and the envy of other people in the call).

bierjunge··on Anom Encrypted App Analysis
That's why drug cartels in Mexico are setting up their own cellular networks. If you control infrastructure, it's harder to get wiretapped.

https://www.reuters.com/article/us-mexico-telecoms-cartels-s...

bierjunge··on Klarna users are being signed in to random accounts
I have the same sketchy feeling about Sofortüberweisung/Klarna. If they want to make transactions on my behalf, why should I give them full access to my account?

Most banks have a paragraph in their contracts/ToS forbidding sharing the account with third parties, but they are rarely enforcing it. Still, they could close the account due to contract/ToS violation.

bierjunge··on AlmaLinux OS 8.4 Stable Now Available
IIRC the original CentOS developers started AlmaLinux after CentOS LTS got shortened for already released version.
← PreviousPage 3 of 4Next →