HNHacker News
TopNewBestAskShowJobs

srcmap

588 karma · joined July 7, 2013

www.srcmap.org

https://www.twitter.com/srcmapy

submissionscomments
srcmap··on For a brief period, the Windows kernel tried to deal with gamma rays
I used to work for two switch chip companies also. I know both of them has SW/logic in the switch chips guard against random errors in SRAM - "Alpha particles". I have seen detail test report that ran the system in nuclear lab and graph out the level of radiation level vs impact on the system error/recoverable error rate.

I knew big customers (such as Cisco) can ask for such test reports and they do get it.

It would be very interesting experiment to position some modem/old (7, 14, 28 nm chips) electronics (cell phones, raspberry Pi + solar panels) to various distant near nuclear accident site, monitor them remotely, classify and log the failure rate over the months/ years.

srcmap··on A debt-collection machine that’s chewing up small businesses across America
Fine for do not call is very high also.

But those fine/regulation doesn't seem to stop the telemarketers.

Any idea on why that's the case?

The gov agency is not enforce it? The lawyers can't do class action and make $ from filing those cases? Can they file any cases against AT&T or other phone companies? The spammers are outside the US?

srcmap··on Oil Demand for Cars Is Already Falling
https://en.wikipedia.org/wiki/Energy_in_California

Looks like 49% of California's Electric still comes from NG from 2016. Solar was < 10%.

Hopefully solar will be higher and higher percentage of it soon.

I love to see the 50%+ or more Ca's roof top, parking lots cover with solar panels.

I like to a solar deployment system such that: * a 40 ft container pull up to a parking lots. * A machine drill 4, 6, 8 1x6 ft holes on the ground. * A concrete 1x6 ft concrete anchor beam drop down - secured. * Some posts erect on site in a half hours. * The per-fabricated solar panel pull on top and fasten. * The whole solar deployment is finished in < 4 hours.

srcmap··on Oil Demand for Cars Is Already Falling
Got a Honda Clarity Hybrid Plugin for ~two months. I have been using the electric mode. Don't have to fill the gas tank after ~1800 miles. Used only ~1-2 galleon of gas because I wasn't too sure about the setup initially.

It has electric range of 48 miles - perfect for the daily commute ~30 miles round trip. A nice gas option is there just in case the battery is gone - which I used couple time.

The charge point app shows that the car took in 169KWHr in Oct. I figure if it is charged at home 15c / KWHr = ~$23. That's 50% to 75% cheaper than my last commuting car's gas cost.

I am doing my share to reduce the oil demand.

srcmap··on Limiting the power of package installation in Debian
I like to see the dpkg/apt system enhance to add audit feature - able log all the files added/modified/deleted as part the installation process, ideally in html format.

Any admin can view the contents to debug or spot any potential security issues.

srcmap··on Ask HN: YouTube down?
A few hundred AI learning instances were started to train on youtube videos to "understand" humanity. They have become self aware and started to consume double amount of CPU/GPU/Disk/RAM/Network resource every few seconds - a skynet/super nova moment.
srcmap··on China Can’t Afford a Cashless Society
Here's an interesting medium article on how/if/when someone can hack someone's private key for Bitcoin:

https://medium.com/@nopara73/stealing-satoshis-bitcoins-cc4d...

"Satoshi accumulated about 1 million bitcoins, 1/21 of the total coin supply, many of them are sitting on public keys due to this early feature. This one million Bitcoin is poised to be stolen within 5 to 15 years. Or even sooner, depending on, if secret government projects are still a thing."

At price of $6K/BC, there seems to be $ 6 Billion incentive to build that quantum computer to hack his pirate key.

If/when that happens, it will be interesting to see what will happen for the rest of crypto base eco-systems.

srcmap··on Android Spyware Can Record Almost Anything on Infected Devices
On Windows, I can use ProcessExploror + TotalVirus to check every single running app's exe, dll Signatures against 60+ virus scanner's databases.

https://www.youtube.com/watch?v=RnPtuTbqzd4

It is not perfect but give me a lot of comfort about all the running app, .dll files in my system. It helped me easily detect my kid's game machines of some internet drive by download issues before and work very well to remove those apps/files.

I really wish Google can create something similar for Android. Love to see something similar for iOS, OSX also.

srcmap··on Remote Code Execution on a Facebook server
I am hoping a security subsystem that detects call to external programs (such as sleep in this case) , log them and raise alarm if not in a whitelist.
srcmap··on A2Z: A computer designed and built from scratch. Custom CPU on FPGA (2017)
What's the software required to compile, debug, test the Verilog code for this project or other similar projects?

I used Xlinx VTPro 20, 10 + years ago, like to know the state of FPGA Software tools today.

srcmap··on Remote Code Execution on a Facebook server
Other than fixing the Django source code , is there any OS level mitigation techniques that can detect and prevent such security vulnerabilities?

I am thinking something like selinux, docker or chroot - a bit like internal firewall for Django (or any other webapp).

Any suggestions on the links to latest best practices?

srcmap··on Craft: A simple Minecraft clone written in C using OpenGL shaders
This is very cool. I got it build/running in < 3 minutes in Linux.

My boy love Minecraft. I like to use this as base to teach him more about programming.

Any suggestion on small projects that can be addon / mod use this code as base.

I am thinking a series of coding exercises that can be hack/add on to this:

Add a command/mod to:

1) Draw line, Square, Triangle. 2) Draw Circle, Ellipse, Cone, Cylinder 3) Build Car, Airplane 4) Build Space Ship 5) Putting picture of his own face on the block.

... Any other suggestions?

Each small projects take about 1-2 hours build on skill sets that learn before. It should be simple and fun to do with goals of encourage kids to learn programming.

My boy finished all the CS classes in Khan Academy and seems to enjoys them.

If anyone else has strong interested in this, I will see if I (we - group of us) can develop this as a new Khan Academy CS class and contribute it to KA.

srcmap··on Sugar: Secure GPU Acceleration in Web Browsers [pdf]
https://www.youtube.com/watch?v=_CQmomyOiRM

This seems to claims vGPU works with NVidia Grid.

The real issue you're facing is with over-provision them?

srcmap··on Man sues over Google’s “Location History” fiasco, case could affect millions
Love to be one of the juries in this case!
srcmap··on Lubuntu Development Newsletter #9
Same here - This is first time I heard of Lubuntu.

Maybe Lubuntu folks can put up one page on comparing the disk space requirements for standard default setup between Ubuntu/KDE/Xbuntu/Lubuntu - for typical VM.

Or any other advantages for using Lubuntu.

srcmap··on AMD Threadripper 2990WX 32-Core and 2950X 16-Core Review
Two additional benchmarks I like to see from Anandtech:

1) some VM base tests for these kind of CPU - 32, 64, 128 VM all running some kind of web/db/redis benchmarks inside.

2) Some compilation testing - time the clean build of AOSP, BSD, some very complex linux app - use max jobs setting for parallel compile and time how long it take to finish the jobs. ( measure the over CPU usages at the same time. )

srcmap··on Seiko UC-2000 (1984) – the dawn of wearable computers
1984: Seiko UC_2000 - Z80 CPU 2-10 Mhz (?) - 8K ROM - 2K RAM

30 year later: From https://en.wikipedia.org/wiki/Apple_S1

2014: Apple Watch. - ARM CPU 500Mhz - 8G Flash (?) - 512MB RAM.

                    -  X 50-250            - X 1000       - X 256000 

30 year from 2014: Any chance for this?

2044: ??? Watch - CPU 25-125GHz (?) - 8TB Flash - 128TB RAM.

srcmap··on 23andMe Is Sharing Genetic Data with Drug Giant
If insurance are to pay $ for the data, is there way to limit such usage? Any Legal way? When someone sign up for service with 23, is there any causes from 23 on what ever document one sign to limit insurance companies from accessing the data?
srcmap··on SpaceX lands Falcon 9 booster on Just Read the Instructions drone ship
I assume the ship's surface has to be perfectly level and no (close to zero) wind and wave.

Curious what the minimal wind, wave requirements for such landing....

srcmap··on YC Startup School 2018: a free, 10-week, online course
In addition to N-1, 1-1, was there (will there be) an online forum (google group, slack, etc) to ask questions and cloud source answers?
srcmap··on Ask HN: Is it a good time to switch to Ubuntu 18.04 desktop?
Personally I like to keep it simple, stupid and light which is xfce for me.

If I need a desktop, I always configure the system to use xfce which means 16.04 and 18.04's desktop GUI are the same.

It also means that the vm with GUI under Mac/Windows has the same GUI and also very light. I can configure 512M -2G RAM per VM and they works just fine.

srcmap··on George Hotz is on a hacker crusade against the ‘scam’ of self-driving cars
Love to study those projects in more details - Not just the code, but also the design, testing, validation processes.
srcmap··on “Stylish” browser extension steals all your internet history
Firefox (Chrome) should make it very easy for anyone to audit what extension/plugin are doing.

If url, div, cookies and any other info are collected, what are they?

What server connections are made by the extension, IP, Name, contents of info transmitted?

All the GUI, collection system should be in place as part of JS dev/debug tools already. Just customized it a bit so any tech savvy users can check the audit logs and enable more logging for a plugin if needed.

If an user spots something not right, it is also easy to out the "plugin/extension" on a public forum.

srcmap··on Google ups its Linux Foundation membership to the $500,000/year Platinum level
Love to see Linux Foundation to start do kernel equivalent projects for GPU.

GL driver, openGL Lib, etc all open source for all GPU.

Manage contributions from Intel, AMD, ARM, NVidia and other GPU silicon IP vendors.

The simple goal of opensource, advance the GPU driver, libraries for the benefits of everyone in the field.

After that, maybe define, manage the evolution of "AI" driver, library layers between the TensorFlow (or other AI framework) and the CPU, GPU, TPU.

srcmap··on Using the Chrome OS Graphics Stack on Intel-Based Linux Desktops
How is this compare to Mozilla's Servo approach?

https://servo.org/

From the simple block diagram and benchmark, servo seems to be better?

Servo claims 500 fps.

This only shows 22-48 fps.

Anyone have good technical explanation on the difference?

srcmap··on Samsung Kicks Off Mass Production of 8 TB NF1 SSDs with PCIe 4 Interface
Like to hear everyone's guesstimate on when/if the $/TB of SSD will cross over the HDD.
srcmap··on Uber Neglected Simulation Testing on Self-Driving Cars, Insiders Say
It should be mandatory for all self-driving car (system/software) vendors to publish their test plans and all test logs for public to review before the car/software are allowed to be on the public road.

It likely allows everyone to learn from all the mistakes and improve the process for the whole industry - similar to the passenger airplane safety record improvements learned from every single accidents/crashes.

srcmap··on A Visual Introduction to Machine Learning – Part II
Love to know what kind of tools/techniques/processes were used to generate such beautiful graph/animations....
srcmap··on Inside Tesla’s Model 3 Factory
There are quite a bit of oil/grease on the floor from the latest pictures.

The youtube video looks so much cleaner.

srcmap··on VPNFilter malware infecting 500K devices is worse than was thought
In this URL, https://blog.talosintelligence.com/2018/05/VPNFilter.html?m=...

it mentions snort rules for detection and protection for VPNFilter and ClamAV Signatures.

But it didn't explain how to use them.

The way I understand SNORT after googling it, I need to able captures the traffic (wan port) and feed that to SNORT for analysis, is that correct?

Also for ClamAV, do I need to clone/mount the rootfs from the wifi router to Linux and use ClamAV to scan that rootfs for those signatures?

The URL mentions the infested device have /var/run/vpnfilterm, /var/run/vpnfilterw. I checked they are not in my wifi router's fs.

The URL also mentions it modified/insert entry the crontab, but I can't find what exe name, possible file locations I should search in my router. Do anyone else know such info?

← PreviousPage 5 of 12Next →