HNHacker News
TopNewBestAskShowJobs

fnordprefect

165 karma · joined September 18, 2015

Lawyer / programmer
submissionscomments
fnordprefect··on Show HN: Real-time Solar System with 526k asteroids and all tracked satellites
Seconded. Great work.
fnordprefect··on Rubio stages font coup: Times New Roman ousts Calibri
I'm with John Gruber, who is hardly a fan of this administration:

https://daringfireball.net/linked/2025/12/10/state-departmen...

"Calibri does convey a sense of casualness — and more so, modernity — that is not appropriate for the U.S. State Department. And I do not buy the argument that Calibri is somehow more accessible for those with low vision or reading disabilities. People with actual accessibility needs should be catered to, but they need more than a sans serif typeface, and their needs should not primarily motivate the choice for the default typeface."

Official departmental paperwork shouldn't look clownish.

fnordprefect··on Adobe gives up on web-design product to rival Figma after deal collapse
Don't worry - the conversation in the anecdote does not reflect the true position in the major common law countries at least. The public shareholder model is not doomed or flawed on this account.

If an acquirer wants to acquire shares in a public company (or any company actually) it makes the offer to the shareholders and they are the ones who decide to accept or not. The proposed transaction is between the acquirer (who wants to buy the shares) and the current owner of those shares (the shareholder). The Board manages the company but is not itself an entity (it's a group of people) and cannot therefore own shares (tho individual directors can and usually do).

The Board can make a recommendation to its shareholders about whether it thinks the offer is fair or not (based on their usually greater knowledge of the company and its worth), but it is the shareholder who decides whether to accept.

The underlying suggestion that a Board or CEO is essentially forced to do something bad for the company because of some underlying obligation to make shareholders money etc etc is false. Directors owe fiduciary duties, but they are proscriptive, not prescriptive in this way. One of the most commonly repeated falsehoods is that the Board is under some duty to maximise profits etc - that is proved wrong not least by the existence of non-profits...

The closest analogy is someone owns and investment property being managed by a real estate agent. A buyer approaches and says "I will pay you $x for the land". The agent can say "Hey I rent this out all the time, it can earn $z over t years, so I think it's worth $x + y, or $x - y" but it's up to the owner to say yes or no.

The above ignores eg competition law issues (laws that prevent an acquirer buying companies where there is likely to be a substantial lessening of competition), potential conflicts for share-owning directors, and the myriad statutory considerations etc but is the basic underlying position.

fnordprefect··on 1Password detects "suspicious activity" in its internal Okta account
I raised exactly this possibility with them when they announced their new model. Their support would not engage with this even as a possibility. Just assertions that everything would be completely secure.

Getting access to this data is the holy grail for attackers - it is preposterous not to have a local-only or "saved on iCloud only" model. Clearly the only reason they removed this ability was the juicy, juicy subscription revenue, which requires them to hold the data.

They may have avoided a breach this time but have they previously been breached? Will they be breached in future? The possibility of each is non-zero.

Needless to say, I'm still using the older version and am planning how to transition once it stops working after an OS update.

fnordprefect··on Bell Labs gave up its roof to patch the Statue of Liberty
That's fantastic, thank you!
fnordprefect··on Bell Labs gave up its roof to patch the Statue of Liberty
In (I think) the first edition of Zumdahl's chemistry textbook, there was a great summary of some of the things they had to do to preserve the statue, and it went beyond just repairing the skin.

The wiki article (https://en.wikipedia.org/wiki/Conservation-restoration_of_th...) has a lot of it, but IIRC after they installed stainless steel, at some point they passed electricity through it, which had the effect of making it susceptible to corrosion, and then had to do something else to restore its resistance.

I wish I could find it now, as it was a fascinating read, but I can't see anything easily online.

fnordprefect··on Australia gov wants telco Optus to pay for new passports for data breach victims
With respect, that's not right. I've advised Australian companies of all sizes (from one-man bands to ASX-listed companies) for decades, and they are very heavily motivated by avoiding bad press from a preventable accident, avoiding company and personal reputational damage, being fired, being sued personally (noting that eg D&O insurance almost invariably excludes fraudulent acts), suffering regulatory investigation/enforcement (including eg fitness to hold licences) and because a surprising number of people believe that it is important to do the right thing, and (contrary to popular belief on the interwebs) this doesn't change just because they are employed in a business.

In cases where there is intentional wrongdoing, existing laws already make complicit people liable both to civil action by people harmed, plus criminal or civil penalty provisions by ASIC (or the ACCC, depending on the industry and conduct). As a plaintiff, you typically join them to increase your potential pool of recoverable assets for your clients.

The same is true if there are breaches of the Australian Consumer Law, and the person has a particular level of knowledge that is below intention.

In cases of pure negligence, like this, if the negligence rises to a criminal standard, then criminal laws and penalties already apply. How and when this works has been a topic for over 50 years, since Tesco v Nattrass in the UK.

In other words, there are already very significant legal mechanisms in place, and by and large they work - and not all of them involve having executives personally liable. In any event, many already do, and this has been worked out carefully over a long period.

fnordprefect··on Australia gov wants telco Optus to pay for new passports for data breach victims
This is a straight up case of negligence, just via a different means and with different damage from usual. The only impediment to suing is the cost of doing so vs the damage suffered, which is still too high for the average person.

The usual way around this is via a class action, and there are already at least 2 being prepared that I know of. They will run and probably settle at some point. The main thing to be policed is to avoid the funders and solicitors taking too much of the proceeds, although that process is already in hand due to recent abuses.

fnordprefect··on Backyard approaching lighting at Adelaide Airport
Not facetious.

Allow me to introduce the Commonwealth Places (Application of Laws) Act 1970 to you. [https://www.legislation.gov.au/Details/C2016C00956]

Section 4 has the effect that (leaving aside taxation laws), "[t]he provisions of the laws of a State as in force at a time (whether before or after the commencement of this Act) apply, or shall be deemed to have applied, in accordance with their tenor, at that time in and in relation to each place in that State that is or was a Commonwealth place at that time" (s 4(1)) - unless the State law already had that application, in which case the State law applied untouched (s 4(3)).

There is also express provision in s 5 concerning the operation of some Commonwealth crimes provisions.

But as a general matter, if smoking is illegal just outside the Commonwealth place, it will be illegal inside it.

eta: oops, I left this open for a while before posting, and just saw others have answered.

fnordprefect··on Moderna’s HIV vaccine has officially begun human trials
It seems to be an LGBTQ-focused website, so it looks to be doing nothing more than viewing things from the viewpoint of (presumably) its biggest reader base...
fnordprefect··on In praise of the vertically sliced St. Louis bagel (2019)
Her head ... https://www.seriouseats.com/allison-robicelli-5118529
fnordprefect··on Portable nuclear reactor program sparks controversy
> A corporation exists to make a profit, period. Suggesting otherwise is just emotional manipulation, albeit very profitable manipulation.

This is wrong. A corporation is just an artificial person. Like a person, it can seek a profit or not - eg charitable not-for-profits. There is no legal obligation either way.

fnordprefect··on The Schindler of Japan, Chihune Sugihara
There is a very interesting book about him that I read years ago:

"In Search of Sugihara" by Hillel Levine

https://www.goodreads.com/book/show/1119369.In_Search_of_Sug...

It seems to be readily available on kindle, but harder to find in print.

fnordprefect··on Van Buren is a victory against overbroad interpretations of the CFAA
> Am I missing something? To me, this ruling means that if a person is granted technical access to a computer system, then that person cannot be held criminally liable for anything they do with access to that system, even if the owner explicitly prohibits it.

What you are missing is that you are assuming that the CFAA is the only means by which Van Buren should be punished. So you are assuming that either the CFAA covers this abuse, or he gets off completely free.

The CFAA isn't the only means to deal with his conduct. Although it doesn't apply, he is still liable to be punished under whatever regime he was given access to it.

In simplified form:

He was granted access to the system pursuant to his employment - ie he was able to log into it, whereas the average citizen can't. Whatever conditions are applicable to that grant are the ones to apply when he abuses that access (eg if the policy says "you can only access this for these purposes, or you will be fired" then if he accesses it for a different purpose, they can fire him).

That is quite separate from the CFAA.

The CFAA is a parallel source of obligations, and is part of the criminal law.

Just because Van Buren breached the terms on which his employer let him access the database doesn't necessarily mean he committed a crime as well.

What SCOTUS did was say that the criminal law provision essentially deals with the "technical" side of access:

* if you get into a computer that you have no access to (ie hacking into it), you breach the relevant section.

* if you are authorised by the operator to have the technical means to access to certain info in the computer (eg permissions), and you do something to access other material, you breach the section (eg escalation of privileges)

* if you have the technical means to access the computer (eg log/password) and you access material that is permitted under those means (ie the user account), but you are not authorised to have that means of access (ie stolen login credentials), you also breach the section.

The problem with the interoperation that SCOTUS rejected was that under EULAs, the provider could essentially say "you can use our systems to log in and view information. But if we decide we don't like you, or you haven't paid your bill, or if you decide you are going to vote for politician X in the upcoming election, then if you actually view any information while you are logged in, you breach the act and commit a crime"

The rejected interpretation said: "authorised does not just mean you have been provided with the technical means to access the information, but also any additional conditions put on your use of the technical means by the person who granted it, which may change at any time" (eg change of policy, what is going through the user's mind)

So the answer to your observation:

> I feel pretty strongly that what van Buren did is a massive abuse of authority and it warrants punishment.

is: it is exactly that. But it is punishment to be delivered via the process granting him the access to the information (ie whatever sanctions apply to violation of departmental policy). What he did was a breach of that policy, leaving him open to whatever sanctions are provided in it. But it is not also a crime under the CFAA.

fnordprefect··on Google’s copying of the Java SE API was fair use [pdf]

  One of the big open questions is "are APIs copyrightable?" 
The Australian equivalent to the US Supreme Court considered this over 20 years ago, and imho got the correct result (not copyrightable): http://www.austlii.edu.au/cgi-bin/viewdoc/au/cases/cth/HCA/1...

IMHO they got the Huffman table wrong, although arguably it was the result compelled by an overprotective approach.

fnordprefect··on Capitalism ruins computing once again
Sorry, but I think this is a poorly thought-out argument.

Main reasoning:

  All in all, though, the desktop database industry has entirely collapsed since the early '00s. Desktop databases are typically viewed today as legacy artifacts, a sign of poor engineering and extensive technical debt. Far from democratizing, they are seen as constraining.

  What changed?

  I posit that the decline of desktop databases reflects a larger shift in the software industry: broadly speaking, an increase in profit motive, and a decrease in ambition.

  ...

  The software industry, I contend, has fallen from grace. It is hard to place when this change occurred, because it happened slowly and by degrees, but it seems to me like sometime during the late '90s to early '00s the software industry fundamentally gave up. Interest in solving problems was abandoned and replaced by a drive to engage users, a vague term that is nearly always interpreted in a way that raises fundamental ethical concerns. Computing is no longer a lofty field engaged in the salvation of mankind; it is a field of mechanical labor engaged in the conversion of people into money.

  In short, capitalism ruins computing once again.
A far more likely reason, and one which I believe is the true cause, is that there is relatively little demand for desktop databases:

* there is a non-trivial degree of tech knowledge needed to run and maintain them

* they are tied to the desktop, and not ubiquitously accessible

In short, people want to focus on the task (running their household; keep track of collections; running their small business; logging inventory; etc) and not the technical means of accomplishing that task

This is all about a collapse in demand, and a shift to an alternative that better suits the needs and desires of the end-users.

It has nothing to do with "capitalism" ruining things. (Side note - the author has not defined capitalism, and I don't think it actually means what he/she thinks it does.)

Edited to add: there are still many desktop database programs offered to users. If there were still a huge demand for them, they would outcompete the supposedly evil industry products that so upset the author.

fnordprefect··on Falling Out of Love with Apple, Part 3: Content and Censorship
This all comes down to the statement near the end: "I believe Apple should simply refuse to cooperate with oppressive governments"

Which is another way of saying "I believe Apple should either not operate in certain countries, or should try to operate in those countries in defiance of the laws of those countries."

The beef is primarily with the government. Companies are stuck in the middle -- either operate in compliance with local laws (even if they believe those laws are wrong) or don't operate there at all (since the third option of operating in contravention of local laws doesn't usually last long, and has painful consequences).

It would be interesting to know what the people who live in the countries think -- would they prefer not to have Apple products (or any other company's products) unavailable to them?

fnordprefect··on When Hubble stared at nothing for 100 hours (2015)
Great quote. Also unintentionally (I think) humorous, given the manufacturing problem with Hubble referred to in the article was slightly inaccurate grinding of the lens' edges.
fnordprefect··on The AirPods Pro “Rattlegate”
I don't think so, on my anecdatum.

I've also had mine since early November last year, and also use them many hours a day, mostly at my desk. Never dropped. Either left on desk in case or carried in a trouser pocket with nothing else except my iPhone.

They were absolutely perfect until about ~6 weeks ago, when the right bud started to make an awful tinny noise (which I thought was imperfect cancellation, and a software bug of some kind) when I coughed, which it had never done before.

Yesterday, I started getting the rattling sound when walking, right earbud only. Goes away for a couple of steps if you take it out and reseat it, then comes straight back. Rattles in time with footstep.

Since it's an impulse thing for me (force of cough, force of bouncing when walking), I'm guessing defective connection (defective solder joint?) that is misbehaving when stressed?

fnordprefect··on How the design of a WWII plane led to the concept of user friendliness (2019)
Agreed. He also got the "bicycle for the mind" quote wrong -- kind of hard to do when Steve Jobs' explanation is a youtube search away: https://www.youtube.com/watch?v=rTRzYjoZhIY
fnordprefect··on Jarrett Heather presents: Word Crimes (2014)
It's a great project, and a wonderful read, thank you.

However, I can't resist pointing out something ironic in a post about a video about grammar:

> The number 27 is referenced at least seven different ways.

"Referenced" should be "referred to", or "The video makes reference to the number 27...".

Although I accept that this misuse of the word is so widespread that it will probably end up being accepted on the "if enough people make the mistake long enough and often enough, it ceases to be a mistake" theory of language...

fnordprefect··on Venezuelan ship sinks itself after ramming cruise liner with a reinforced hull
No need to go that far back. One famous one is https://en.wikipedia.org/wiki/Patrol_torpedo_boat_PT-109
fnordprefect··on Design Tips for Developers
Thanks - I've re-opened the article and will read it carefully now :)
fnordprefect··on Design Tips for Developers
My (probably ironic) interaction with their design:

1. Quick skim of the start. <thought>This looks interesting, and even worth saving for later detailed review</thought>

2. I go to save the page. Search box opens and starts filling out with the name of the directory I was pre-typing to save into.

3. <thought>I must have clicked unintentionally. Or mis-hit the tab key? Strange; I don't recall it. Try again.</thought>

4. Same result.

5. ?!$$@?. Test to be sure.

6. Confirmed. <thought>They have bound cmd-s to give the search box focus instead of allowing the user to save (seemingly unintentionally; ie due to 's' being pressed without recognising that a modifier key was also pressed)!</thought>

7. Cmd-W. Window closes. Not saved.

8. <thought>Nope, they didn't also overload 'w'</thought>

I will not take pointers from a site that messes up UX as badly as this. Anything I don't recall from a quick skim is not going to be worth using.

fnordprefect··on The FDA Announces Two More Antacid Recalls Due to Cancer Risk
This is not necessarily correct, and I suspect specifically not correct in this particular case.

The first step in the synthesis of ranitidine is a Mannich reaction on a furan compound (furfuryl alcohol) to produce essentially one half of the molecule. The key reagent in that step is dimethylamine hydrochloride.

The final steps of the synthesis involve conditions that will form nitrosamines from amines.

Thus, if any dimethylamine hydrochloride is left over after the first step, conditions exist to turn it into NDMA.

Dimethylamine is a bugger to get out of a reaction mixture, and it would not surprise me to find that a poorly-designed or badly executed reaction scheme may fail to remove some trace amounts, therefore opening the door to producing NDMA. In other words, as an impurity existing from the first step of the synthesis.

So it's not just a case of "NDMA accumulation".

I have had experience witnessing syntheses of pharmaceutical APIs at Indian manufacturing plants, and have seen some horror stories.

The NYT reports that Sanofi's recall "applied only to the United States and Canada, and that its products sold outside the two countries were sourced from different suppliers", which is fairly common practice. So it may be that only some API makers have the problem, which is likely a manufacturing and QC problem.

fnordprefect··on Space Invaders
Great article, but I'm curious about a spelling error in it that I've seen more and more recently:

> Move so you are peaking out of the right edge

Obviously, "peaking" should be "peeking".

I don't recall seeing it much until relatively recently, and it seems to have become very common.

Have I missed something? Was it always a common homophone error? Or is there a reason for it peaking recently?

fnordprefect··on Carbonite To Be Acquired by OpenText for $1.4B
BackBlaze by far - I moved from CrashPlan when they screwed their consumer offering.

BackBlaze has a stable client (even though it lives in system extensions) that uses fewer resources, as opposed to the buggy POS that is CrashPlan. IIRC CP client is Java, BB is native.

BackBlaze's restore is far more robust (I got timeouts trying to restore large files from CP) and more intuitive.

fnordprefect··on Metal shards from Boeing 787 taking off over Rome rain down on people below
There's often also press about it - eg https://www.geaviation.com/press-release/genx-engine-family/...
fnordprefect··on Princeton theoretical physicist Steven Gubser has died
This is so sad. He was such a lovely and brilliant guy :(
fnordprefect··on A mysterious crystal that melts at two different temperatures
This is a wonderful read. Seriously impressive employment of the scientific method (the way it should be). The take-home message is probably: identify (and, if necessary, test) all of your assumptions. In this case, it was assumed that the different batches of material melted to become the same liquid, since that is pretty much how everything else melts (although that may be open to a new look now). On that assumption, the problem was intractable.

The problem was solved by someone questioning that assumption and finding out that, in fact, different samples melted to become different liquids. Once over that hump, clever application of basic chemistry principles got the rest out. Lovely work.

Page 1 of 2Next →