HNHacker News
TopNewBestAskShowJobs

summm

1,284 karma · joined September 18, 2017

submissionscomments
summm··on EU NGI TALER will bring private and secure online payments to the Eurozone
Money streams would not be completely anonymous. Only the end user would be anonymous. And, the competition are not necessarily only banks, but shady, non-EU middlemen such as Visa, MasterCard, PayPal etc. where it is well-known that they sell your data wherever.
summm··on EU NGI TALER will bring private and secure online payments to the Eurozone
How is that one private? It is coupled to your bank account so your purchases can be nicely tracked, and to add insult, you also need to use your bank's crappy online banking app
summm··on A tiny radioactive battery could keep your future phone running for 50 years
If only. I suspect they will use the "waterproof" exception as an excuse to continue as before.
summm··on Building a decentralized name system on top of IRC
The gnunet name system (GNS) would be such a replacement for DNS.
summm··on Vision Pro will change photography
It does. As I said, the gallery offers a cardboard style stereo view. The 2nd image is hidden in the jpeg file, just like the mp4 audio, and can be extracted using exiftool.
summm··on Vision Pro will change photography
This functionality is still there, it was integrated into the standard Google Camera on Pixel devices, as "Panorama". Also the pixel photo gallery has a view mode usable with cardboard style contraptions.
summm··on Mozilla expands extension support for Firefox for Android
The 2nd most important addon after unlock origin is Multi-Account-Containers: https://addons.mozilla.org/en-US/firefox/addon/multi-account...

This would enable proper isolation between browsing contexts, and therefore make progressive web apps truly usable and a good alternative to native apps. Currently PWAs leak cookies to the browser, therefore you cannot login on the PWA while browsing "anonymously" in the browser.

summm··on Why is Bluetooth sound quality bad on my Mac
Isn't it possible to use LC3 over Bluetooth Classic HFP? And isn't LE audio advertised as flexibly supporting multiple streams, much better than Classic? That means, it's just bad implementations, not a principal limitation? Apparently some phones and headphones support it now, but oddly enough there is absolutely no information to find about the specific level of support.
summm··on DDG founder says Google's phone, manufacturing partnerships thwart competition
The usual: Voice some opinion that doesn't exactly match theirs, Ina friendly way, get insulted, get accused to be part of another group that allegedly is conspiring to harm them... Later found this is apparently a pattern and happened to others in a very similar way, e.g. https://m.youtube.com/watch?v=4To-F6W1NT0
summm··on DDG founder says Google's phone, manufacturing partnerships thwart competition
Not entirely, there would be a bit more security during bootup. However, the risks and problems are probably not worth it. Other benefits Graphene advertizes: they are much better and quicker applying updates (that's easy because they only support pixels), they allegedly support much more and better exploitation mitigation mechanisms, and have a Google Services sandbox that looks quite interesting. Though, after the conversations I had with them I really do not want to trust those people :(
summm··on DDG founder says Google's phone, manufacturing partnerships thwart competition
That is almost the exact argument from the toxic Graphene community GP complained about. Only the anti-user part of the security model is really destroyed, and rightly so. The part that considers the user to be the attacker and wants to protect the app and their developer's evil intentions from the user.

An RCE that only affects a non-root component or a component that ran with system privileges anyway will not be enabled or facilitated by this.

Of course current root implementation may be not be as secure or convenient as they could be. For example after each update they must be re-applied, from a downloaded app, leading to people updating later and opening another problematic supply chain. But that could be remedied if they were better integrated into ROMs.

summm··on Building an occupancy sensor with a $5 ESP32 and a serverless DB
Theres this using ESP32 and LoRa, where you can order readymade hardware: https://cyberman54.github.io/ESP32-Paxcounter/
summm··on Zero-knowledge proofs and anonymous reputation in Freenet
This claims to be a blog. Where is the RSS or Atom feed?
summm··on Software disenchantment
GoPro is a special kind of awful when it comes to software. Almost like they want to botch it on purpose: They distribute their software only via the Microsoft store. No chance to get a regular .exe installer. I heard there is some beta group on Facebook (!!!) where you can get some beta installers. For this kind of wifi usage, wifi direct or wifi aware would be great, the connect to the cam would be more reliable and it could exist in addition to another access point. But no.

It seems to me as if GoPro is basically a shell company consisting of a lot of marketing people and MBAs without technical understanding beyond using iPhones just contracting tech work out to off-shore.

summm··on Localsend: Open-Source Airdrop Alternative
ESP32 also seems to support Wi-Fi NAN: https://docs.espressif.com/projects/esp-idf/en/latest/esp32/...
summm··on EU tells Apple to open everything up to its rivals
Exodus analyzes apps and shows the used SDKs: https://exodus-privacy.eu.org/en/
summm··on EU tells Apple to open everything up to its rivals
This is what laws, citizens rights and unions are for. You should not need to submit to a feudal lord such as apple in order to enjoy protection from such inhuman practices.
summm··on Pixel 8 leak promises 7 years of OS updates
Bluetooth Low Energy Audio with the LC3 codec should be finally able to do it. And some of the newer headphones support that. In theory. How good this works in practice, I don't know, manufacturers aren't even advertising proper duplex, probably because they would have to admit that the old mechanism is just crap.
summm··on Google says it can’t fix Pixel Watches, please just buy a new one
That comparison is valid only if you had lots of suppliers and basically a single criterion, such as "feet dry" or in case of Apple "status". However, there are a lot of other reasons why you'd not want bo bend over for Apple's arrogant golden cage treatment. Main problem here is multiple instances of market failure all over the place: Qualcomm being a quasi-monopolist, made worse with patents. A phone being so complex that it cannot be made from scratch like a boot basically out of a cow. Apparently there being a place for only 2 App Ecosystems. General enshittifcation etc. etc.
summm··on Ask HN: I’m an FCC Commissioner proposing regulation of IoT security updates
Then they have to acquire the rights to do so for of all components before they use those components.
summm··on Android 14 blocks all modification of system certificates, even as root?
Even Firefox does this. Because of something something security.
summm··on Veilid is an open-source, P2P, mobile-first, networked application framework
True. On the other hand, gnunet tried the standards-based approach with binary specifications, as of yet with basically no adoption. One main problem I see that is very hard to integrate any other language or framework. If veilid now goes for trivially generatable language bindings, maybe they have more luck and this is what's needed to get something like this off the ground?
summm··on The War on Dogs
Where is that wonderland you live in? Around here there is only regulation that dogs cannot go unleashed on specially labelled public parks, such that they do not leave the paths. Many of those parks have playgrounds, public orchards and so on. But, as nobody enforces that, basically each time I take a walk there is at least one dog owner literally shitting (or, having their dog do so...) on that regulation. Same at supposedly dog-free lakes meant for human swimming. To me it looks like there are not a few bad seeds, but the majority of seeds are bad.
summm··on Germany’s solar power generation hit record high at weekend
Why is it not done today? Probably because of this: Mining rigs are a larger capital investment. They would have to compete with rigs in countries that don't care about CO2. Additionally, why would they be turned off if the energy prices are positive, but still below the cost of mining crypto elsewhere?
summm··on MSFT is forcing Outlook and Teams to open links in Edge and IT admins are angry
Good! This needs to go on, and it needs to hurt even more. This is what you will get for making yourselves dependent on a single monopolistic vendor. Just continue laughing about the Year of Linux on Desktops, and suffer.
summm··on RustDesk – Remote desktop software, written in Rust
Also note their persistent refusal to implement TLS for their web access. This attitude alone tells me never to trust this project ever, even when they finally should use TLS.

Sadly there is no other FOSS out there that combines remote support with good NAT traversal. Existing remote access tools such e.g. VNC all do not offer NAT traversal and are incredibly hard to setup. All FOSS web/phone conference tools offering screen sharing refuse to implement transferring Cursor/Keyboard control. Probably because it is not so easy, but mostly, I guess, out if fear for diffuse security problems.

Too bad people then will be compelled to use this absolute mess...

summm··on The Samsung Galaxy S23’s bloated Android build somehow uses 60GB of storage
They often fuck it up on purpose even. Like back then their legendary "mp3" players that wouldn't actually play mp3 files. Currently their ridiculously short security update available. 3 years only for their 1600$ phone. at least somewhat increase from the 2 years they offered previously.
summm··on AirGradient Open Source Air Quality Monitor for CO2 and PM2.5 Measurements
it's a 2nd sealed chamber and shares some sensor parts. Some parts are different, so it's not perfect of course, but much better as the requirement of regular manual calibration. Sensirion SCD30 for example, where you can even see the Y shape of the gas chambers.
summm··on KernelSU: A kernel-based root solution for Android
But that's the whole point? That you can user your own device as a general-purpose computing device, not only as a media-consumption device limited by arbitrary restrictions the vendor of the device can pose on you?
summm··on KernelSU: A kernel-based root solution for Android
It does not grant root by default, quote: "Whitelist access control Only App that is granted root permission can access `su`, other apps cannot perceive su."
← PreviousPage 3 of 11Next →