HNHacker News
TopNewBestAskShowJobs

codesuela

1,422 karma · joined December 22, 2011

submissionscomments
codesuela··on What technical reasons are there to have low maximum password lengths?
Many banks require you to use numbers only for your pin a smart engineer probably figured that cracking 10 char numerical "passwords" is trivial so hashing would be a waste of resources and hence energy and emissions. It is greener that way.
codesuela··on What technical reasons are there to have low maximum password lengths?
Ah I see, thanks for pointing that out. Haven't thought of it myself.
codesuela··on Google Glass #ifihadglass Winners
You can spread this link too, it has images :) http://badmephisto.com.nyud.net/glass/ (http://www.coralcdn.org/)
codesuela··on Google Glass #ifihadglass Winners
Webcache: https://webcache.googleusercontent.com/search?hl=en&q=ca...

Edit: Oh mirror below http://badmephisto.com/glass/ On CoralCDN in case it goes down: http://badmephisto.com.nyud.net/glass/

codesuela··on What technical reasons are there to have low maximum password lengths?
Wow what a dumb question obviously the OP has very little experience in dealing with real people, probably one of those code monkeys disconnected from the real world. Tune out of World of Warcraft, turn off your Xbox and think for a second: If people could choose long passwords with special characters how could our customer support reps read them back to the users in case they loose it? How could they check them on the phone? Geez and people here are complaining they are valued less than a manager.
codesuela··on What technical reasons are there to have low maximum password lengths?
I'm not sure about the added security benefit. Basically the only additional security is if someone gains access to your server they can't capture plain text passwords anymore but once someone gains access all bets are off and they might as well just switch out the Javascript. In any case you should run a strong hashing algorithm like bcrypt with a salt and oh I don't know 1000 iterations? Also last time I tried something like that (which was a few years ago) I ran into big problems with different hashing algorithm implementations providing different results (JS.md5("password") != Python.md5("password")).

Also please correct me if I'm wrong.

codesuela··on The Bitcoin and the Taxi driver
People keep predicting that but then it might go down after a large dump of Bitcoins and rises to new heights. Don't know what to say, this article has no substance at all. It is based on a possibly made up anecdote. I guess Bitcoin is just one of those things that divides the tech community. Crazy idealistic cyberpunks and BTC skeptics.

Disclaimer: I am a believer

codesuela··on Worst CAPTCHA Ever
Wow yes I agree first time I hear reCAPTCHA. I am seriously wondering whether ANYBODY is able to solve this. I know it was broken before but now it seems reCaptchaing something means straight up denying it to visually impaired people.
codesuela··on Worst CAPTCHA Ever
Those are the ones googles OCR couldn't decipher. Only one word (the random characters with a asymmetric background and maybe a line through them) matter. Once you know that you stop typing the part that doesn't matter. I usually just type asd (actual captcha)
codesuela··on Worst CAPTCHA Ever
While this captcha is truly a display of ignorance I could imagine that "corporate developers" at D&B aren't web developers. All I am saying is that if you force me to write enterprise software (which I have zero experience with) on a tight schedule I'm probably going to make a stupid mistake or two even though I hope I am not of "lower quality". I imagine someone in management refused to hire web devs because "we've already got developers inhouse". Just a wild guess though.
codesuela··on A Note from one of Cloudflare's upstream providers
With ordinary DDoS attacks an effective method (which Cloudflare uses) is to prompt you with an captcha before letting you pass or dropping your connection when you fail often enough. As far as I understand it was not that hard to block this attack because it follows traffic patterns (DNS responses from open resolvers). The actual problem was that the attack was so massive that it clogged the pipes before it could reach a router (belonging to Cloudflare) that would've been able to drop the packages.

Disclaimer: I am no network engineer so don't rely on my reply being factually 100% correct.

codesuela··on A Note from one of Cloudflare's upstream providers
Well services like Cloudflare or Blockdos try to mitigate this problem by absorbing the bad traffic and filtering it so that it is spread out across nodes and then dropped by firewalls with custom rules.
codesuela··on A Note from one of Cloudflare's upstream providers
Could you elaborate why the CDN market is collapsing? Genuinely interested.
codesuela··on Show HN: Load this image from a peer rather than from a web server (open source)
I'm having a hard time to get a P2P image. I opened the demo in one window and opened a second one. After about ten refreshes I've got an image from a peer (presumably the other window as the shared counter went up by one). I repeated a bunch of times but it seems the rate at which images are served from a peer seems very low. Could you explain why? (I'm on Chrome 26.0.1410.43 m)

Other then that, sweet proof of concept.

codesuela··on A Note from one of Cloudflare's upstream providers
Ars Technica had a pretty good article about peering and transit: http://arstechnica.com/features/2008/09/peering-and-transit/

don't know if that is what you were looking for but it does a pretty good job explaining that part.

codesuela··on Germans and Jaywalking: An American's Perspective on the Berlin Tech Scene
Good article overall but anecdotal evidence is anecdotal

> Standing at a street corner I was shocked that no one jaywalked. There wasn’t a car in sight, yet Germans young and old stood there obediently, waiting for the green walk signal.

I am from Berlin and I jaywalk all the time :) I think people who were actually raised in Berlin are very likely to jaywalk. Looking as to how you visited ITB I suppose many people you've seen were not originally from Berlin (also many startup founders are not originally from Berlin but from all over Germany)

/nitpick

codesuela··on Schema Migrations for Django
As of now you have collected 10k GBP, what are you going to do with the money with the 3k+ in unplanned additional funds? Are you going to adjust you hourly rate (not that I mind your initial "quote" wasn't that high to begin with), donate to charity, deliver more code/value, buy the Django core devs a beer? Genuinely curious. And congrats on making your goal, I love this model and I love that you had the courage to make this effort. Succeeding with this campaign publicly shows that contributing to open source software has to be an unpaid endeavor (yes I know that there are employees who get paid to contribute to open software). I wouldn't mind if more talented devs sought out crowdfunding to enhance OSS.
codesuela··on Bitcoin interest spikes in Spain as Cyprus financial crisis grows
FYI http://howdoyoubuybitcoins.com/in/germany leads to a 404
codesuela··on SendGrid Fires Company Evangelist After Twitter Fracas
You go to court an sue for defamation.
codesuela··on Chrome World Wide Maze
you need ICS for Chrome
codesuela··on The PyCon Incident
You are implying that any joke that is sexual is also inherently sexist.
codesuela··on The PyCon Incident
>poisonous atmosphere

as opposed to publicly shaming someone without prior warning?

codesuela··on The PyCon Incident
Are you seriously suggesting the code of conduct applies to PRIVATE conversations between TWO people who obviously know each other? It is not like they meant to offend somebody. I am assuming they weren't talking loudly but rather meant to converse between each other. How I talk to my buddy is no ones fucking business.

How about you tell your friend of of those an American, a Russian and a German walk into a bar jokes, someone overhears it, snaps a picture and announces to his twitter following what a xenophobic asshole you are?

codesuela··on GoPro Uses DMCA to Take Down Article Comparing Its Camera with Rival
well that's the odd thing

> Perhaps the strangest part of it all is that the review highly recommends the Hero3 Black edition is the clear winner between the two.

as per the article of this thread

codesuela··on Richard Garriott on why “most game designers really just suck”
what are UX monkeys?
codesuela··on Discovered: Botnet Costing Display Advertisers over $6,000,000 per Month
Ghostery should be enough and is less invasive. https://www.ghostery.com/download
codesuela··on Uncovering an advertising fraud scheme (NSFW) (2011)
the irony of this comment coming from Mr. Integrity is not lost on me
codesuela··on Checkboxes that kill your product
How about facebook (specifically messaging and paging also no likes and comments for users without JS)? I know, you probably don't use it but I know quite a few people who do.
codesuela··on Cypriot Bailout Sends Shivers Throughout the Euro Zone
I guess that boils it down to one option :)
codesuela··on Cypriot Bailout Sends Shivers Throughout the Euro Zone
Option 1: Make rational decisions and rely on everybody else being rational

Option 2: Panic and make rash decisions

← PreviousPage 5 of 12Next →