HNHacker News
TopNewBestAskShowJobs

m-app

354 karma · joined October 10, 2012

Solutions Engineer @ Cloudflare - but posts/opinions are my own.
submissionscomments
m-app··on End-to-End Encryption Plugin for Yahoo Mail
It doesn't have to pass through anything but if the '/addNSAbackdoor.sh' script just adds a routine to the code that adds the Public Key of an NSA owned key-pair before the encryption process, then the NSA can pick it up from any Internet-tap they have and decrypt it.
m-app··on Boston Dynamics' New Robot – Spot
It's just a walking robot. Drones have been here for a lot longer and already carry deadly weapons. Following your logic, you should've been scared and running for years already.
m-app··on The UX Reader
I recently bought a Kobo e-reader, but since I do not read much books but mostly articles, I mostly bought it for the Pocket Wifi sync capability.

This looks like an interesting idea as well but I'm not really into UX. Does anyone know any similar publications in other areas?

m-app··on DigitalOcean now supports FreeBSD
You still get a /64 at DO, though. So this doesn't hold true.

EDIT: Should add that you do not get a complete /64, but 16 addresses from a /64. Probably in a private VLAN or something.

m-app··on Candy Japan 2014 Year in Review
Great write-up, Bemmu. Glad to hear Candy Japan is still going strong. I had a subscription for a couple of months last year, I got my first batch right after we met on a warm sunny day here in Amsterdam!

Unfortunately I had to cancel the subscription, though. This is because the frequency was just too high for me. Although I do love all the weird and funny types of candy, I'm not that much of a sweet tooth and some of the candies kept piling up! If 2015 also brings different types of subscription, I'll probably sign up again for once a month.

All the best!

m-app··on Show HN: Artful for Mac
Kuvva indeed showcases contemporary art by featured artists changing every week. I've been a happy user for years and would definitely recommend checking it out.
m-app··on OSIRIS spots Philae drifting across the comet
Note that the final image in this mosaic (labeled 15:43) is not the final resting place for Philae. They still do not know exactly where it landed.
m-app··on SHA-2 Certificates Now Available from SSLMate
Just amazing how easy (and free!) the upgrade was. Thanks, SSLMate!
m-app··on The Imitation Game Cryptography Competition
The math symbol one is really challenging... I did throw together a small bruteforcing script for the Enigma code:

https://gist.github.com/michielappelman/90cd7267781e8e67511d

Happy puzzling!

m-app··on Reversing D-Link’s WPS Pin Algorithm
A while ago I found out that the D-Link router I had (655), had some XML output available for DHCP Lease status and interface statistics. I also noticed that these stats only became available after logging in initially from a certain IP/MAC (no session state kept). The router gives a salt that is valid for a while and on the client side that salt is used together with the password to generate a hash which is used to login. You can then proceed to retrieve the XML data.

In case anyone is interested, the (very hacky) scripts are on Github: https://github.com/michielappelman/router-stats

m-app··on The Search for MH 370 (Inmarsat)
Might be a lack of oxygen, similar to Helios Airways 522?

http://en.wikipedia.org/wiki/Helios_Airways_Flight_522

m-app··on Cumulus Linux – first impressions
"I think it is very safe to say that most dedicated "smart" network hardware is going to disappear in the next 5-15 years to be replaced by virtual machines acting as several pieces of network equipment."

I agree with this idea in that most of the intelligence will be pushed out towards the edges of the network and overlay networks will make a lot of the physical network invisible to the applications and even the management. However, this does not mean that the networking hardware can all be just dumb devices. First of all, this kind of imperative networking will not scale to large data center implementations and secondly dumb devices will become useless once disconnected from their controller.

"It will be interesting to see if Cisco jumps aboard this train or continues to pretend like the sands underneath it aren't shifting. I'm sure there would be a market for VMs running Cisco's IOS, it is still by far the most popular network operating system."

The way Cisco is getting into the SDN market is by leveraging Application Centric Infrastructure (ACI) to define the complete DC (Compute, Storage and Network) with templates and letting the whole system configure itself. The switches supporting this infrastructure are based on merchant silicon in combination with Cisco ASIC's to provide the most optimal performance at these intelligent edges. Add to that the available open API's and the investment in OpenStack and you have a rock-solid and cost-effective solution for the future of the DC and DevOps.

Cisco ACI: http://cisco.com/go/aci

I would love to talk about it more if you want. These are exciting times. Hit me up on email or IRC.

(Disclaimer: I work for Cisco but these thought are still my own, yada yada)

m-app··on All About ATM Skimmers
Don't want to come over as a nitpicker, but the correct term here would probably be a 'cat-and-mouse game'.
m-app··on Minix 3.3.0
I think you misunderstood the use of the word education here. The grand-parent post did not mean the education community as a whole that is using (or even knows) Minix, but just that Minix is used to educate. Specifically educate Computer Science students on how OS's work.
m-app··on Building My Own Home Router
I was intrigued at first especially after reading the comparison with Cisco and Juniper gear and seeing that the Ubiquiti was out performing them. But when I read up on the forums I noticed that as soon as you enable any interesting advanced features the performance will drop because hardware offloading is disabled. A couple of examples: a modify firewall rule, load-balancing, netflow, QoS and probably many more.

For a couple of end user benchmarks: http://community.ubnt.com/t5/EdgeMAX/kernel-compilation/td-p...

m-app··on Show HN: Hnguardian, a bot for the new #hackernews channel on Freenode
Seems that the Algolia API has some delay in it though (or is hitting the same rate limit?). I've updated my bio some 10 minutes ago but it's still not propagated.

Edit: Had a little more patience, which paid off.

m-app··on The Chairless Chair, an invisible chair that you can wear
These guys are definitely streets behind:

https://www.youtube.com/watch?v=OxzypwdDdo8

m-app··on Stealing unencrypted SSH-agent keys from memory
Well, it prevents your private key from being compromised but an attacker with root on the intermediate box can still authenticate to other servers using your SSH agent socket.

If you really want to do secure SSH hopping, use the ProxyCommand directive with `netcat` in your SSH config.[1]

[1]: http://en.wikibooks.org/wiki/OpenSSH/Cookbook/Proxies_and_Ju...

m-app··on Show HN: Ripple, an app for sending links to your friends
Pushbullet does this really well. The only problem I have with it, is that when I do send a link to my cellphone and I touch it in the app, it automatically opens it in Chrome. Then I still need to select the URL there, copy it and paste it in WhatsApp. Or maybe I am missing something?
m-app··on How a Raccoon Became an Aardvark
For the lazy curious, the offending commit: http://en.wikipedia.org/w/index.php?title=Coati&diff=2251408...
m-app··on Amateur hour at AWS
BTW, I remember from the CloudFlare blog that they were notified in advance of the bug and had already patched it. How come big names like AWS and Heroku did not get this prior information? Who decides on which companies hear it before the public does?

From the Cloudflare blog: "This bug fix is a successful example of what is called responsible disclosure. Instead of disclosing the vulnerability to the public right away, the people notified of the problem tracked down the appropriate stakeholders and gave them a chance to fix the vulnerability before it went public."

-- http://blog.cloudflare.com/staying-ahead-of-openssl-vulnerab...

m-app··on PirateBrowser - No more censorship
> "This is how it looks like."

I seem to come across an increasing number of occurrences of the phrase 'how it looks like' (and derivatives). This, to me, sounds very wrong and is starting to annoy me more than I'd like... But since it seems to become more widespread, maybe it's me? (non-native English speaker, btw)

m-app··on A Crypto Challenge For The Telegram Developers
I have been saying this a couple of times in similar threads, but I think Threema [1] deserves a little more attention. Complete end-to-end encryption using NaCl. The interface they created is simple and gets the point across. Also, they're actually saying "don't trust us!", which ironically makes me trust them.

[1]: https://threema.ch/en/

m-app··on WhatsApp on your computer: Pidgin plugin
"Very secure. We are based on a new protocol, MTProto, built by our own specialists from scratch, with security in mind."

I do not think that is such a great idea. I still vote Threema: https://threema.ch/

m-app··on Show HN: Backtick – A console for bookmarklets and scripts
Cool! Created a Pocket command from the bookmarklet, went really smooth:

https://gist.github.com/michielappelman/7319013

m-app··on Pirate Bay co-founder aims to launch surveillance-proof messaging app Hemlis
If you want this functionality now: http://threema.ch/en/
m-app··on ChatStep - Online Group Chat with Symmetric Key Encryption
By the way, wasn't Cryptocat shot down initially for its "host-based security" [1]? Why didn't ChatStep learn from that?

[1]: http://www.wired.com/threatlevel/2012/08/wired_opinion_patri...

m-app··on ChatStep - Online Group Chat with Symmetric Key Encryption
Why not? In this case the server doesn't have to be trusted, only the client implementation.
← PreviousPage 3 of 3