HNHacker News
TopNewBestAskShowJobs

fancythat

79 karma · joined January 20, 2020

submissionscomments
fancythat··on Tell HN: Wise froze $40k+ in funds for 10 days and counting
I don't want to sound negative, but Wise is working for most people and even for myself almost all the time.

The fact that you are being rejected by Revolut and Airwallex simply means that there is something fundamentally wrong on how you do your money transfers. I am not saying you are doing something criminal, but rather that your methods are raising alarms all over their systems.

Regarding your funds, Wise is supervised by FCA, Financial Conduct Authority in the UK, and a lot of the times, writing email to them might get things started.

Now, for those that are saying that Wise is not a bank and therefore the funds are not secured, hear me out:

Money transfer services need to have 100% of your money covered in cash, unless you opt-in on interest earnings and similar additional products, but even though those are also protected in some way (check Wise faq).

Wise being a large company, has multiple bank accounts spread around the world, meaning that they are probably more resilient to the negative events than even some larger banks in your country.

Of course, be careful with your money, never trust anyone 100%, always spread your risks, but generally speaking, Wise and similar services are the next best thing to hopping on the plane and opening bank account in different countries.

Source: working in Fintech atm

fancythat··on Ask HN: Do I need AWS? Or am I thinking this wrong?
Location plays a role here. If you are in the industry where your people are paid 200k usd minimum then cloud will probably pay off, if you can pay them 1/5 of that, then it is probably another way around. Ahrefs cloud story reminds me of this in some way.
fancythat··on Ask HN: Do I need AWS? Or am I thinking this wrong?
I don't know your experience, but mine is what I stated and I have been through two on-prem to cloud migration, one done with outside help and one without, one at Fortune 500 company with fairly, not Google scale, but large setup. General theme was that if can't get your things straight on-prem, you surely won't be able to manage cloud as it adds additional level of complexity on top of your usual setup.
fancythat··on Ask HN: Do I need AWS? Or am I thinking this wrong?
Using any cloud only makes sense if a) you don't know how to setup things yourself and b) your project is so big, that salaries for ops would be higher than cloud cost.

Also, be careful with b) since you still need people that know how to do stuff, otherwise, you will experience either data breach or long downtimes.

What most people won't admit when recommending cloud is that, yes, cloud has all sorts of utility built into, like data replication, backups, scaling, etc. but things go wrong in cloud as well and if you don't have good knowledge of how things work, you will be in for a wild ride.

IMO, it is much better to learn setup things yourself, even in non-optimized way and have some knowledge on what to do when stuff begins to break.

fancythat··on A Really Big Computer
How is the sun there for the solar part?
fancythat··on Why is Kubernetes adoption so hard?
It is definitely a new thing that is highly sought after and I understand people that are pursuing it. However, if you need to make a decision if this is a usable tool for your setup, please, invest some time to test everything possible before moving to it.
fancythat··on Why is Kubernetes adoption so hard?
Applications in question are all stateless and worked in distributed VM environment without issues, usually with simple Nginx or HAProxy redundancy setup. I see your point and it is valid, however, this wasn't the case in the examples I mentioned.
fancythat··on Why is Kubernetes adoption so hard?
I am going to state a somewhat unpopular opinion, Kubernetes in their current form are just short from unusable in complex production environment. In order to run a full Kubernetes stack, you need to get a multitude of components running, each with own name with unknown effects on the underlying system.

I have experiences with two forms of deployment: one was an on-prem installation two years ago, on which one of the 13 Java 8 applications had very large latencies when accessing Oracle DB, otherwise working fine when it was deployed on simple VM. All of those applications had been done with the same DB logic, and we couldn't find the issue on our own, so we asked third-party to debug this issue for us: they couldn't pin point the problem, even with commercial tools. Their answer was just, something is off with your Kubernetes installation and that was it.

My second, on-going experience, is my current assignment with Fortune 500 company, that uses GKE for running hundreds of nodes, after migrating from on-prem VMs. Almost every other week (99% reliability - yeah right), some part of the system just dies and leaves services unreachable or unresponsive. There is a continuous effort to solve this issues and even Google support was contacted with the answer boiling down to: shit happens, deal with it. The only solution in those situations is either to have alarms go off so that Ops can restart something, or just to wait until everything comes back up again on its own.

The whole ecosystem was a good idea that lacks proper tool and stability to provide substantial benefits over the bunch of VMs, IMO.

fancythat··on Experts warn yearly checkups carry risks and do not reduce mortality
I observed that happening around me for a long time, this research only confirms it, however, I think that the problem is stated in a wrong way. IMO the issue here is not that checkups are bad on their own, but rather that used medical checks and resulting therapies are done in some sort of "standard" way, rarely taking into account patient's history or having more detailed look on what causes the particular problem. This is, of course, done in order to scale checkups on economic scale, otherwise, almost no person could afford it. This can be observed in some cases when some young, fit solider dies on basic exercise from heart failure caused by heart anomaly that is not being screened during standard medical examination prior to being enlisted.
fancythat··on A solution to current high power prices
Solar and wind are great technologies that need impractical and eco-unfriendly batteries to become long term solutions. That doesn't mean that garbage burning cannot be augmented by wind and solar where there is opportunity for this.

The argument for waste burning is quite simple: you are left without gas and you substitute what you don't have with what you have, in this case garbage. That doesn't automatically exclude other alternatives, but rather together with them, makes them more viable.

fancythat··on A solution to current high power prices
Complicated solution for a "simple" problem. It will probably not work.

Why not build more garbage incinerators instead? Proven, readily available technology, that can solve immediate danger of not having enough gas for heating.

Unfortunately, EU is biased against it (https://zerowasteeurope.eu/press-release/european-parliament...), maybe it is time to change that stance.

fancythat··on Ask HN: What's your 10x developer story?
I worked at my previous organisation with one 10x developer (I was a team lead) and managed to have him follow me to the new company. That person reached that status at the last position because management didn't have capacity to employ quality developers, so this guy was literally able to get work done that other 10 random people from the development team couldn't do in any time frame. He was also the go-to-person for any questions regarding any kind of optimization, Heisenbugs, SQL query tuning and everything in between.

This man was so valuable, that he was the only person that could freely have almost anything on the screen, excluding hard core porn, instead of IDE, and no-one, not even the board members that came to visit our offices from time to time, dared to say anything.

To give you some perspective, we had this ugly system that was bought for several hundreds thousands of usd for the purpose of processing one specific type of information. The system was delivered by the third party and its implementation into our infrastructure took about a year.

The problem with it was, the time it took to process a single xml message, just the message acknowledgement took 1.5 second in the best case scenario, while the whole message processing took around 30-ish seconds.

It came a moment when it was needed for this system to interface with another system outside our organisation. It had a requirement that all messages should be processed end-to-end in less than 10 seconds. Soft deadline was set for two years and in that period only 25% of institutions (us included) managed to get it done, by using full teams of 10+ developers.

On our side, we had this guy and one product owner. He managed to code the proxy that basically did the whole logic of that old system and just inserted the results in db without knowing the inner workings of existing software in three months.

It is useful to add that when interviewing at the new company, were I came before him, they immediately recognized his worth on the screening interview and he was fast tracked to the employment.

fancythat··on The CRPG Book Project: Three Years Later
Excellent suggestion!
fancythat··on Covid Spike Protein Elicits Signaling in Host Cells: Implications for Vaccines
Contrarian view: https://respectfulinsolence.com/2021/04/29/no-theres-no-good...
fancythat··on Ask HN: Where to get cheap VPS with big storage?
I personally know two people that lost all data with Contabo, so be careful.
fancythat··on Ask HN: What does mastery look like in software engineering?
I agree with you, but judging by the whole article the main thing here was probably the same old story with outsourcing company either wanting to bill extraordinary amount of hours or employing novice to medium developers for the project but charging full senior price for them.

I guess that for most of the guys, if they had opportunity to work on something with Carmack or Id Software in those days, it would be a priority to show yourself in best light and even work for free or heavily discounted price if needed to secure future deals. Especially since all source code was provided and basically the whole thing was just somewhat simple porting engagement.

fancythat··on Ask HN: What does mastery look like in software engineering?
Look no futher than this: https://archive.is/NCWmz (Wolfenstein 3d iPhone development By John Carmack, Technical Director, Id Software)

To be exact: "The developers came back and said it would take two months and exceed their budget.

Rather than having a big confrontation over the issue, I told them to just send the project to me and I would do it myself. Cass Everitt had been doing some personal work on the iPhone, so he helped me get everything set up for local iPhone development here, which is a lot more tortuous than you would expect from an Apple product. As usual, my off the cuff estimate of "Two days!" was optimistic, but I did get it done in four, and the game is definitely more pleasant at 8x the frame rate.

And I had fun doing it."

fancythat··on We compress Pub/Sub messages and more, saving a load of money
So basically this is once more a case, where cloud providers promise you everything then corner you into unforgiving situations where you have to spent most valuable thing (engineers' time) to avoid associated costs with particular vendor lock in, in order to have service continuation.

60 TB is a lot, but we can all agree that is surely doesn't warrant -/+ 13000 USD one-way trip price tag.

This statement is in particular worrisome: "Google Compute Engine network rates (we’ll ignore these, as they get complicated)"

So you are basically buying a black-box that has an ability to drive your business into a ground if you are not careful enough.

Yes, I am aware you can argue and plead for mercy once you get the bill, but this is not the way: they wouldn't be so keen in forgetting your cost if it was making them a real expenditure: I was doing a napkin calculation for AWS and I found it to be around 10x more expensive than DIY solution, which means that from 10 suckers, only one has to pay for them to make profit.

The more I read about cloud providers the more I am convinced that their major business is based on the fact that they have to get hardware and software for their core business and since they cannot scale it precisely it is more lucrative for them to just try to sell "solution" to suckers for 10x and get rich in the process.

fancythat··on I Hacked into Facebook's Legal Department Admin Panel
One point of you to consider though, I guess FB runs pentests all the time, either internally or externally by appointing some other company to do it.

That being said, if they pay that company 35k, for example, and they haven't found this, wouldn't that fact make this discovery worth more than 35k?

fancythat··on Burnt $72k testing Firebase and Cloud Run and almost went bankrupt
I don't understand why people keep doing this to themselves. OP is ex-Googler and we can surely state that he knows his way around tech. Why would you, as a startup, go on route of using convoluted mess of tech that every cloud provider is, instead of buying cheap dedicated server, setting your own k8s or whatever and just using that platform for your project.

Cloud solutions are immensely and, for most cases, unnecessary complicated. In addition to that, they have the ability to kill any dream of yours with invoice far exceeding your darkest forecasts in less than an hour.

The time OP spent solving this issue could be better spent learning about self-hosting and avoiding this trouble all together.

fancythat··on Women equal men in computing skill, but are less confident
Who cares, really? I lead a 13+ member software development team and two women that I work with are almost the best developers we have. As with everything in life, in practical sense, it all boils down on how long are you willing to work on something to become good at it.

Those two are both smart, result driven, hardworking individuals that are not treated in any shape or form differently. They are also not shy and are very good communicators, with one of them being our go-to communicator to business users that we develop for and the other being the best paid developer in my team.

Throughout the years we also had other women working with us and level of their "skill" was once again proven to be the result of their willingness to focus their time on honing their skills rather than spend it on other pursuits such as hobbies, sports, etc.

In my case, time has shown that gender discussion in this particular case is pretty much useless and is often used only by weaker participants to avoid responsibility - and yes, I have seen it used both ways, even by males saying that someone was privileged because she was a woman and vice versa. Under performers in addition to this excuse use anything else

People should stop finding excuses for their weak performance and focus on task in front of them or change their goals. That's the whole wisdom of it.

fancythat··on Why online voting is harder than online banking
So tamper evident mail was never opened before?

https://archive.is/jx8Ey

Edit: fixed URL

fancythat··on Remote Code Execution in Slack desktop apps
In my country there is a sort of obligation to get 10% of value in case you find something valuable but is more applied to found money. Many times people just return what they have found without taking any reward. This could be extrapolated to bug bounties as well. How much would Slack or its clients potentially loose, if this bug was exploited? I think that everybody could agree on some sum, lets say 200k USD. In that case 20k should be paid.

Another approach is to take invoice for last security audit and simply pay the whole amount of that invoice to the researcher. If none was ever done (good God!), just some usual quote for pen testing the targeted application could be applied.

HackerOne could also enforce minimum payouts per exploit category.

fancythat··on Ask HN: How to do cross platform GUI?
You should definitely try Godot as tlack recommended.
fancythat··on UFO VPN claims zero-logs policy, leaks 20M user logs
Putting unsecured ES on side, but logging passwords in plain text? That's a whole another level of stupidity.
fancythat··on Ask HN: Am I the longest-serving programmer – 57 years and counting?
Inventor of Forth, Chuck Moore still codes. He is 81. He funded his last startup at tender age of 70 (Green Arrays).
fancythat··on John Carmack is reading and contributing to OpenBSD source code
I am not saying that he will solve AGI on his own (he did quit rocket science after all), but you are greatly underestimating the impact he can have in the field. He basically evolved almost on his own two multi-billion dollar markets by doing noticeable technology leaps and finishing things at the right time. That must count for something. I would bet he cannot solve AGI, but he will surely leave something inspiring behind.
fancythat··on Ask HN: How does TikTok/IG build video filters/story editor?
You could use MLT (https://www.mltframework.org/) as programmable video editor it works perfectly for this scenario.
fancythat··on Ask HN: Courses/resources to improve my self-esteem and believe in myself more?
I made this account only to answer you, since I have few insights that might help you.

Following noncoml's advice on bodybuilding, there is a truth in that direction: you need a challenges and victories to get out of your state.

Most enlightening reads on that subject are:

David Goggins - Can't hurt me Jocko Willink - Discipline equals freedom field manual

The center point of your problem lies in a fact that you are measuring your self in comparison to others, while the problem is within you - therefore, you need to challenge yourself in many ways and overcome those challenges in order to set yourself straight.

Warning - this is a journey not a shortcut.

← PreviousPage 2 of 2