HNHacker News
TopNewBestAskShowJobs

felixfoertsch

47 karma · joined May 21, 2018

felixfoertsch.de
submissionscomments
felixfoertsch··on Show HN: Ez FFmpeg – Video editing in plain English
IMHO the de-facto video player for macOS is [IINA](https://iina.io/).
felixfoertsch··on The cryptography behind passkeys
To me, this totally depends on your threat model.

Generally, a one-time password is an additional security measure that prevents someone from going to a website and simply using obtained credentials (eg from a leak) or brute-forcing them. An attacker needs the second factor.

If you store your 2FA secret alongside your password in a password manager, you still gain protection from these attacks. And it's very convenient. However, you also increase your attack surface: if they break into your password manager, your done.

If your threat model allows it (mine does), this is still very secure and also very convenient.

felixfoertsch··on How to maximize a free time at work?
+1 get Anki, start building you deck. Especially for the theoretical classes it's a god sent to just know definitions, proofs, etc by heart. They will be useful during all of your studies and it can't hurt to continue knowing them.
felixfoertsch··on Efficient keyboard layout for English and Spanish
I have been using EURKey for a few years now. You might like it. https://eurkey.steffen.bruentjen.eu
felixfoertsch··on Material Shell – A modern desktop interface for GNOME
I really wish people would stop using "beautiful" as if it were an objective adjective.
felixfoertsch··on Briar Project
There are different aspects to this. The first and the easily verifiable one is that they default to client-server-client connections, not end-to-end encryption. If you want to have an end-to-end encrypted channel, you have to explicitly open a "secret chat". However, this removes the convenience of cross device syncing.

The second one is more difficult to evaluate. If you use the above mentioned "secret chat" feature, Telegram employs their own closed-source encryption scheme. That's usually an indicator to be cautious from the get-go. Since it's closed source, it can't really be trusted.

See [Wikipedia](https://en.wikipedia.org/wiki/Telegram_(software)#Security) for a timeline in regards to the security.

felixfoertsch··on Firefox 72.0
I was missing that one too and did some research about it a while ago. You can achieve the system-wide PiP mode in Safari with a bookmarklet. I posted the guide here: https://felixfoertsch.github.io/tip/2019/02/15/use-pip-via-b...
felixfoertsch··on Firefox 72.0
Can anybody share some insight as to why the PiP mode is implemented non-natively? Both macOs and Windows have a system PiP mode that should be usable?
felixfoertsch··on I've been building a Markdown note-taking app for 3 years
Most important comment. Took me about 3 unnecessary minutes to find that information; should have looked in the comments first.
felixfoertsch··on I'm one of the inventors of RSS and I need your help to reboot the Internet
I feel the same way. These guys are in every thread about editors posting a link to their site. They posted about it so often, I wish I had a filter for it by now. I think HN has to step up their adblock game.
felixfoertsch··on Electron is flash for the desktop (2016)
I was thinking of web apps like MS Teams that just simply do not allow to open a new tab on click for whatever reason. I can open the app in two windows just fine, but I can't right/middle click on something to tell it to open in new tab. Why would I not want be able to open a Word Online document in a new tab directly?

There are other apps, that are even worse. Allowing something to open in a new tab/window but identifying that there are multiple windows open and just disabling all but the main window...

I don't understand developers that do this. I always felt that multiple tabs is a strength of the web. They worsen it somehow.

felixfoertsch··on Electron is flash for the desktop (2016)
> Open other part of your app in new tab. Unless the developers forbid it... and always finding new ways to forbid it...

Man I hate the new web.

felixfoertsch··on What would a EvE online Internet look like?
I love reading about EvE once in a while. It's almost as if there were a completely different space world out there with unlimited freedom and unlimited possibilities. I always feel the urge to join this world and explore it -- but then I come to the realization that it probably needs an exuberant amount of time and dedication to partake in these news worthy event and that most of the time it's probably a grind.
felixfoertsch··on Security Checklist
Nice list and well designed, too. I dislike the "sign up and get 3 months free" ad for 1Password. I like 1Password and I am using it myself. However, to me, this gives off a wrong vibe on a security focused website.

One thing I read somewhere and previously never thought about: if you are _really_ about security, you should use a password manager and should enable 2FA.

But: you should not use one program for both (1Password offers this), because you are creating a single point of failure.

felixfoertsch··on The world’s most “secure” password
I think it's satire.
felixfoertsch··on Why You Should Build a Hackintosh
I have to disagree on your phrasing. I have been using a Hackintosh for over three years now. I agree, that it was a hassle in the past. It isn't anymore. I haven't had a serious technical problem with my PC since the beginning of Sierra. Even major updates don't pose a serious problem, if you have the correct hardware.

However, picking the correct hardware and figuring out the necessary basics is a challenge in itself. You need patience and technical knowledge. So it is far from going into the store and purchasing an iMac. That is certain. But it is not as dark as you are putting it, IMHO.