HNHacker News
TopNewBestAskShowJobs

madsr

70 karma · joined January 19, 2011

submissionscomments
madsr··on Ask HN: Happy 404 Day. Whats your favorite 404 error page?
I like the Norwegian Army's: https://www.forsvaret.no/en/404 The version in Norwegian language looks more like a bullet hole for some reason: https://www.forsvaret.no/404
madsr··on Pains of building your own billing system
Speaking of fractions of pennies: I've configured my AWS Cloud invoice to be in Euros, and every month the Net amount plus the VAT amount is always 1 cent off the Total fee :P
madsr··on AWS to start charging for IPv4 usage, but critical services don't support IPv6
Bastions are a good option. sshd supports jumping through them by default using the -J flag (jump) or automatically by adding the 'ProxyJump' statement to your .ssh/config.
madsr··on Universal Paperclips
I find the AI point of view not that interesting. What's more interesting is the obvious (im)balance between production rate and revenue per second vs the amount of (finite) resources being spent in the process.
madsr··on Universal Paperclips
Soo.. How do I cash out?
madsr··on LazyVim
+1. I mainly use this approach. If your next intended move is to go to the next line, Alt-J will exit insert mode and go to the next line immediately. Also the same for Alt+w/W/b/B, Alt+o, Alt+0, etc etc and it's just a matter of using your left thumb at the same time as navigating.
madsr··on You can link an OpenPGP key to a German eID
If your PGP key isn't signed by anyone, then there's no way to verify that it's really you - other than contacting you and checking the fingerprint. By having a trusted third party such as Governikus sign it, anyone can verify instantly that _this_ PGP key is actually from a person with a _name_ for which they also have a government ID with that exact name.

I can envision a _lot_ of use cases for having your name publicly recognized by a trusted party.

madsr··on Paul Theroux reflects on the evolving nature of rail travel
Although not a travel book, "My Other Life", his fictional self-biography, was an enlightening, superb text.
madsr··on WTFPython: Exploring and understanding Python through surprising snippets
I think this example is quite deceptive. When setting obj.a and obj.b, what is your intention? If you want to set the instance attributes, you should have created self.a and self.b in the class constructor.

  class A:
    a = (1,)
    b = [1,]
    def __init__(self):
      self.a = (1,)
      self.b = [1,]

  A.a # this is the class attribute
    (1,)
  A.b # class attribute
    [1]
  obj = A()
  obj.a # instance attribute
    (1,)
  obj.b
    [1]
  obj.a += (2,)
  obj.b += [2,]
  A.a 
    (1,) # still the same class attribute
  A.b
    [1]
  obj.a
    (1, 2) # instance attribute appended
  obj.b
    [1, 2]
madsr··on Euler’s 243-Year-Old ‘Impossible’ Puzzle Gets a Quantum Solution
Thank you.
madsr··on Euler’s 243-Year-Old ‘Impossible’ Puzzle Gets a Quantum Solution
I'm obviously missing something dramatic here.. I guess I don't even understand the Puzzle itself..?

Re1Ra1 Re2Ra2 Re3Ra3 Re4Ra4 Re5Ra5 Re6Ra6

Re2Ra2 Re3Ra3 Re4Ra4 Re5Ra5 Re6Ra6 Re1Ra1

Re3Ra3 Re4Ra4 Re5Ra5 Re6Ra6 Re1Ra1 Re2Ra2

Re4Ra4 Re5Ra5 Re6Ra6 Re1Ra1 Re2Ra2 Re3Ra3

Re5Ra5 Re6Ra6 Re1Ra1 Re2Ra2 Re3Ra3 Re4Ra4

Re6Ra6 Re1Ra1 Re2Ra2 Re3Ra3 Re4Ra4 Re5Ra5

madsr··on Google Chrome security flaw offers unrestricted password access
Why is Chrome named as the "bad guy"? If anything, Chrome reveals the issue, by showing just how accessible browser-saved passwords are in the first place. Do you think that it's impossible for malware to retrieve passwords from IE, Firefox, Safari and Opera? Just how is it possible to import the passwords from these applications, then?

This is not a security flaw. Comparing browser password storage to a safe is mildly retarded.

madsr··on Sparkfun 2013 - Every Day is Free Day
Okay, so I just ordered a bunch of electronics stuff from the super great www.sparkfun.com - they've always given excellent customer service to me. After entering my credit card details and checking out, this was the confirmation page that greeted me: http://imgur.com/q5G8W

Feels like the blinking banners of "you've just won a car!!!!" we all love from the former web, no?

But it's real - no charge on my credit card - and I think it's a wonderful way of getting lots of attention for a fair price.

I know I'll tell all my friends ;-)

Go Sparkfun!! :D

madsr··on Always “hover” before you click? Wrong.
Google isn't, but the page providing the link (frameloss.org) is unknown (to me).
madsr··on Always “hover” before you click? Wrong.
And this is why we use Firefox with NoScript on unknown sites :-)
madsr··on LeakedIn
correct horse battery staple.
madsr··on 6.5 Million LinkedIn Password Hashes Leaked
The rar with ~100k cracked passwords in it. If you tried to find your own, perhaps you're one of the ~144 million accounts that wasn't published?

Edit: I'm not sure I understand what you mean - there was 100k passwords in one file, already cracked, and another with all 6.5M hashes. I found my hash in the hashes file.

madsr··on 6.5 Million LinkedIn Password Hashes Leaked
What riddles me though, is how come 6.5 million? LinkedIn has what, 150M users?

Did they not post the entire load (and are in fact sitting on _all_ the hashes?) Is the dump an old backup or breach from when they had fewer accounts? Is it just one DB partition / file that's been lost, an archive?

madsr··on 6.5 Million LinkedIn Password Hashes Leaked
Yes. The hash I calculated was without a salt (the same way you generate a hash on sites like http://darrenfauth.com/generators/sha1)
madsr··on 6.5 Million LinkedIn Password Hashes Leaked
Keep in mind that whoever leaked the hashes is probably keeping the usernames / emails for themselves. The forum in question doesn't allow posting of user-identifiable information according to the forum guidelines.

The leaked hashes seems to be SHA-1. I've also confirmed that the hash of my own (semi-complex) LinkedIn password is in the list. Accidentally this is the same password as I had for HN and that I've now changed (phew! THAT'd been bad! :-)

madsr··on HBGary Windows Rootkit Analysis Report [pdf]
So how bad of a publicity hit has HBGary taken with the Anonymous-breach? Am I paranoid for not immediately wanting to download and open PDFs from their site?
madsr··on Website calculates how your life might be like in another country
I find it interesting that by following the green/red color code, apparently, the less you spend on health care the better. Is health care a bad thing?