HNHacker News
TopNewBestAskShowJobs

mawalu

218 karma · joined August 13, 2015

submissionscomments
mawalu··on Dropping Cloudflare for Bunny.net
I used them in the past (many years ago) and was very surprised when my DNS was affected by a cloudflare outage. Turns out (back then) they relied on the cf network for DoS protection against their resolvers[1]. I was surprised to learn that and honestly thought that if I already take a dependency on cloudflare I might as well have them host my zones directly for free.

[1] Not completely sure but I think this was the incident https://blog.dnsimple.com/2020/07/incident-dns-resolution/

mawalu··on macOS Containers v0.0.1
AFAIK GitHub action runners all use VMs and not containers
mawalu··on Element X Matrix client now on iOS early release
Thanks for you work! I'm hyped for a faster mobile client and definetly need to setup the sliding-sync proxy for my HS.

Can you already say something about encrypted search support in Element X? I really like how transparent encryption works for DMs nowadays in Element but for non-powerusers it is often really confusing why the can't search their chats (on the current gen mobile clients at least). I fully understand that this is a difficult problem and less state on the client definitely does not make it easier.

Also since you mentioned it, is multiaccount support something that we can realistically expect to see in Element X someday (maybe even in a v1.0?). If I remember correctly for the previous iterations of the clients the status was mostly "maybe one day" or "the architecture does not really support it".

mawalu··on Brave New Trusted Boot World
The TPMs are already in our machines because Microsoft requires them and CPU vendors include them in their chips. They aren't used by default and don't hinder us from doing anything. If I'm already trusting ubuntu to ship me an OS why would I have a problem with having them sign it as well.

Secureboot is a scary technology but as long as we can disable it and provide our own keys I don't see the problem. And if we lose these abilities than I'm certain it won't be Poettering or systemd to blame

mawalu··on Intel A770, A750 review: We are this close to recommending these GPUs
Has anyone read about GVT-g support (or something similar that allows attaching the GPU to multiple VMs) is supported by these cards? Last time I checked Nvidia & AMD only support this on their enterprise / datacenter cards and it would be cool if Intel would be more open.
mawalu··on Ask HN: People who use different emails everywhere, who sold you to spammers?
ledger hardware wallet, invisionapp.com and my public github email
mawalu··on Yggdrasil P2P mesh E2EE IPv6 network
Your IPv6 address is the hash of your public key
mawalu··on I got pwned by my cloud costs
Hetzner Cloud(!) only has 20TB/Month included in the monthly costs and states that you have to pay for any additional traffic. I never reached that on one of their cloud boxes so I don't know how it looks like but it definitely isn't all up front. But yes the dedicated machines come with no additional traffic charges whatsoever
mawalu··on Raspberry Pi 400 Desktop PC
A bit of topic: I recently got a Pi 4 and tried to use it to play 4k content on a TV. I could not get hardware decoding working and found a lot other people online with similar problems. I honestly was a bit disappointed because the Pi is often touted (in this thread as well) as having great software support, much better than all the other ARM single board computers out there.
mawalu··on Some idiot is using your tool to mass scan our network
After reading this I checked my own logs. I seem to get hit by masscan every few days and at least once per week:

  "2020-08-31T05:55:15.314510181Z"
  "2020-09-07T04:31:10.32778784Z"
  "2020-09-12T07:37:23.354113494Z"
  "2020-09-14T04:48:22.862297069Z"
  "2020-09-14T10:31:45.331617062Z"
  "2020-09-21T01:03:47.198615685Z"
  "2020-09-21T04:04:12.142308436Z"
  "2020-09-28T04:40:15.616859176Z"
  "2020-09-30T14:21:35.844867635Z"
  "2020-10-02T23:05:58.837039985Z"
  "2020-10-03T03:18:33.945424629Z"
  "2020-10-03T14:02:51.344484887Z"
  "2020-10-03T16:47:59.941939178Z"
  "2020-10-03T16:54:16.67585357Z"
  "2020-10-04T03:40:37.740594379Z"
  "2020-10-04T09:12:23.443293148Z"
  "2020-10-04T23:07:21.37800867Z"
  "2020-10-05T06:06:11.452526929Z"
mawalu··on BitTorrent v2
You mean beside being responsible for ~50% of the global internet traffic in 2009? https://en.wikipedia.org/wiki/BitTorrent
mawalu··on Lemmy a federated, open-source and privacy alternative to Reddit
It's important to note that this is critique against the instance run by some of the developers and not the software itself. The point is that anybody can run their own lemmy instance with different content and moderation
mawalu··on Small mail server best current practices
The RAM intensive elements of mailcow are search and clamav, you can disable them both if you don't need them
mawalu··on Small mail server best current practices
I use mailcow and it does both a) and b) very well. You can either selfhost or pay the developer to host it for you: https://github.com/mailcow/mailcow-dockerized
mawalu··on Show HN: Gitern is a Git host for hackers
I'm not really looking for a new git repository hosting service but this seems cool. I was a bit disappointed that I had to download a cli tool after signing up. It would be cool if you could do all the management non-git operations via ssh and without any additional client software
mawalu··on NewPipe – ad-free, open-source Android YouTube client
No. The ads are separate video files that get played after each other by the browser or youtube app. Since this app is complete independent it just choose to not play the video ads
mawalu··on Automattic invests in Matrix
But keybase still has their server software that people depend on and that isn't open source. Worst that could happen with New Vector is that they stop paying developers to work for the Matrix.org foundation but that would not prevent anyone from continuing to use the existing software
mawalu··on Bundeswehr will switch completely to Matrix messenger
As far as I know the French government used a riot fork for their users but the changes are getting upstreamed. I think its not unrealistic that the Bundeswehr will go a similar way
mawalu··on Ask HN: Keybase Alternatives?
Why would mattermost solve that?
mawalu··on A Personal API
I signed up to stdlib a while back because it sounds like exactly what I want and looked really cool. I don't remember what through me off exactly but I will take another look.
mawalu··on A Personal API
I'm toying around with this idea myself. After some thoughts I created a simple node.js app that provides services like a http server and a spotify api client to module that are autoloaded from some folder.

Whenever I feel like it I can very easily extend this platform by just writing a new javascript file. Currently there are thinks like

  * An endpoint to show my currently playing track on spotify
  * An endpoint that renders one of my todoist lists as html (my whislist)
  * A reporting module that receives webhooks from different backup scripts and sends me a report by mail every day
  * Move new songs from a spotify playlist to an archive playlist after a few weeks to keep the playlist "fresh"
I always wanted to create a bigger project based on my learnings but I'm not yet completely happy with the technical implementation
mawalu··on Decentralized VPN Written in Go
Hijacking this for a project I created a while back. An ansible role that creates a "mesh" VPN between a set of servers using wireguard: https://github.com/mawalu/wireguard-private-networking
mawalu··on KTRW: The Journey to Build a Debuggable iPhone
I felt the same way about Ghidra being slow and buggy sometimes but can really vouch for r2ghidra-dec[0] to integrate the decompiler into radare2[1] (and the cutter[2] qt gui). This combination feels really nice but I have to admit that I do not have any experience with IDA as a comparison.

[0] https://github.com/radareorg/r2ghidra-dec [1] https://www.radare.org/r/ [2] https://cutter.re/

mawalu··on Ask HN: How to create a new Twitter account
They don't even show me the "enter your phone number to unlock" dialog. I'm just logged in but can't do anything, including setting a phone number without getting an error saying that the account is suspended.
mawalu··on Ask HN: What password manager tools do you use or recommend?
I switched to keepassxc[1] a while back.

[1] https://keepassxc.org/

mawalu··on Npm operational incident, 6 Jan 2018
To me it sounds like they are talking about their automated systems to scan for spam and malware. While I normally would support your stance I see why they would act in this way, such systems often only work as long as they are not made public.
mawalu··on Hacking WiFi to inject cryptocurrency miner to HTML requests (CoffeeMiner)
I find it funny how, even after publishing this post, the author hasn't configured a http -> https redirect for his own site.
mawalu··on Kite telemetry code in Sublime package SideBarEnhancements
Seems not to be included in any other file on github: https://github.com/search?utf8=%E2%9C%93&q=%2252.52.168.91%2...
mawalu··on An Open Source, Self-Hosted Heroku
"However, a primary goal of our solution was to automate the process of going from code in a repository to a deployed application in our cluster — much like Heroku. Kubernetes did not appear have any mechanism to support this type of workflow, nor a handful of other features we had hoped to find."

Just in case someone is feeling the same, deis[1] is providing exactly this. I did not try their software but I've read a lot of positive about them in the last time.

[1] https://deis.com/

mawalu··on Forget Encryption, WhatsApp Is Vulnerable to Phishing Attacks
Since whatsapp users do not register using something like username / password the authentication is handled by the app using the sim card and ability to recieve an sms on a given number.

When Whatsapp started whatsapp web, a web client for PC / Mac users, they needed a way to authenticate the users there. This is where the QR code is used. Once the user scans it using the app he authorizes the computer and some tokens are stored in the browsers localStorage.

Page 1 of 2Next →