HNHacker News
TopNewBestAskShowJobs

wreegab

317 karma · joined November 19, 2013

submissionscomments
wreegab··on Pierre Omidyar co-funded Ukraine revolution groups with US government, docs show
> "Glenn Greenwald’s government-bashing blog"

I stopped reading at this point -- I felt I would lose my time reading the rest of the article. Keeping accountable is not "bashing".

wreegab··on Why was "goto fail;" added without any other change to that part of the code?
> but since in this case there was probably money and bribes involved

The cognitive process above is really sad: "I speculate this is what happened as a natural outcome of my other speculation"

wreegab··on Why was "goto fail;" added without any other change to that part of the code?
> If this was the action of a malicious government agency, then it was horribly hamfisted execution

If this was the action of a malicious government agency, you're the proof it was an awesome move, given your "Stop this nonsense".

wreegab··on A Modest Proposal for Ethical Ad Blocking
> the reason you get to use a website without paying for it yourself is that in exchange you see ads and website owners gets paid by the advertisers

I stopped reading after this sentence, because of the implied fallacy in it.

Everybody ends up paying when advertisers pay. Ultimately, all that "free" contents end up being reflected in the price of goods and services, so these ads ultimately contribute to inflating the prices of good and services.

wreegab··on On the Timing of iOS’s SSL Vulnerability and Apple’s ‘Addition’ to NSA’s PRISM
Except that I don't think this was the original code considering it appears to be cut and paste of same code in same file. I commented on this: https://news.ycombinator.com/item?id=7286582
wreegab··on Apple's SSL/TLS bug
I believe the faulty function -- at line 574 -- is a copy/paste of another function located at line 328 in the same file.

I diff'ed both functions to try to understand the changes which may have been made.

The "goto fail;" is somewhat "drowned" into other changes around, so it stands out less using a diff tool because of these surrounding changes. The surrounding changes in question:

1) Moving a "SSLFreeBuffer(&hashCtx)" instruction at a higher position: Very strange since it accomplish absolutely nothing at its new position, as opposed to it's original position.

2) Renaming of two variables: "hash" became "hashOut" and "exchangeParams" became "signedParams".

3) Indentation of "goto"s

Without the above changes, the "goto fail;" stand out rather well when using a diff tool.

wreegab··on Apple promises fix 'very soon' for Macs with failed encryption
> "I believe that it's just a mistake and I feel very bad for whomever might have slipped"

There has been such a rush from many places to cast this as a "mistake". We just don't know whether this was deliberate or a mistake, anything else is just an opinion. I don't see one explanation being less likely than the other, it's annoying to see one explanation being pushed more than the other.

wreegab··on How Google missed the boat
I think he/she is saying to stop idealizing an entity which primary purpose is to increase shareholders equity. I sure agree with him/her if it's what he/she meant.
wreegab··on Apple's SSL/TLS bug
The faulty block of code -- line 623 (function SSLVerifySignedServerKeyExchange) -- looks like a cut and paste (or the reverse) of the block of code at line 372 (function SSLSignServerKeyExchange), except this one doesn't have the extra "goto fail;".
wreegab··on About the security content of iOS 7.0.6
> People bitch about indentation in Python

Really? I did something in Python for the first time a while ago and the indentation as code block is something I find very elegant. I can't fathom why would people find something wrong with this.

wreegab··on Never judge a programmer by their commit history
Judging code is fine though, isn't?
wreegab··on Apple's SSL/TLS bug
Clearly sarcasm. With open source, it is not a matter of whether these mistakes (or whatever this one was) happen or not, it is a matter of likelihood of these mistakes being spotted. It's a statistical thing. It's unfortunate this has to be explained.
wreegab··on Never judge a programmer by their commit history
It's nice when acronyms, such as "TDD" and "BDD" here, are expanded at least once in the text when they first occur -- I don't think it would put a lot of burden on writers. There is too much of these insider knowledge acronyms all over the internet nowadays.

Anyways... I gather "TDD" means "Test-Driven Development" and "BDD" means "Behavior-Driven Development".

wreegab··on WhatsApp issued takedown against alternative clients a week before acquisition
People really liked this one: https://github.com/davidgfnet/whatsapp-purple

Starred 419 times.

wreegab··on I don't know, Timmy, being God is a big responsibility
> You can't just simulate 'observable areas'. Everything needs to be simulated.

I can't make sense of this. Whatever is outside the causality sphere is by definition irrelevant.

wreegab··on Losing graciously
> I don't know what kind of usability impediment you're talking about?

Having a single menu for all apps at the top of my 1920x1080 screen was a usability issue to me.

wreegab··on Google enforcing Web store only extensions for Chrome
"Firmly" is a bit much, given you can install an extension manually using "Developer mode".
wreegab··on Drop the ego and prove "I could make that so much better"
What is "IAP"?
wreegab··on Toward Go 1.3
> not as common to see now with memory management and GC in most languages

I actually have improved performance of js code significantly using pools to discard/reuse object instances in js.

wreegab··on Toward Go 1.3
> Every time I see a method that returns a Collection I want to shout "COLLECTION OF WHAT?!?!"

The method was named something like "getCollectionOfSomething()"? If so, you might want to put some of the blame on the method naming choices.

wreegab··on Show HN: Speedsums
You beat by a few minutes. I wrote a Chromium extension for it:

cs.js:

    (function(){var b;var a=function(){if(b!==undefined){var e=document.querySelector("input#answer");
    e.value=b;e.dispatchEvent(new Event("keyup"))}};var c=function(e){var h=e.length;
    var f;while(h--){f=e[h];if(!f.addedNodes||!f.addedNodes.length)
    {continue}if(f.addedNodes[0].nodeType!==3){continue
    }var j=f.addedNodes[0].textContent.match(/^\s*(\d+)\s*(\S)\s*(\d+)/);if(!j){continue
    }var k=parseInt(j[1],10);var l=j[2];var g=parseInt(j[3],10);switch(l){case"+":b=k+g;
    break;case"-":b=k-g;break;case"x":b=k*g;break;case"÷":b=k/g;break}setTimeout(a,500);
    return}};var d=function(){var e=new
     MutationObserver(c);e.observe(document.querySelector("div#question"),
    {attributes:false,childList:true,characterData:false,subtree:false})
    };window.addEventListener("load",d)})();
manifest.json

    {
    "manifest_version": 2,
    "name": "Speedsums Helper",
    "version": "0.1",
    "description": "Help be good at SpeedSums",
    "author": "wreegab",
    "content_scripts": [{
        "matches": ["http://www.speedsums.com/*"],
        "js": ["cs.js"],
        "run_at": "document_start"
    }]
    }
Caveats: Need to answer the first question. Need a time out to prevent exhausting the list of questions (it stops at 119)

It's Hacker News after all...

wreegab··on Stephen Colbert urged to cancel speech for RSA
> In any case, what's your suggestion for improving the situation?

What do you ask me that? It's a question best asked to RSA, they created the bad situation.

wreegab··on Stephen Colbert urged to cancel speech for RSA
> isn't it best to keep a dialog going

Don't be silly, RSA is not interested in honest dialog. Have you seen the press release? It's nice to be for virtue but play pretend virtue is not virtue.

wreegab··on ARM immediate value encoding
I was left with one question after reading the article: the purpose of the condition field in the instruction.
wreegab··on 'Carmack Lines': Playing with Javascript
Go compiles so fast, would be nice to have it available as a scripting language in the browser. But that's me superficially thinking, there is probably a lot of various complications and security issues.
wreegab··on I worked on the US drone program. The public should know what really goes on
> "I think that doing something to protect your society from evil must count for something. Do you really see it as black and white as you describe it?"

There is something ironic in there.

wreegab··on I worked on the US drone program. The public should know what really goes on
I just wished she questioned further. The more the better.
wreegab··on I worked on the US drone program. The public should know what really goes on
> "the video provided by a drone is a far cry from clear enough to detect someone carrying a weapon, even on a crystal-clear day with limited clouds and perfect light"

I wished she had pushed the questioning even further:

Even if it's a weapon, that doesn't mean the person is a threat. I mean it's full of people carrying weapons in the U.S., they are not presumed a threat.

And even if the person is deemed a threat, maybe the he would surrender, but now he is not even offered this choice.

wreegab··on A Patent From 2004 Describes Dual EC As Key Escrow
Then why did you answer "What a weird question" instead of just saying so?
wreegab··on Data looks better naked
I wish I hadn't seen that potato chips have that much more calories than pizza.
← PreviousPage 2 of 4Next →