HNHacker News
TopNewBestAskShowJobs

devmonk

1,029 karma · joined August 13, 2010

submissionscomments
devmonk··on Fake Work is Destroying America
:) That's one way.

The other way is to remove the overhead and determine at a basic level what the company's goals are and how you are going to gather and use metrics simply to determine how well those goals are being met. Outsource it or use existing resources, but get it done. The problem is how to determine metrics for things not easily quantified, but usually "software development" is not the company goal- rather it is "making the customer happy" and "making money". But, the goals can't be that generic. And, it has to be a low-overhead feedback loop, where progress must be seen quickly, otherwise it is not practical. The KISS principle also applies. Too much process is bad. But this is just a lot of talk. You should just do something simple to measure productivity and then keep iterating until you have something great. That is how great companies are born, whether they know it or not.

devmonk··on SSH scans - I caught one
Change the environment variable name, go through through your apps (and kernel probably) change the code to use a new one. Anything is doable, it just takes time. I'm not saying it is trivial by any means; I'm just saying it is an option. If you build everything from source, it is more doable. In fact, it would be nice to have a secure -nix distro that did it for you. (I know there isn't one that does this, but it could generate a random env var names and paths during install, and maybe change them on demand (by external boot).)

I'm perfectly aware that this could be "extremely difficult" or "not feasible" in many situations, but it wouldn't be so hard to control if you made the device and designed the OS for it (linux-based routers, etc.). I'm just tired of people giving up and laying things out like a holiday dinner because it's "too difficult". Good security requires sacrifice of work and time.

devmonk··on SSH scans - I caught one
But a find on root takes a lot of time in some cases, during which the attacker could be compromised. And the scripts might not use it for that reason. The script could use it as a backup only if the standard one doesn't exist, but still, it is a bump in the road, and might be worth it to cause the script to use find and delay it.
devmonk··on Tell HN: How I lost 25 pounds on the simplest diet ever.
That happened to me for a while and it made me think of the hard workers in third world countries on meager diets. But eventually it catches up with you. I still skip, but I notice it is harder to concentrate in the afternoon.
devmonk··on Fake Work is Destroying America
What if the results of what are exposed show that there is only enough real work for 25% of the current staff? Would the administration implement the layoffs?

What I've learned is that if you think like you do (and I do), you should not work with people that think like this. The best way to avoid this sort of bureaucratic thinking by the administration is to work for a small business. However, the trade-off is much too hard for many of us; if you work with people that value business more than family, you might be working for some real assholes.

So, it requires a careful balance. Enough people in the business so that the companies led by assholes are limited, but small enough so bureaucrats like the ones you mention can't flourish.

devmonk··on Tell HN: How I lost 25 pounds on the simplest diet ever.
I worry because of the "breakfast is the most important meal of the day", so I just skip lunch. I've not lost much weight. I've heard just eating less each meal is also good, but I've not been able to do that effectively. Fitting in exercise combined with eating less was probably what helped me lose a few pounds (surprise, surprise). Just dropping one meal a day hasn't helped. When I skip breakfast and lunch, by the afternoon I'm a lot more drained.
devmonk··on Fake Work is Destroying America
So, the thing to do about it is to help expose it by determining and implementing accurate methods of work quantification as it relates to productivity and exposing the results to the administration.
devmonk··on SSH scans - I caught one
But for simple devices or server setups with few changes over time, it might be worth it as it would at least cause a little more work to hack in. I remember that it used to be encouraged to use non-standard paths for security's sake, but then it seemed like too much work for the reason you stated. But these days, with more automated attacks relying on standard paths, I don't think it is out of the question.
devmonk··on SSH scans - I caught one
cd /var/tmp;

When I see things like this it makes me think that if standard paths weren't used, then it would it at least make things a little more interesting for the hacker. (They'd have to find a location first.)

devmonk··on Ask HN: Managing tons of parallel uploads on upload heavy site
I'm not an expert on scaling uploads, but here's what I'd say off-the-cuff:

1. Try to save time on the UI if possible by reusing existing solutions for multi-file uploads: https://encrypted.google.com/search?q=upload+javascript+plug...

2. Queue up uploads so that users don't start uploading until the server(s) can take them.

3. Delay any processing of the uploaded files.

4. Throw some more cheap servers, additional VMs at the problem, or more dynos/workers if using Heroku, etc.

5. Ensure your pipes are large enough.

6. Or just use Amazon S3, CloudFiles, etc.:

- http://aws.amazon.com/articles/1434

- http://www.rackspacecloud.com/cloud_hosting_products/files

but this may be much higher burn rate, depending on your needs. See what people have written: https://encrypted.google.com/search?q=amazon+s3+alternatives

Scaling is difficult. Don't scale until you need to, because it gets expensive (higher burn rate is bad).

If you really have that many uploads, you may be ready to hire someone that has some proven experience in it, not just helping develop an application that was being scaled by someone else, but someone who was hands on, and preferably someone with recent experience working with S3, etc.

devmonk··on Tell me who you are, i'll tell you which apps you need
I would use this if it didn't gather my email address or contact information, but I could see others using it that didn't mind giving up theirs. Good idea!
devmonk··on [dead]
I'm surprised that business-speak wasn't mentioned. I've heard more made-up words at work than in Star Trek.
devmonk··on Ask HN: How to get started with android game development?
http://www.google.com/search?q=android+game+development

A ton of links in the first page...

devmonk··on Internet blacklist bill COICA one step closer to becoming law
What I wrote them was a little more in depth and more general, but I think it is important to mention the specific bill each time in addition to the overall sentiment, so the secretary reading the mail puts an X mark in the tally next to the bill number on her notepad. :)

Basically, I pointed out that things have been just fine with the free uncensored net we've had so far, that this would limit that freedom by attempting to restrict what we could visit, and that those with malicious intent could easily thwart such attempts.

I think that part of the reason they are doing this is to attempt to have access to block off our country's network in case of "cyberwar", etc., so it is probably a defensive measure, rather than what they claim it to be. They probably can't just do this type of blocking at the periphery, since satellite, etc. connections within the U.S. could just as easily be a danger, not just the big trunks coming out of the ocean.

I don't want our country to be at risk, but I think that a simple blacklist is not the way to do it. Now, if they installed devices at each ISP that all traffic had to run through- then you might have a greater defense. But, basically, in cyberwar, we're all screwed. Things like this are chump change compared to EMPs, viruses, state-controlled botnets, etc. Cyberwar would be almost purely offensive, similar to nuclear war.

devmonk··on Internet blacklist bill COICA one step closer to becoming law
(posted this in related thread)

Contact your senators and tell them to just say no to S. 3804:

http://www.govtrack.us/congress/bill.xpd?bill=s111-3804

http://www.senate.gov/reference/common/faq/How_to_contact_se...

No good can come of the gov't trying to control what domains can be accessed, and it won't stop those that wish to do us harm or take advantage of us, because they'll just use another domain.

devmonk··on Internet blacklist bill COICA one step closer to becoming law
Related comments: http://news.ycombinator.com/item?id=1918594
devmonk··on Senate Panel Approves Domain Name Seizure Bill
Related comments: http://news.ycombinator.com/item?id=1918593
devmonk··on Woz misquoted 'Almost every app that I have is better on the iPhone'
Well, that's not all he's said:

http://venturebeat.com/2010/11/18/apples-wozniak-calls-the-w...

devmonk··on [dead]
"Payment just makes everything weird" - Jeff Atwood

That one stood out.

Here is a quote for Jeff: "In Soviet Russia, there would be no Twitter, only KeyLogger..."

devmonk··on Dooby, a command-line tag-driven mini to-do list manager in Ruby
Ack! Name confusion ahead. There is a Duby also already in the Ruby community: https://github.com/headius/duby
devmonk··on Senate Panel Approves Domain Name Seizure Bill
Contact your senators and tell them to just say no to S. 3804:

http://www.govtrack.us/congress/bill.xpd?bill=s111-3804

http://www.senate.gov/reference/common/faq/How_to_contact_se...

No good can come of the gov't trying to control what domains can be accessed, and it won't stop those that wish to do us harm or take advantage of us, because they'll just use another domain.

devmonk··on Tinkerers by David Brin
I'm trying to figure out if the character introduced on this page is Cap'n Crunch, Kenny Rogers, or the Woz: http://forward.msci.org/tinkerers/images/page6.jpg
devmonk··on Thank PG: For reclaiming the word 'hacker'
I always thought a cracker (beyond the food and ethnic slur definitions) was someone who removed copy protection from software. So, in WarGames, David would have been considered a hacker, but the guys you see in the splash screens of shared old computer games were crackers. Even if that isn't the formal definition, my guess is that is the most common connotation associated with that definition of cracker.
devmonk··on Google TV: No Need to Tune In Just Yet
I'm not disagreeing that Google TV doesn't need some work, but if you look at the other articles by the author, you can see a distinct pro-Apple theme: http://ptech.allthingsd.com/

- Google TV: No Need to Tune In Just Yet

- Samsung’s Galaxy Tab Is iPad’s First Real Rival

- MacBook Air Has the Feel of an iPad in a Laptop

- Microsoft’s New Windows Phone 7: Novel But Lacking

- Mac Users Are Getting New Outlook From Rival

- Finding the Best Way to Read Books on an iPad

And in "A Fall Guide: How to Pick Your Next Computer":

"If you’re looking for a light-duty, highly portable computer, it’s worth considering the iPad, which starts at $499, instead of a small laptop."

Walt tries to be unbiased, but he just isn't.

devmonk··on The Joystick Store
Check this out, too. A little more expensive, but a clear, led lit a2600 USB joystick is awesome: http://www.reflexaudio.com/products_joystick.htm
devmonk··on Quantitative easying explained
During the great depression when people had to live with much less, they learned to save. Saving became part of the culture by necessity. Credit was offered by merchants and stores, but not to the extent it is used now.

Then gamification of credit card debt and other debt through "credit card points" and "credit rating" was introduced, and everyone was told that you had to have to have a credit card and a mortgage or you wouldn't have the credit rating to allow you to borrow more money for the car, the new furniture set, etc.

However, if the USD loses significant value (hyper-inflation) and the credit industry tanks, people will have to start saving again, just like the great depression.

We can't print our way out of debt, obviously. The more money is printed, the higher the eventual inflation.

Stocks from companies could fall if their business model relies on buying goods and services from countries whose currency increases in relative value and who sell products and services primarily to countries whose currency decreases in value. When inflation hits, and these companies' stocks fall, it would be a great time for people to invest, however those companies would have to layoff quite a few people, so only the rich and the people from other countries in the world would be able to afford to buy those stocks. When they buy those stocks and they go up, the rich get richer and other countries start buying these companies.

So basically, by the government printing more money like this, they will eventually:

- Raise unemployment.

- Raise the wealth divide between the rich and poor.

- Cause the country to have to convert from becoming a consumer to being a provider, during which there are many failures and many required changes in lifestyle and government. (Instead of bankers, accountants, and lawyers, you have more farmers, miners, and factory workers.)

The wealth divide if significant enough will cause the country to go one of three ways:

1. In a country where the citizens are less aggressive but feel a sense of entitlement (like the U.S.), it may lead to a revolt in the form of Socialism or Communism by the disenfranchised. (Socialism or Communism are bad ideas, but Russia and France are good examples of countries that embraced Communism and Socialism due to wealth divide, so it could certainly happen.) This in turn may kill off any chance that the country will be economically successful in the near future, because there is little incentive to work extremely hard to have an even poorer quality of life than before the change.

2. In countries where the people are more aggressive, a dictator may arise military rule will be established. This is much harder to escape from over time as it leads to a vicious cycle of dictatorships and coups.

3. In countries where the lower-class had already been mostly established (perhaps not to the same degree) and there is less sense of entitlement or aggression, there is a possibility that the country could perhaps convert from a more taxing Socialist government to a more Capitalistic society. Although this transition would not necessarily be smooth while government run services are privatized, eventually the country could become wildly successful due to the superior work-ethic of its citizens.

devmonk··on Quantitative Easing Cartoon
Comments here: http://news.ycombinator.com/item?id=1914900
devmonk··on [dead]
doesn't work the same. l.m.u. just creates a meaningless hash string, whereas l.f.u. will put the youtube video title into the url, so that people may know what they are clicking on.
devmonk··on [dead]
get a new domain and remove the profanity, and you might develop a larger community and possibly (although somewhat unlikely) get some funding. otherwise, you will attract customers that like to shock people who will use it once to shock a friend or two and then will stop using it.

longerlink.com isn't taken. if ur fast you might get it.

devmonk··on Geek Luddites
The scary thing to me about removing the complexity of interface and usage from computers by making them into PS3/Wii/iOS environments is that the everyday developer can't easily write something for those platforms/OS's without significant investment of money and time. Microcomputers evolved because we could tinker with them without having to risk the wrath of the company that created the platform. Take away the easy tinkering, and you'll limit what is out there, and not in a good way.
← PreviousPage 2 of 18Next →