HNHacker News
TopNewBestAskShowJobs

ffpip

4,989 karma · joined July 8, 2020

submissionscomments
ffpip··on ISRO successfully conducts hot tests of Gaganyaan propulsion system
I've seen the popups too on Firefox Nightly on Android. It seems to be a firefox issue since I have seen this on other sites too
ffpip··on Android phones will soon reboot themselves after sitting unused for three days
Play services is how Google delivers many Android updates now so that all users can get security updates without waiting for the device vendor to publish it for each device.
ffpip··on The DOJ still wants Google to sell off Chrome
> CNAME-uncloaking is up to each DNR implementation; no DNR implementation supports this capability at the time of writing.

https://github.com/uBlockOrigin/uBOL-home/wiki/Frequently-as...

ffpip··on Meta torrented & seeded 81.7 TB dataset containing copyrighted data
https://adnauseam.io/
ffpip··on Go 1.23 Released
Thanks
ffpip··on Go 1.23 Released
Any good resources on learning go?

Has anyone had any luck with the YT videos or courses way?

ffpip··on Ryanair wins screen scraping case against Booking.com in US court ruling
https://i.redd.it/o6xypg00uac91.png

non-cancerous url

ffpip··on Ente Auth: open-source Authy alternative for 2FA
Storing passwords and 2FA in one place only protects you against password reuse, password leaks, and some more common threats that the large majority of people should be looking out for.

It is still a lot better than no 2FA, and more than sufficient for the average person.

For someone looking to improve their security a bit more and for someone with a "don't trust anyone" model, having a separate 2FA app has it's advantages. It protects them against unencrypted password DB leaks, security vulnerabilities in the password manager, or any intentional security threat induced by the developer of the password manager

ffpip··on Say something bad about Canva? It can claw back staff shares
https://archive.is/20240617214810/https://www.afr.com/techno...
ffpip··on Sei pays out $2M bug bounty
Yes, there would be no liquidity.
ffpip··on Sei pays out $2M bug bounty
Yeah I understood the mechanism, just wanted to know the companies that enable such things.
ffpip··on Sei pays out $2M bug bounty
Do you have examples? People can avoid them
ffpip··on Progressive Web Apps (PWAs) Phishing
A PWA can have the familiar "Sign in with google" button now, which pops up a similar page as shown in the article, but with accounts.google.com in the fake URL bar.
ffpip··on Progressive Web Apps (PWAs) Phishing
This looks a lot like a Oauth request, where you are redirected to sign-in. You check the URL and enter the creds, with the assumption that you are using "Sign in with Microsoft" to login to the site since this is how that login flow works
ffpip··on Firefox 127
Try

Type about:config in URL bar -> click proceed -> Search "browser.startup.homepage_override.mstone" in the shown search bar -> change value to "ignore"

https://kb.mozillazine.org/Startup.homepage_override_url

ffpip··on Firefox 127
They don't show a full padlock. They show one with a warning icon
ffpip··on Cloudflare took down our website
It's progressive. 1 user flagging it doesn't mark it [flagged] but probably contributes to the ranking
ffpip··on DuckDuckGo was down
What a coincidence!

I used it after 3-4 months and it didn't show any search results. Thought I had forgotten how to use their !bangs feature. Turns out it is down

ffpip··on Stripe increasing "instant payout" fees by 50%
Uber can easily just have 2 days of revenue ready in cash (or even a loan will be much cheaper than 1.5%) to not pay 1.5% every time.
ffpip··on Stripe increasing "instant payout" fees by 50%
Won't they have a rolling period, since a lot of customers just add funds and might not use it?

So you can use the balances from the people who added money 2 days ago, today.

ffpip··on Tell HN: Twitter Domain Redirecting to X
They are forcing Firefox users to turn off tracking protection.

"Firefox’s Enhanced Tracking Protection (Strict Mode) is known to cause issues on x.com"

It worked perfectly fine on Twitter.com. I think x.com has to be added as a "twitter" domain in Firefox config.

ffpip··on I built an online PDF management platform using open-source software
Thanks
ffpip··on 2024 Verizon Data Breach Investigation Report [pdf]
It's working now!
ffpip··on Show HN: I built a website to share files and messages without any server
In the end, they hold the keys irrespective of how many algorithms they wrap on top.

I do not feel it is any different from Google Chat, Twitter DMs, etc. They do have a lot of censorship resistant and anti-MITM attack features in between, but they hold the keys by default

I use it for convenience and amazing features, not for security!

ffpip··on I built an online PDF management platform using open-source software
You can easily block network access for an app on Windows using Windows Firewall. Same on a few Android skins such as MIUI by Xiaomi
ffpip··on Show HN: I built a website to share files and messages without any server
Cloud encryption is just HTTPs + encryption at rest (only claimed, not verified).

They hold the keys, irrespective of how many proprietary protocols they wrap over the message.

A great product tho! I used saved messages extensively!

ffpip··on 2024 Verizon Data Breach Investigation Report [pdf]
Yeah it's working now, very weird indeed.

DCMA would not work here since they are hosting a copy of it for archival purposes, and not claiming copyright. The original public URL is included.

Archive.org does respect robots.txt tho. It is possible to completely delete a site's history on Archive.org by modifying the robots.txt (at least in the past, not sure if that is the case now)

ffpip··on 2024 Verizon Data Breach Investigation Report [pdf]
Link not working. They are doing something weird with the PDF
ffpip··on 2024 Verizon Data Breach Investigation Report [pdf]
Apologies, did not know verizon was incapable of correctly hosting a PDF. Should have archived it to wayback machine
ffpip··on 2024 Verizon Data Breach Investigation Report [pdf]
Direct link - https://www.verizon.com/business/resources/T5d2/reports/2024...

From the title, it seemed that Verizon had published a postmortem of a recent data breach incident they had

Page 1 of 34Next →