HNHacker News
TopNewBestAskShowJobs

s1kx

72 karma · joined July 24, 2012

submissionscomments
s1kx··on Twitter spam wave
I would assume it's just sent through the API with the iOS App's app credentials (they are open and out there). That specific set of app credentials allows the OAuth endpoint for email + password sign in through the API. Maybe some other database got hacked and the user credentials were used on twitter.
s1kx··on Crowdsourcing a More Secure Future
While it is very generous, I doubt they would give a sum like that if it wasn't for the publicity. I'm sure news like this can help their image quite a lot in their target audience (security-aware computer people).
s1kx··on Nexus 5
Do you know if T-Mobile has improved in the Phoenix area? The website shows 'excellent' coverage around here, but all I read online is horror stories of not having any signal in buildings etc. Apparently they wanted to work on that in the last 6-10 months, but I haven't heard anything about it since.
s1kx··on Norwegian backup provider promises NSA-free data storage using Norwegian laws
Good suggestion, I've been using Amazon Glacier with the CloudBerry backup software which supports client-side AES encryption (http://www.cloudberrylab.com/amazon-glacier-backup-software....) and couldn't ask for more. Of course you will have to trust CloudBerry not to put a backdoor in their Software, but it seems there are no OSS alternatives right now that work as easily.
s1kx··on Fairphone: Android phone that puts social values first
I really don't want to be the one overly-critic HN comment - but this color combination makes me cringe: http://i.imgur.com/tBWheTr.png
s1kx··on Facebook’s New React JavaScript Library Tutorial Rewritten in AngularJS
Theoretically yes, but ngResource is kind of the achilles' heel of AngularJS right now. You're often better off using a different library or making your own class with $http requests.
s1kx··on What The Rails Security Issue Means For Your Startup
Is there no hardened version of Psych which lets you either disable object deserialization, or whitelist classes? That would seem like the safest option right now to guard against coming vulnerabilities in Rails in this regard.
s1kx··on How an unsigned rapper changed music
"I'm hunting, looking for a come-up. This is f*ing awesome."

So deep I can't even see you anymore.

On a serious note though, I don't need these lyrics to be deeply philosophical, it rocks even rapping about grandpa's clothes.

s1kx··on "Major service outage"
I suppose this is related to the Rails vulnerability (http://news.ycombinator.com/item?id=5028218) and everyone updating/deploying their applications