HNHacker News
TopNewBestAskShowJobs

ignoramous

18,810 karma · joined June 15, 2011

mz at celzero dot com

https://rethinkdns.com/

follow:

sec: tptacek, moxie, nickpsecurity, strcat, agl, SwellJoe, drewcrawford, schoen, mirimir, secfirstmd, mjg59, userbinator, gorhill, rgovostes, lallysingh, malandrew, mikewest, jedberg, wtarreau, michaelaiello, segmondy, whitequark_, jsnell, salgernon, geofft, jlund, sinak, alecmuffett, mrb, nneonneo, pwg, viraptor, indutny, jart, Danenania, cyphar, lisper, drfuchs, mahmoudimus, lrvick, woodruffw, lvh, FiloSottile, pgl, mh_, amarbi, psanford, jedisct1, lotharrr, axoltl, cperciva, sleevi, kwantam, syncsynchalt, Moral_, saurik, cryptonector, JoachimS, j2kun, woodruffw, bjackman, nneonneo

start: pg, sama, garry, mbesto, coffeemug, davidu, rms, xal, malgorithms, Alex3917, jacquesm, jl, AndrewWarner, emmett, ig1, anateus, lpolovets, ivankirigin, sahillavingia, Joshua, ericflo, immad, rdl, joshfraser,s gdb, grellas, gatsby, mayop100, bryanh, josephsunny, ayw, pbiggar, sytse, csallen, joshu, jhuckesteinm, pclark, whockey, sjtgraham, jenthoven, aresant, mayop100, cmdrtaco, zt, erohead, tomhoward, drderidder, rfrey, pauldix, akcreek, mojombo, salsakran, armon, drob, pavlov, goodmachine, snowmaker, sorenbs, simonw, zds, jessepollak, raviparikh, buf, paraschopra, ahaseeb, james_impliu, skrish

prog: aphyr, KiranDave, peterwaller, saosebastiao, amirmc, lhorie, judofyr, nikita, huhtenberg, pron, Animats, dmbaggett, chris_wot, aaronbrethorst, grey-area, drewg123, dom96, jashkenas, rich_harris, jordwalke, Homunculiheaded, mark_l_watson, kibwen, Sir_Cmpwn, KenoFischer, ahoyhere, scrollaway, trishume, dbaupp, skrebbel, cryptica, peterhunt, rauchg, TazeTSchnitzel, syrusakbary, megous, jemfinch, fogus, jcelerier, 1st1, anderskaseorg, willvarfar, Veedrac, kodablah, mraleph, enriquto, joosters, loeg, jorangreef, ot, asicsp, felixhandte, ezmobius, r1ch, luckydude, btilly, dherman, Manishearth, carllerche, gregdoesit, q3k, codahale, kuschku, _vbdg, enneff, phiresky, mitchellh, JoshTriplett, NovaX, kmavm, nullc, EvanYou, colanderman, sadiq, sereja, ot, pfdietz, c-smile, xena, WalterBright, izacus, bradfitz, scott_s, pizlonator, pojntfx, lifthrasiir, kentonv, barsonme, rspivak, tekknolagi, ndesaulniers

systems: brendangregg, DannyBee, steveklabnik, fsk, pcwalton, jbk, ajross, yosefk, netguy, minimax, munificent, ColinWright, beat, zwischenzug, derefr, jandrewrogers, shykes, lallysingh, dochtman, SamReidHughes, hnkimb3558, rurban, gonzo, bogomipz, marknadal, mazieres, bramcohen, koverstreet, bkanber, mafintosh, ksec, amluto, kyledrake, mrkurt, dsl, dspillett, kevinburke, catwell, kmod, scarface74, eru, sanxiyn, znpy, influx, ncmncm, toast0, evil-olive, bonzini, monocasa, ncopa, bfirsh, jefftk, tlrobinson, kiwicopple, stavros, alexellisuk, hardwaresofton, jhgg, jeffbee, hinkley, danielbmarkham, cpuguy83, silverstorm, josephg, tialaramex, apenwarr, nocarrier, KMag, kllrnohj, astrange, bayindirh, inkyoto, fweimer, mananaysiempre, antics

mods: dang

philosophy: mbateman, samd

bio: Fomite, comicjk, anderspitman, danieltillett, wgrover

linux: rwmj, pdkl95, linuxlizard, polvi, phillips, zozbot234, wmf, beagle3, megous, bcrl, cdesai, lgierth, monocasa, loeg, swetland, jchw, abarth, microcolonel

misc: phkahler, davidw, antirez, gwern, patio11, jgrahamc, darksaints, jamwt, nostrademons, plinkplonk, mikekchar, holman, mikeash, edw519, jrockway, noonespecial, staunch, petercooper, jmathai, tzs, jacques_chester, coldtea, peteretep, happy-go-lucky, aaronbrethorst, mtgx, codingdave, jawns, jvns, CPLX, tomcam, ethomson, HenryR, JoeAltmaier, jerf, pjc50, dmix, jcr, alexbowe, JulianMorrison, adamnemecek, capnrefsmmat, detaro, calinet6, dargonwriter, tootie, kqr, comex, eloff, andersource, dantiberian, lern_to_spel, swyx, pgeorgi, sago, zokier

os: vezzy-fnord, rbehrends, vardump, amirmc, pjmlp, rsync, waddlesplash, eyberg, penberg, ambrop7, shuss, amscanne, tytso, surajrmal, captainmuon, Morgawr, quotemstr, olliej, kllrnohj, pizlonator, tadfisher, faragon

db: craigkerstiens, teraflop, ifcologne, espeed, gopalv, thekozmo, lorenzhs, SQLite, mytherin, pgaddict, sumeer, NovaX, arjunnarayan, dmoura, eatonphil, cube2222, zX41ZdbW, benbjohnson, JoelJacobson, benesch

graphics: pcolton, Jasper_, macawfish, kvark, Agentlien, shmerl, Atrix256, jasondavies, bhickey

net: zx2c4, keithwinstein, bsder, walrus01, apenwarr, newman314, stuntprogrammer, bluejekyll, jlgaddis, revertts, samcrawford, wahern, brian-armstrong, lrizzo, kev009, muppetman, Nrsolis, signa11, majke, shaklee3, emmericp, zamadatix, Sean-Der, techsupporter, downwithbgp, p1mrx, ghshephard, matsur, vasilvv

x/aws: colmmacc, _msw_, aligouri, illumin8, jcrites, socttlegrand2, openasocket, otterley, mslot, bbgm, NathanKP, appwiz, planckscnst, blasdel, mjb, ragona, donavanm, grogenaut, jeffbarr, twirrim, jtoberon, fnordpiglet, scarface74

x/nvidia: jebarker

x/google: kortilla, moultano

ai: jph00, eli_gottlieb, iandanforth, karpathy, mjn, nl, albertzeyer, bravura, michael_nielsen, dgacmu, cs702, emu, lhl, espadrine, edwardjhu, binarymax, jll29, MontyCarloHall

bootstrap: arvidkahl

crypto: jaekwon, tipsysquid, Taek, daeken, pbsd, davidcash

a11y: mwcampbell

eee: geerlingguy, sowbug, ta8645, mmmBacon, gchadwick, femto

submissionscomments
ignoramous··on Turn And Face The Strange
> Kurt personally working with me to help debug our deployments

Typical Kurt in Founder Mode. For the first 3+ years (immediately following their "launch hn"), Kurt was almost ever present in the forums.

> claim strong enthusiasm for Sprites

Fly.io has had their own share of problems with various features they've built, but once the lego blocks fit & click, there isn't a New Cloud better at DX than it. Though, like TFA points out, the world since Opus 4 has looked very, very different.

ignoramous··on Turn And Face The Strange
Scott was instrumental in turning around Docker (which was "broken" [0]), after a $23m Series B raise from Arjun Sethi at Tribe Capital: https://medium.com/better-programming/the-greatest-startup-t... / https://archive.vn/loTwW

[0] Some interesting remarks on it by Bryan Cantrill: https://news.ycombinator.com/item?id=28460504

ignoramous··on Android May Soon Restrict On-Device ADB
> spyware to be installed as a device administrator, granted accessibility privileges, and then given every possible Android permission via AppOps

Correct, and apps using these setups (even for genuine reasons) have been under the cosh.

> At that point, ADB no longer matters.

"on-device adb" wasn't meant for scenarios it is being used for (via Shizuku, for example). It is a pointless attack surface.

> anyone with physical access to the phone would still be able to install and configure their spyware via a USB cable.

This same case can be made in support of removing on-device adb. Anyone with physical access can install & configure for their use cases. If you claim that's more hassle than worth, then you have your answer (that is, added hassle for stalkerware sellers, too).

Disallowing on-device adb is restrictive (I co-develop a security app that can absolutely make more from elevated permissions, via Shizuku or Device Admin; let alone root), but I don't think Google will do so because they want to close Android (the platform) more than they need to. To me, given the very human costs of stalkerware & financial fraud, it is an understandable, even if disappointing, security decision. Otoh, I do get that the road to hell is paved with good intentions...

ignoramous··on Android May Soon Restrict On-Device ADB
No.
ignoramous··on Android may soon restrict on-device ADB
The article overlooks security implications from spyware, which is a huge problem not only for financial applications, but personal safety, too [0].

Per FTC, a stalkerware will: geo locate, read call list & record calls, read notifications, texts, & possibly emails, access gallery, camera, & files, and monitor network activity. [1]

You could do all of those with "on-device adb" (in some cases, with just the appropriate permissions), without root access. Stalkerware & financial fraud enabled merely due to the scale & reach of Android (half of humanity uses it!) and lack of basic security literacy warrants such protective measures, as (Thaler & Sunstein would like to remind us) defaults matter.

With conspiracies abound, we must not lose sight of tech safety and related issues, which almost exclusively affect the most vulnerable & the most disadvantaged.

[0] https://www.techsafety.org/spyware-and-stalkerware-phone-sur...

[1] https://consumer.ftc.gov/articles/stalkerware-what-know

ignoramous··on Show HN: Echo – Fable-level results at 1/3 the cost using open-weight models
You need update your blog posts.

  Our whole stack is radically open source — frontend and backend alike, Apache-2.0 licensed — and so is everything behind this benchmark. That is how a benchmark number earns trust: verifiability, not hype.
The repos have since been moved to BUSL-1.1: https://github.com/Lore-Hex/quill-router/commit/8155ac666ae0...
ignoramous··on Escape Analysis in Go: Stack vs. Heap Allocations Explained
Do-able in many low-income countries but it'd be borderline miserable, by modern consumption standards.
ignoramous··on Show HN: Echo – Fable-level results at 1/3 the cost using open-weight models
Mixture of Models, perhaps? tbf to OP, the setup they're proposing has also been recently evangelized by other "ai gateway" products (like OpenRouter, JusCode, Fireworks etc), so there's likely something useful here.
ignoramous··on Alphabet's cash burn raises alarm for Big Tech as AI spending climbs
I see eventuality here as job cuts or salary cuts.

Don't think that day is far when "software people" are paid as if they were taxi drivers.

ignoramous··on Terence Tao's ChatGPT conversation about the Jacobian Conjecture counterexample
> I can't use it for theoretical physics because I can't evaluate the responses.

A tool, even if it is a chisel, in the hands of a master sculptor would obviously result in a wildly different outcome.

ignoramous··on Annoying and alarming things about OpenCode
The free OpenCode Zen models (I've only had the need for DeepSeek v4 Flash & MiMo v2.5 for one-time / throw-away tasks) did work, for me, with GitHub Copilot & Reasonix.
ignoramous··on A digestion of the Jacobian conjecture counterexample
Sounds like 3 more iterations on K3/Fable, and we'll able to ask it to break computational hardness assumptions like DLP?
ignoramous··on A digestion of the Jacobian conjecture counterexample
> I'm bad at math ... he includes the GPT5 prompts for his conversation, which are easier to follow

You were kidding, right?

ignoramous··on Kimi K3 Is Competitive with Fable; Kimi K3 and Fable Is SoTA
Simplest way is to signup to OpenRouter and filter out all non ZDR (zero data retention) providers. Paying "API rates" however can prove expensive compared to coding plans (for instance, MiniMax $20/mo coding plan allows 1.7b tokens; depending on input/output/cache ratio, it is worth $200 to $500+), except for Hy3, DeepSeek v4 Pro, and MiMo v2.5 Pro (whose API rates are cheap and/or discounted already).

If you're looking to not have to deal with Chinese providers, AtlasCode ($20/mo), OpenCode Go ($10/mo), and Cline Pass ($10/mo) provide 2x to 6x usage for some of the popular open weights (depending on the model).

Personally, I subscribe to Z.ai ($17/mo), and pay API rates for MiMo v2.5, Hy3, Qwen 3.7 Plus, & DeepSeek v4 to the original providers (Xiaomi, Tencent, Alibaba, & DeepSeek).

ignoramous··on Gemini 3.6 Flash, 3.5 Flash-Lite, and 3.5 Flash Cyber
> focusing on what they can get wins in like speed instead

Speed as a differentiator has always been Google's thing. They (used to?) show the microseconds it took to query & rank web-scale search results. Chrome, notoriously, focused on speed at the expense of resource use. The very many efforts to efficiently speed up Android & its runtime since its inception, and so on...

> their big model underperforms chatgpt 5.6

Possible but TFA claims:

  We have started our most ambitious pre-training run yet, for Gemini 4 ...
ignoramous··on Who's afraid of Chinese models?
> "The highest tier Chinese models are not more economical than US frontier models. Try GLM 5.2 and see how much it costs to do real work. I did, and it was more expensive than GPT 5.6." This is a flatly false statement.

It may not be false but may be a "category error" [0]. Reserved GPU pricing & bulk inference pricing is 3x to 6x cheaper than "API rates", but renting your own GPU cluster (in this crunch) to run a 600b+ open weights is going to be "more expensive than GPT 5.6".

Even then, it remains to be seen if Huawei will pull their weight (and match up to Nvidia) as spectacularly as their fellow Chinese AI Labs have. If so, the WAICO alliance is ready to go all-in.

[0] Ben, and probably other "influencers" in this space, may be prone (knowingly or unknowingly) to favour points that make their conclusion for them (https://en.wikipedia.org/wiki/Motivated_reasoning).

ignoramous··on China’s open-weights AI strategy is winning
Don't think it is down to Wang or MSL but Meta's focus on "personal AI" led them to whatever strategy (OAI missed the developer market too, which Ant then captured; leading to several high profile departures at OAI, coincidentally hired from Meta). The original Llama team themselves started Mistral which hasn't gone anywhere. The simple fact of the matter here is, Chinese firms have the money and the talent to rival the US ones in this field, should they as much miss a beat.
ignoramous··on Claude Fable produced a counterexample to the Jacobian Conjecture
Don't think HN is anti-AI but experts of course may have a different perspective. A comment in this discussion points out that LLMs have been doing math that's been long overlooked in favour of perhaps more impactful work: https://news.ycombinator.com/item?id=48974274

  There isn't a lot of money in academic math, and the ones that love it don't look for low value findings. Proofs like these are ... usually the domain of hobbyists ...
ignoramous··on Claude Fable produced a counterexample to the Jacobian Conjecture
This makes me wonder, what if anyone uses Fable-class LLM and passes of its novel results as their own work?

There's no shortage of folks doing that in software, right now.

ignoramous··on Bananas sprout in Rayleigh Garden UK after 15 years
Erstwhile seafaring powers went to war over trade routes for these. Surprising it isn't that well known.
ignoramous··on Moonshot AI suspends new subscriptions due to Kimi K3 demand
Curious: On which plan? In my experience, their $20 plan is super inadequate as a daily driver (ditto for Qwen's $30/mo), though given K3, I'm tempted to trial $49/mo or $99/mo.
ignoramous··on The Kimi K3 Moment
> It's cheap enough to where I don't think about cost, made even cheaper by DeepSeek having the most effective and cheap caching in the industry

I use DeepSeek v4 Flash & MiMo v2.5 Pro. Prefer the latter over DeepSeek v4 Pro because it costs the same while being equally good & less chattier for coding workloads. Although, I've begun experimenting with Hy3 (as an in-between Flash & Pro) & GLM 5.2 (for long-horizon tasks).

ignoramous··on The Kimi K3 Moment
> tried Kimi K3 on a task I've done with every other model I use regularly and found it chewed a lot longer on the problem and ate up almost the entirety of a 5 hour usage limit on their $19 plan

ArtificialAnalysis puts Kimi K3 just below DeepSeek v4 & GLM 5.2 in token use per task, which is about 2x to 3x more tokens than Grok 4.5: https://x.com/ArtificialAnlys/status/2077832879187620192 / https://archive.vn/zBbFi 2 other open weights MiMo v2.5 & MiniMax M3 are comparatively thrifty.

> Subscription usage limits are hard to measure as none of the providers tell you directly what it means in terms of tokens or anything else you can easily compare

I always put my coding subscriptions (that allow it) through "AI gateways" (Cloudflare & OpenRouter are free) which help track token use.

In my experience, Kimi & Qwen Cloud have opaque & restrictive limits, their "credits" drain faster. I now make it a point of subscribing (directly [0]) with providers that are transparent like MiniMax, DeepSeek, Xiaomi, & Z.ai.

[0] OpenCode Go, Cline, and AtlasCloud have generous limits for open weights, otherwise.

ignoramous··on Kimi K3: Open Frontier Intelligence
Open weights are indeed a commercial risk because there's no shortage of companies that'll make a business out of running MaaS (model as a service), close & resell a fine-tuned or distilled variant (DeepSeeking of Llama / Cursorification of Kimi, for example).
ignoramous··on Kimi K3: Open Frontier Intelligence
> Android was initially developed for phones with a keyboard (similar to Blackberry).

It was codenamed "Astro Boy". Btw, the team Andy Rubin assembled to build "android" first built OS for Digital Cameras viz. FotoFrame.

ignoramous··on Kimi K3: Open Frontier Intelligence
> I'll make a prediction

You just hope that BigLabs & BigTech doesn't gut out the talent from Chinese labs. They certainly have the money & impetus.

ignoramous··on Kimi K3: Open Frontier Intelligence
Astonishing. Considering none of the BigTech except Google (Microsoft, Apple, Meta, Amazon, Nvidia, SpaceX) have managed to challenge OpenAI & Anthropic frontier models, such achievements are scarcely believable.

Re: GLM-5.2: For a ~750b model, it holds up pretty good against models 3x its size (and ~10x the cost). Same goes for Tencent Hy3 and MiniMax M3, which almost match Opus 4.6 levels with ~295b params.

ignoramous··on Kimi K3: Open Frontier Intelligence

  The full [Kimi K3] model weights will be released by July 27, 2026. Further details on the architecture, training, and evaluations will be released alongside the Kimi K3 technical report.
https://archive.vn/KBzXr
ignoramous··on Ente – Opening Our Books
OP's point is, as a consequence of providing "useable security", the secret keys remain "exportable" (in this case, unwrapped in a URL fragment), which is an undesirable trait in some threat models. Let alone web-based cryptography, which in on itself is perilous: https://news.ycombinator.com/item?id=39436238
ignoramous··on Kimi K3: Open Frontier Intelligence
> continuing to refuse to use chinese models due to security and IP concerns

One can run open weights in an exclusive TEE'd GPU too, which still comes out cheaper than closed weight LLMs. Ex: https://chutes.ai/pricing

← PreviousPage 5 of 34Next →