HNHacker News
TopNewBestAskShowJobs

goodplay

820 karma · joined December 1, 2015

submissionscomments
goodplay··on How the GDPR Will Disrupt Google and Facebook
Beginning with a partial solution to this problem is better than doing nothing at all. This sad state of affairs has gone on for far too long.
goodplay··on How the GDPR Will Disrupt Google and Facebook
Wikipedia can be downloaded in its entirety in an easy to use package. For STEM articles, it's better than Britannica (and cheaper too).
goodplay··on Disabling Intel ME 11 via undocumented mode
Then let owners control whether it's enabled or not (by a hardware switch if necessary). As it currently stands, I can't imagine a benign reason that would drive intel and AMD to lock users out of their machines.
goodplay··on Firefox Focus – A new private browser for iOS and Android
Mozilla can solve this problem the right way by doing what debian does when it wants to collect statistics: Ask users if they want to donate their information to Mozilla on first run or during the installer.

Recording users' behavior by default with informing the user clearly and giving him the option to opt-out is abhorrent, regardless of the benignity of the reason behind it.

Disclosure: I use firefox, but periodically strip all relevant hidden add-ons and disable all information sending possible.

goodplay··on FBI pushes private sector to cut ties with Kaspersky
It is, if the one master is less capable than the other.
goodplay··on California Court Orders Vinod Khosla to Reopen Disputed Beach
Why isn't he thrown in jail, or why isn't the fence bulldozed down? Where I currently live (a somewhat well-off area), bulldozers (and self-entitled assholes) are a common occurrence.
goodplay··on Ad blocking is under attack
I doubt failing to contact a server would circumvent DRM. Blocking their servers would only make their DRM scheme fail and prevent access to said copyright material.

Using the DMCA to protect company's defective and flawed DRM scheme does not constitute circumvention. As such, I do not believe that DMCA's anti-circumvention laws are relevant.

goodplay··on Ad blocking is under attack
This has nothing to do with believing that we have right to other people's work without payment. The fundamental issue is that these publishers are allowing public access to their work than expecting to have some control over how it is consumed. Hanging your painting in a public park and then demand that people not wear sunglasses when looking at it, or demanding that onlookers look at it sideways would be absurd. Don't hang your paintings in public parks. Hang it in a private gallery, and make no-sunglasses a term for admission.

Publishers would be better served if they restricted their articles, by demanding payment upfront before serving the article, rather than unreasonably and unrealistically demanding that people consume their content in a certain way. Don't blame your users for your failed business model.

As a side note, Copyright is not the place where this issue should be tackled as no copyright is being infringed (Content is not being redistributed).

goodplay··on Ad blocking is under attack
>This third party tool is making unauthorized edits to the New York Times' copyrighted material.

It's not a third party tool. It's a tool used by the first party (user) to modify information that was sent to him without effecting the publisher. I don't see how the publisher has any authority over what the user chooses to do with the information he obtained.

> I find it difficult to justify "We changed around your copyrighted work to remove stuff we decided we don't like." If you don't like ads, pay up or go elsewhere.

That's an interesting take on IP rights. By generalizing your argument, would you argue against newspaper snippets because a reader would only collect the article without adjacent ads? (with scissors made by a third-party, no less.)

> You do not have a right to anybody else's IP.

Fair use, Noncopyrightable items, old expired IP, and the public domain are all examples of rights I have to others IP. Rights have been - and I hope will continue to be - balanced between the concerns of IP "owners" and the rest of society to best serve everyone's interests. Tipping the scale in one side's favor like what you advocate here will disrupt that balance.

goodplay··on Ad blocking is under attack
>1. Can IP be encoded as a way of dodging the DMCA? a: no.

This is false if the IP being enforced is trademark (which I'm not even sure is covered by the DMCA).

goodplay··on Ad blocking is under attack
Agreed with seeking a legal solution instead of just relying on a techincal one, but if the problem is the string of characters, just hash those instead without hashing the whole host:

[HASH:1AB543.124A3CC4.1AB543]/ads

goodplay··on Ad blocking is under attack
What does ad-blocking have to do with copyright circumvention or copyright enforcement? The only think on that list is the domain name.

I'm certain that including a name in a list does not fall under copyright (ample precedent that backs it up). In the unlikey (and unfathomable) case that it is protected under copyright, I bet it would fall under fair use.

Trademark law isn't relevant to an entry in a machine database.

goodplay··on Salesforce fires red team staffers who gave Defcon talk
>DEF CON provides conference WiFi with preauthorized certificates (WPA2), so [if you remove all other known open networks] then [you can have secure and sane WiFi at the conference].

Emphasis mine. Merely "removing" networks from your device does not preclude you from being attacked. Broadcom and all the locked-down devices that aren't iphones or high-end android devices who use them demonstrate this quite nicely.

goodplay··on Salesforce fires red team staffers who gave Defcon talk
broadcom disagrees.
goodplay··on China's new “Citizen Scores” will rate every person in the country (2015)
If I learned one thing from these government programs, it's that they'll be gamed, badly.
goodplay··on The Kremlin Is Suddenly Obsessed with Cryptocurrencies Due to the Magnitsky Act
They could. However, they would risk making the currency worthless if detected.

I expect the only situation in which 51% attacks would be useful is when a party wants to deliberately destroy a currency.

goodplay··on Waiting for Apache Open Office
I disagree. To most normal users, I expect they perceive libreoffice and openpffice.org to be distinct separate projects. Only techies who have been following openoffice.org would know that one is a fork of the other (and even that distinction is starting to become irreverent as both both projects further diverge in terms of feature sets).

I also think that while LibreOffice is relatively new, it name has already begun to spread among normal users. I think it be very unwise to throw that good reputation away and start over. I also happen to be quite found of their current name, LibreOffice. I think it's classy and easy to remember.

goodplay··on Bitcoin Exchange Had Too Many Bitcoins
>they're very valuable if and only if you cannot use the protection [..]

I don't think that's entirely fair. They're also valuable to those who want to transfer money without ridiculous fees, excessive bureaucratic friction, and many mandatory middlemen.

What other system would allow you to instantly be able to accept payments without giving an exorbitant portion of your revenue?

goodplay··on 3D metal printing is about to go mainstream
As apposed to casting and cncing one yourself? People can already build guns anonymously if they want (and many do).

People can also use current 3D printers to (mostly) print unconventional guns anonymously. Do these printers also concern you?

Reaction to technology should be with reason, not fear mongering.

goodplay··on 18yo arrested for reporting a bug in the new Budapest e-Ticket system
I remember coming across a serious bug in a site that belonged to a top multi-billion company. My brother also found what essentially an unrestricted privacy leak (and possibly editing access) in a top university (leaked data is sensitive personal information, not academic). Neither of us reported (or exploited) what we found.

Protection from this kind of blame-shifting and misdirected retaliation should be guaranteed by law. Until it is, bugs in critical and important infrastructure will go on unreported, and remain available for malicious actors to exploit.

goodplay··on China forces one of its Muslim minorities to install spyware on their phones
>Considering the "muslim minorities" went on a wild random stabbing campaign and randomly injected people with some sort of syringes in public places[...]

What percentage of those "muslim minorities" actually took part in those acts? Does that percentage justify treating everyone who qualifies as "muslim minorities" like a criminal?

> The muslims have been on a non stop jihad since its inception and this is just a continuation of it.

That's not remotely true despite what extremists on both sides like to delude themselves into believing.

goodplay··on The New Firefox and Ridiculous Numbers of Tabs
Same use case here (with aprox. the same amount of tabs). I'd like to add that leaving a project's tabs open also helps me easily remember where I was in implementing a specific project, especially when I need to work on another project as its dependency. It's much more convenient than keeping notes or following last changes.

The point made is that different people will use software in different and unexpected ways. Assuming that people use browsers the same way you do, or assuming that a certain scenarios are "impossible" because you personally are not likely to encounter it will harm your userbase.

goodplay··on Ask HN: What is preventing rust from replacing c/c++?
Another reason that I don't see given its fair chance might be politics. The human race has a wide variety of values that are often counteracting. Forcing a specific set of values participants must adhere to in order to interact with the community will undoubtedly alienate adopters.

That's why most projects, companies, and even governments tend to strip down the rules that govern them to what is necessary for them to function (e.g. separation of religion from state for governments).

The common reason given by the rust community to justify their behavior is that technology does not exist in a vacuum, and that technology can not be separated from politics. I completely agree. However, politics should be tackled on a layer incompletely independent from technology. Mixing the two only causes instability and uncertainty for rust. Here are two risks that arise from this mixing. I'm sure there are many, far more serious, risks besides these two:

- What happens when (not if) a significant shift in values occurs in the community? Will it collapse?

- What about technical or legal changes to the project that were driven by community values rather than technical or legal merits? This is not far fetched when technology and politics are made inseparable in the way it was done in Rust.

I use rust in a professional context, and I appreciate what it brings in terms of technical benefits. but I would be lying if a said this aspect of it didn't worry me. I can not recommend its adoption to colleagues from other companies if asked for this very reason (I was asked once so far).

Community instability or the mere perception of such is a big barrier to adoption, at least for companies.

goodplay··on 24-core CPU and I can’t move my mouse
I always found this peculiar about linux; even when the system is swapping hard and application windows/window managers completely freeze, the cursor always remains responsive and movement rendered without so much as a hitch.

I wonder if xorg has some sort of kernel support to enable this.

goodplay··on A JavaScript browser library fails due to an adblocker blacklisting 'beacon.js'
Can you really blame them? Websites became hostile to users and users reacted. I don't know what your software is, and this certainly isn't directed at you, but if I'm forced to make a choice between using an ad blocker or using some software, I'll always choose the ad blocker (unless I was forced to use said software), especially if there are alternatives.

There are no real alternatives to using an ad blocker.

goodplay··on Wildcard Certificates Coming January 2018
I always disable mixed content so I honestly wouldn't know browsers indicate mixed content. I was under the impression that yellow was used. Apologies for the confusion.

My point in my previous comment was that browsers should consider exposing the distinction between EV and DV certs to the user in a way that doesn't break their mental model of how browsers indicate the security of websites. How this is implemented is probably better handled by others more knowledgeable in UI design than I.

goodplay··on Wildcard Certificates Coming January 2018
Hopefully not. Domain name similarity does not fall within the scope of DV certs.

For the usability problem you're hinting at, people mistaking DV certs for EV certs, I believe web browsers should consider demoting the color of the pad lock displayed for DV certs from green to plain text color, while still retaining the pad lock symbol (plain http would still be red). This solution would both provide enough distinction between the two types of certs to the normal enduser without retraining them; "look for the green padlock" would still hold.

That said, 17k (even multiples of this) is still a rounding error compared to the total number of certs issued. I believe the public good done here far outweighs the bad.

goodplay··on RFC: Evolving Rust Through Epochs
This is good news for us who want alternative implementations like gccrs. GCC (and software developers) can target static "epoch"s (c89, c99, c11, ...) rather than a moving target.

Hopefully, this will be enough to make development of GCC's rust front-end viable again.

goodplay··on Finance sites erroneously show Amazon, Apple, other stocks crashing
Not gp, but I would personally expect a taxi driver to be better than me seeing the amount of time the diver spends on the road. The driver wouldn't be profitable otherwise.

That said, I also mirror gp in that any self-driving car must be at least better than myself for me to trust it. I imagine that's a sentiment shared by many people.

goodplay··on Cicada – Unix shell written in Rust
As an end-user, I do. Being prevented from fixing my own (expensive) device is not something I would voluntarily subject myself to. For context, here's a comment I posted a while ago (https://news.ycombinator.com/item?id=13527205):

I used to be a big fan of permissive licenses until I bought a $700+ android phone a couple of years back and discovered that it did not "support" my native language (it could render the glyphs but system-wide support was not enabled).

Having extensive experience with unicode and how text is usually rendered, I knew exactly how to fix the issue; the fix was likely as simple as injecting an SO that hijacks a specific system library function. However, because the phone was locked down, I was unable to fix the problem myself. All important system apps including SMS and the browser displayed gibberish.

It was the most expensive brick I ever bought. This experience taught me the true value of the GPL and why user freedom far outweighs the freedom of developers

Page 1 of 7Next →