546 karma · joined March 23, 2017
About JavaScript, many other languages have had async/await for a long time. I have no idea why JS made such a huge deal of promises, I guess they're better than the callback hell before. Of course, in most languages using async isn't nearly as important for performance because they have thread pools.
Some interfaces aren't and won't be asynchronous (like Linux file IO) so eventually JS will support proper threads and we can stop talking about how great asynchronous programming is (it isn't).
Literally everything else that holds "data" has been using some form of error correction forever. Hard drives, SSD's, USB flash drives, file systems, databases, even network packets. Even HDMI uses error correction, and how important is momentary pixel corruption on a screen???
It's totally insane that we're not using ECC with such large amounts of RAM built on tiny processes. Its definitely just a cartel artificially maintaining a situation that's bad for everyone not selling server chips.
On the other hand, developers love to build shiny new stuff more than they like using things that are already there. The "Optimize" part you're talking about is more "reinvent the wheel" in my experience.
Figuring out how to use X new library isn't fun. Building this cool thing that does the same thing but better is a lot of fun! That's why things get overengineered and built for "scale", which is probably mostly what you'r referring to. Instead of taking something off the shelf that would work fine some developers are compelled to build something that can handle the entire traffic of the internet. They don't achieve this by optimizing what's there, they do it by building an enormously complex system for no reason :)
Travis legally has control of the company just like an owner would. Nobody can "force" him to leave on run his company as certain way. Benchmark is just whining because they can't get their way.
Benchmark agreed to let him have permanent control when they invested, if they didn't want that they shouldn't have signed the contract.
Submarine launch is harder and the warheads must be smaller, but ICMB's are already considered unstoppable so it doesn't matter.
You don't see anything wrong with a madman in a country always on the edge of collapse that's constantly threatening to turn the USA into a crater having nuclear weapons?
Kimmy is over there threatening to bomb out the US and Japan and put everyone's heads on pikes pretty much weekly. I don't recall even our crazy fucker president Trump saying anything remotely close to that.
I need to be in the baseline standard to get qualified or nobody will implement it.
Like all PAKE protocols, an eavesdropper or man in the middle cannot obtain enough information to be able to brute force guess a password without further interactions with the parties for each guess.
In layman's terms, given two parties who both know a password, SRP (or any other PAKE protocol) is a way for one party (the "client" or "user") to demonstrate to another party (the "server") that they know the password, without sending the password itself, nor any other information from which the password can be broken. Further, it is not possible to conduct an offline brute force search for the password.
https://en.wikipedia.org/wiki/Secure_Remote_Password_protoco...
You are right that the AP couldn't block you without blocking everyone, but since you need to check your answer with the AP for each guess your attack becomes extremely visible. I guess you could still DDOS the AP by sending auth requests faster than it allows but that doesn't hurt the channel any more than barrage jamming which is un-blockable.
This major issue with WPA password cracking today is that it can be done "offline". You can pull the handshake out of the air and bang on it as long as you want. It's pretty much the same thing as trying to guess a password from some leaked hashes vs trying to guess a password using the gmail interface.
WPA enterprise using certificates is usually much harder to crack since you need to interrogate server, you can't just brute force hash. This method only really applies to PSK mode (home networks and small businesses usually)
Just so nobody freaks out, this is cracking weak passwords, not broken WPA.
I have myself cracked countless WiFi passwords when security testing. It's easy if the passwords are bad, which is maybe 90% of the time for home networks and 60% for businesses. The attack is completely passive if you don't want to be noticed, and with a cheap dish you can pickup both ends of the handshakes from up to around a quarter mile away (line of sight).
Edit: I'm not against these kinds of initiatives at all, I just don't think it's realistic to apply such goals to a free-form group of programming language users.
Besides global font settings CSS nowadays is mostly used for positioning and isn't reusable.
I don't understand how anyone ever thought CSS's style inheritance was a good idea. I don't mind HTML and even JS these days but CSS really needs to be sent straight back to hell where it came from.
Does the average user really care about fonts? I would say definitely not. Most people don't even notice the font.
Don't get me wrong, it's cool, I just don't see the point. And I don't look forward to my battery life being used for pointless sugar.
Oh and a few years ago they banned ad blockers from the app store https://adblockplus.org/blog/adblock-plus-for-android-remove...
So every time you see a shitty horrible ad on mobile, the reason you have to watch it is 100% Google.