HNHacker News
TopNewBestAskShowJobs

mgliwka

1,274 karma · joined June 7, 2015

matthias@gliwka.eu
submissionscomments
mgliwka··on Fly.io has GPUs now
I‘ll bite :-) What are your experiences with that?
mgliwka··on Show HN: I made a silly personal landing page
Generative AI for the win
mgliwka··on What do you think of Threads, Meta’s new Twitter Alternative?
A reminder in this context: Facebook Chat used to be very open and operate with XMPP compatability, but stopped at some point: https://news.ycombinator.com/item?id=9266769
mgliwka··on Ask HN: Who is hiring? (June 2023)
Thieme Gruppe | Software Developer | Full Time | Remote (Germany) | Must speak German

Thieme, the premier provider of health-focused information and services in Germany, is looking to expand our digital solutions in the fields of medicine and chemistry. We invite talented individuals to join our global team of over 1000 professionals in a family-owned company. Together, we can drive innovation for better health outcomes.

We are currently looking for software developers who are fluent in German, with a strong product mindset and a T-shaped skill set. You will join us to retool and expand our current product platform. If you are passionate about shaping the future of digital information products, we encourage you to apply:

https://careers.thieme.com/Software-Developer-mwd-eng-j460.h...

mgliwka··on The WRT54GL: A 54Mbps router from 2005 still makes millions for Linksys (2016)
Good old OpenWRT with it’s banners on shell login: https://gist.github.com/JiapengLi/b15313f2c5e97c1fc58b

Fondly remember White Russian on the WRT54GL

mgliwka··on Path to a free, self-taught education in Computer Science
Do you have an example for Software Engineer being protected in Europe? I haven’t encountered this and did not find any references.

For example in Germany, the German title „Ingenieur“ is protected, but carrying the title Software Engineer is fine.

mgliwka··on Reverse engineering a neural network's clever solution to binary addition
It’s Alexia Massalin now: https://en.m.wikipedia.org/wiki/Alexia_Massalin
mgliwka··on eBay, Etsy and other marketplaces on brink of having to disclose seller details
The DAC7 directive mandates a similar thing in the EU starting next year: https://home.kpmg/mt/en/home/insights/2021/04/dac7-new-repor...
mgliwka··on Ask HN: What Recession?
Care to share your excel list for (West) European companies?
mgliwka··on The Supreme Korean court says that scraping publicly available data is legal
http://haveibeenscraped.com/
mgliwka··on Ask HN: Switch from development to security?
What is the platform you're referring to?
mgliwka··on ‘The Billion Dollar Code’: Developers Who Sued Over Google Earth Algorithm
The referenced podcast episode:

https://cre.fm/cre222-terravision

mgliwka··on Launch HN: Inflow (YC S21) – Self-help app for people with ADHD
Works for me from Germany (on iPhone, language set to English [UK])
mgliwka··on Apple Reports Second Quarter Results
Got the same: https://ibb.co/zr56sgp

Edit: It appeared after I purchased a new MacBook. Seems like an Apple Arcade voucher was included with the purchase and it nags me to activate it.

mgliwka··on Ask HN: What kinds of cookies are “required” for a website to function?
To implement the synchronizer token pattern you usually store the randomly generated CSRF token in the session to validate it on the subsequent request, even if you generate a new one for each form.

You could also handle this stateless without the session using encryption or HMAC, but then you need to manage secret keys and not screw up.

https://cheatsheetseries.owasp.org/cheatsheets/Cross-Site_Re...

mgliwka··on Ask HN: What kinds of cookies are “required” for a website to function?
I think parent was referring to the session cookie. The linked article mentions putting the generated token into the server side user session and then to validate it on the next request. You might need a session cookie for that.
mgliwka··on Ask HN: What's the coolest YouTube channel you've found in the past month?
Making music with floppy drives, hard drives and flatbed scanners.

https://youtube.com/c/Pawe%C5%82Zadro%C5%BCniak

mgliwka··on The right way to turn off your old APIs
A good additional measure is a scheduled brownout. Turn off the API for a couple of hours or a day to make the consumers notice, then turn it back on for some weeks to give them time to migrate.

Google did this with their old Helm chart repository.

mgliwka··on macOS 11 Virtualization Framework to Run Linux in a VM
Many hosted CI solutions (i.e. Travis, Github Actions) support OS X natively.
mgliwka··on Ask HN: Side project went viral, now Google is charging me $1k. Help?
A free OpenStreetMap based alternative you could use to keep it running in the future:

http://photon.komoot.de/

http://photon.komoot.de/reverse?lon=10&lat=52

mgliwka··on Hacker Dosed with LSD While Restoring Historical Synth (2019)
There are legal pro drugs classified as „research chemicals not for human consumption“, which get metabolized into LSD, i.e. 1CP-LSD (http://researchonline.ljmu.ac.uk/id/eprint/12478/)

Unfortunately there’s even less research on those than on the original.

mgliwka··on Show HN: I built a website for sharing salary info
Can you enforce a threshold of entries for a certain role after which you start displaying the salary? And then only display it as a range with information about the quartiles?

Otherwise it‘s not so anonymous. Sometimes the combination of role and Salary is enough to point to a single employee. That’s precisely the reason why you only get statistical information at the other sites.

mgliwka··on GDPR fines were meant to rock the data privacy world
https://www.reuters.com/article/us-austrian-post-fine/data-p...

Austrian Post sold voter preference data without having the right processes in place and was fined 10% of last years profits.

Noyb.eu is also an interesting organization to watch. They are a non profit taking lawsuits against large incumbents with egregious privacy practices with the backing of the GDPR. They triggered the 50 million € Google fine.

mgliwka··on Tell HN: Vodafone AU is still blocking archive.is
Archive.is is also not available for users with 1.1.1.1 (Cloudflare DNS): https://jarv.is/notes/cloudflare-dns-archive-is-blocked/

Long shot: those two are related. But hijacking requests like that is a big no-no.

mgliwka··on Why Does Developing on Kubernetes Suck?
I've found https://www.telepresence.io/ to be helpful. It allows to integrate a local running process into a K8s cluster seamlessly allowing for fast iteration and easy debugging.
mgliwka··on Show HN: Parse no-protocol URL, no-domain URI and email addresses etc from text
This project attempts to parse url's and email addresses from text, even when the protocol is missing or they're mangled in some other fashion (i.e. google.com/test-url?id=2 gets parsed and identified as valid URL, but invalid.nontld/test not. Or "test@example.euSample Text" get's parsed as test@example.eu)
mgliwka··on DoX: DNS Queries over XMPP
The resolver is a client of an XMPP server and might be on the same server or even a different server the requesting party is on.

[Requesting Party]<--->[XMPP server]<--->[XMPP Server]<--->[Resolver]

mgliwka··on Ask HN: What do you use for personal email?
mailbox.org has been great. They can encrypt all your incoming mail content with your PGP public key. And you can enforce to receive the mail over a TLS encrypted SMTP using a special subdomain.
mgliwka··on Ask HN:How to warn a company about the security issues if they refuse to listen?
Contact the CERT, they can help you out with establishing a line of communication: https://www.kb.cert.org/vuls/report/

Do it anonymously, if you fear backlash.

mgliwka··on Ask HN: Resources for engineers new to system design
https://github.com/donnemartin/system-design-primer is a great resource.
Page 1 of 3Next →