HNHacker News
TopNewBestAskShowJobs

innocent_name

25 karma · joined July 19, 2026

submissionscomments
innocent_name··on 5x faster Edge Functions: V8 isolates to Firecracker MicroVMs
https://unikraft.com/blog/netlify-edge-functions and https://slicervm.com/ both using the lookalike slop design template made me to believe it was a shadowy unikraft project lol.
innocent_name··on Jensen Huang says AI distillation is 'competition.'
Yes, see ROCm.
innocent_name··on Jensen Huang says AI distillation is 'competition.'
>he doesn't think kids should learn their multiplication tables

He said „The majority of the kids shouldn't learn”, not everybody. I listened to that pod and was under the impression that he wants to be portrayed as a "grounded" person and i didn't find his takes to be out of touch.

innocent_name··on Dutch governments builds alternative for Microsoft based on NixOS
Ask your llm, scroll through some meme pages!

https://x.com/MemesOfNixOS/status/1942271466894217321

innocent_name··on Radicle: Disclosure of Vulnerability in the Network Protocol
>this should help camouflage the traffic

How? QUIC is easy to fingerprint and flow classificate:

https://datatracker.ietf.org/doc/html/rfc9000#section-12.1

Speaking of bold claims, Iroh, just like Radicle, are overselling themselves:

>iroh's QUIC multipath implementation automatically switches between Wi-Fi, cellular, ethernet, LAN, LoRa, HaLow, Tor, Bluetooth—or bring your own transport.

The thing is, QUIC multipath isn't standardized.

innocent_name··on Radicle: Disclosure of Vulnerability in the Network Protocol
I don't think the consumer ecosystem is mature yet.

Adding a cert to my Android phone was a huge pain in the ass. Most homelab apps like Jellyfin don't support it. The homelab space is so buck broken it assumes i don't have a public IP address to just expose things without going through the convoluted VPN setup.

innocent_name··on VSCode's SSH Agent Is Bananas (2025)
Moreover, it explicitly breaks in VSCodium and no good alternatives exist.
innocent_name··on Backups Aren't Simple
>Borg ... fantastic

I needed to temporarily move off 20TB from my NAS and bought a Hetzner storage box.

I wanted to encrypt the data before sending it so i went with the borg ssh mount. Long story short, borg failed a couple of times due to https://github.com/borgbackup/borg/issues/7672, i resumed it per documentation and got 2gb of silently corrupted data. There was no way to do data integrity checks due to broken pipes and there was no option to resume the job from the previous point either. I couldn't afford to go with the s3, backblaze wasn't an option due to placing trust into their proprietary client doing the encryption and i got majorly screwed in the end.

innocent_name··on Backups Aren't Simple
>Motivated by our success in developing this solution, we try to use it to backup the homelab with its 10 Docker containers. But later we find out from logs on the individual machines that backups are failing. The reason being that many Docker containers like to create root-owned files, and if you’re not careful you can create a cronjob running as the default user.

and a privesc also.

innocent_name··on The case against JPEG XL
Oh, i left the wrong quotation whereas i intended to reply to another message. Throughout the blogpost you're quality matching and comparing encoders based on objective metrics whereas it'd be more telling to get the crowd subjective comparisons. I think it's pretty evident that most codecs benchmaxx to the point of objective metrics being useless.
innocent_name··on The case against JPEG XL
>Even still, the demo proves that AVIF can deliver a usable image with up to 3x as fewer bytes as JXL!

I was taught to be skeptical of objective benchmarks; Why should we trust them when people are benchmaxxing?

https://habr.com/en/articles/700726/

innocent_name··on The case against JPEG XL
>Maybe a lossless re-encoding of my website JPEGs to gain 20% size is not worth the 33%

I was unpleasantly surprised when jxl's reference encoder dropped critical exif tags for no reason whatsoever from my personal archives. Turns out their lossless preset wasn't really lossless.

And then webp to JXL conversion also produced different viewing experience results as ffmpeg's webp decoder wasn't handling ICC correctly.

I'm now very cautious of any "lossless" re-encodes.

innocent_name··on Cloudflare AKE cuts origin HelloRetryRequests from 52% to 3.7%
>they compulsively send useless requests

Those requests aren't useless; They clearly optimize. What a silly take.

>to your servers

To their customer's servers, right! Most people turn on other CF optimizations like h2/h3 to origin.

innocent_name··on Android NAT-T keepalive offload bypasses VPN lockdown
>There is no update the GitHub issue for 2 weeks except for deleting a comment by the reporter yesterday.

Yeah, i was very confused by that, especially after they invited them to post publicly/privately. They love controlling the public communications when it comes to researchers. I remember ryrona, a guy who found VPN leaks, being censored for no reason whatsoever in their public GitHub issue tracker.

innocent_name··on Forgejo <=16.0.3 Critical RCE
I alluded to business needs, not homelabs. Even-so, GitLab has a helmchart while Forgejo doesn't and is seemingly more secure so idk.
innocent_name··on Forgejo <=16.0.3 Critical RCE
The opex and security fine costs of moving off managed services like GitHub/GitLab are catching up.
innocent_name··on Tell HN: OpenAI keeps re-enabling the 'allow training' setting
Let's not down vote a factually correct comment that makes you emotionally disagree with me. I'm very concerned in regards to my privacy, I've studied ToS of: Openrouter, Anthropic, Anthropic business, opencode Go etc. I've double checked my understandings by GDPR exporting all my data. Anthropic sub listed a generic "logged in from Linux", "UA", "timestamp", "Country". That's it.

I want to discuss actual facts, observations and not your shallow social signaling replies of 0 value.

innocent_name··on Tell HN: OpenAI keeps re-enabling the 'allow training' setting
AFAIK, the court held that the problem was that they had acquired books by pirating them, not that they trained an AI on those books. They do train on user generated data by default, but you can opt out, that's the whole point.
innocent_name··on Tell HN: OpenAI keeps re-enabling the 'allow training' setting
User doesn't understand how public links indexing works.
innocent_name··on Tell HN: OpenAI keeps re-enabling the 'allow training' setting
I do trust Anthropic, i haven't observed them doing super shady stuff like hiding the training consent page and making you WAIT for it to activate.
innocent_name··on QBittorrent breaks out of sandbox to commit crimes
it's funny to see the very same pro piracy, pro AI edgelords suddenly getting all riled up against the alleged copyright infringements. I remember a socialistic coworker of mine—that was bragging about his -arr setup—talking about the end of the culture because authors aren't earning money.
innocent_name··on The cloud gaming dream is dying – Xbox places limits on Xbox Cloud Gaming
I don't see how Nvidia's obviously superior offering is dying.
innocent_name··on Play Store blocks AuroraStore, hurting GrapheneOS users
>For extra privacy, you can sign into the Play Store with a Google Account that isn't tied to anything else.

Like my personal phone?)

Installing Google Play service is in itself a privacy downgrade.

innocent_name··on Debugging my new network, when 10 Gigabit Ethernet Runs at 300 Megabits
>I226-V

I hate this piece of shit with a passion. But hey, at least they gatekeep the worst kinds of firmware updates in their OEM pages!

https://github.com/BillyCurtis/Intel-I226-V-NVM-Firmware

I'm honestly surprised Intel doesn't provide do fwupd crate, it's such a blow to their reputation considering how popular 22x NICs are in Mini PCs and even ASRock mobos

innocent_name··on Creepy Crawlies
Why can't they just ask Linux Foundation for 96, or even 1696 cores?

If you're reading this - go ahead and see HOW Linux Foundation spends their money.

innocent_name··on U.S. sanctions against the A/I Collective
Michael Tracey, we really need you here...
innocent_name··on Tailcat – Like netcat, but over Tailscale’s data plane
How do you guys deal with nix & go cache? i hate when nix cold starts builds, tests without go cache.
innocent_name··on RustDesk now supports true unattended remote access on Wayland
Have you tried reading the docs?

>RustDesk is a single open-source application (AGPL) with its own architecture. Clients connect outward to an ID/rendezvous server, which brokers a peer-to-peer or relayed session. Per the RustDesk documentation, traffic is end-to-end encrypted (built on NaCl)

innocent_name··on RustDesk now supports true unattended remote access on Wayland
>does not support encrypted connections when self hosting

Factually incorrect. If you self host a relay/coordination server - encryption works as documented.

innocent_name··on Codeberg Bans Cryptocurrency Projects
Social signaling, surprise surprise!