HN user

alasr

281 karma

...

Posts26
Comments31
View on HN
bugs.openjdk.org 1mo ago

OpenJDK: Removal of the JVM Compiler Interface (JVMCI), in JDK 27

alasr
4pts2
xcancel.com 4mo ago

Playing Doom on a SUBLEQ Transformer

alasr
1pts1
www.newscientist.com 4mo ago

Loophole found that makes quantum cloning possible

alasr
2pts0
github.com 5mo ago

OpenSSL v3.6.1

alasr
1pts0
www.bloomberg.com 9mo ago

The Dark Side of the AI Boom Is It’s Masking Weak Investment

alasr
3pts1
research.nvidia.com 10mo ago

Small Language Models Are the Future of Agentic AI

alasr
2pts0
www.youtube.com 10mo ago

AI is an extension of my mind – Artist Refik Anadol [video]

alasr
1pts0
www.youtube.com 1y ago

DevSecOps: Metrics, Gauges, Counters and Ratios (2016) [video]

alasr
1pts0
archive.org 1y ago

The Psychology of Everyday Things (1987) [video]

alasr
2pts0
www.youtube.com 1y ago

Modern Java – Deep Dive

alasr
2pts1
foundation.mozilla.org 1y ago

Teaching Responsible Computing Playbook – Mozilla Foundation

alasr
1pts0
www.theguardian.com 1y ago

Fake Cases: Australian Courts Grapple with Lawyers Using AI

alasr
3pts0
www.wsj.com 1y ago

AI - Wall Street’s Modern Gold Rush. Here’s How Investors Are Placing Their Bets

alasr
2pts1
github.com 1y ago

Git v2.48.1 security fixes for CVE-2024-52006 and CVE-2024-50349

alasr
2pts1
www.quantamagazine.org 1y ago

The Year 2024 in Math

alasr
2pts0
blog.irvingwb.com 1y ago

Language Is a Tool for Communication, Not for Thinking

alasr
3pts0
openjdk.org 1y ago

JEP 496: Quantum-Resistant Module-Lattice-Based Key Encapsulation Mechanism

alasr
3pts0
openjdk.org 2y ago

JEP 471: Deprecate the Memory-Access Methods in Sun.misc.Unsafe for Removal

alasr
1pts0
www.econtalk.org 2y ago

The Art of Paying Attention (2022)

alasr
2pts0
www.bbc.com 3y ago

AI 'godfather' Yoshua Bengio feels 'lost' over life's work

alasr
17pts12
www.pbr-book.org 4y ago

Physically Based Rendering: From theory to implementation (2016)

alasr
243pts36
www.youtube.com 4y ago

CMU: Computer Graphics Course (2020)

alasr
2pts1
chromeos.dev 4y ago

Chrome OS: Linux Internals Deep Dive

alasr
4pts0
paulgraham.com 4y ago

The Submarine: Influence, PR and News Media (2005)

alasr
2pts0
news.ycombinator.com 4y ago

Ask HN: Is HN becoming more of an “echo chamber”?

alasr
49pts54
ocw.mit.edu 4y ago

MIT/OCW Course – Nuts and Bolts of Business Plans (2014)

alasr
12pts0

Why does it need to be beautiful?

"Beauty", IMO, signifies the idea that you're doing `something` for its own the sake where "its own sake" approximate the idea of getting/being closer to (or in proximity of) `something`/`anything`/`someone` you find "beautiful".

Once you proved it it's true and you can use its consequences in math, sciences and engineerings (sic).

The expression "you can use its consequences in ..." suggests that the action is a "just a means" to "something else". However, not everyone is interested in the idea of "something else"; they're interested in the idea itself (in a broad sense) as that's one of the main reason they got started/involved in the first place.

---

We all do things as "just a means" to "something else". However, there must be an "end" to this chain of "something else"; otherwise, how do you find any "meaning" (or sense of fulfillment) in this whole enterprise (or chain of "something else"s)?

Regarding the the current HN post's title, I like the TFA original title ("The New 20% Time, Minus the Time") better, along its sub-title; IMHO, the current HN post's title ("Google's 20% 'project' has become AI's 120% 'attention'") is more like reflection of the HN submitter's interpretation of the content of the blog post (that I agree with partially and to a small/negligible extent ONLY).

---

IMO, keeping "Google 20% Time" (mentioned in the TFA) and "R&D is two jobs, ..." (his second-last blog post, at time of writing this comment) in mind while reading this blog post, helps in reading and understanding the content of this blog post; whether we agree (or not) with the author's point-of-view is another matter.

---

Btw, I also noticed AI usage on this blog post; however, I over-looked that part of the post after looking at author's past work (and I'm happy I did that and continued reading the post).

Just a small nitpik with the following part of your post.

As the paper suggests: ...

This is not a paper; it's just a blog post which is mentioned in this post's URL (i.e. .../blog/can-llms-be-computers).

Also it, at the end of the article, has a job advertisement (nothing unusual for a blog post):

    "We are building these systems now, and we are hiring. If you want to work on problems at ..., join us."
LM Studio 0.4 6 months ago

I think you're reading the docs correct: one still uses "lms server [command]" command to manage an LM Studio (LMS) server.

LM Studio 0.4 6 months ago

What exactly is the difference between lms and llmsterm?

With lms, LM Studio's frontend GUI/desktop application and its backend LLM API server (for OpenAI compatibility API endpoints) are tightly coupled: stopping LM Studio's GUI/desktop application will trigger stopping of LM Studio's backend LLM API server.

With llmsterm, they've been decoupled now; it (llmsterm) enables one, as LM Studio announcement says, to "deploy on servers, deploy in CI, deploy anywhere" (where having a GUI/desktop application doesn't make sense).

I think I kind of have an idea what the author was doing, but not really.

Me neither; However, just like the rest I can only speculate (given the available information): I guess the following pieces provide a hint what's really going on here:

- "The quine is the quine" (one of the sub-headline of the article) and the meaning of the word "quine".

- Author's "scaffolding" tool which, once finished, had acquired the "knowledge"[1] how to add a CLAUDE.md baked instructions for a particular homemade framework (he's working on).

- Anthropic saying something like: no, stop; you cannot "copy"[1] Claude knowledge no matter how "non-serious" your scaffolding tool or your use-case is: as it might "shows", other Claude users, that there's a way to do similar things, maybe that time, for more "serious" tools.

---

[1]. Excerpt from the Author's blog post: "I would love to see the face of that AI (Claude AI system backend) when it saw its own 'system prompt' language being echoed back to it (from Author's scaffolding tool: assuming it's complete and fully-functional at that time)."

I haven't used any LLM deep research tools in the past; today, after reading this HN post, I gave Tongyi DeepResearch a try to see how it performs on a simple "research" task (in an area I've working experience in: healthcare and EHR) and I'm satisfied with its response (for the given tasks; I, obviously, can't say anything how it'll performs on other "research" tasks I'll ask it in the future). I think I'll keep using this model for tasks for which I was using other local LLM models before.

Besides I might give other large deep research models a try when needed.

OpenAI says it has evidence DeepSeek used its model to train competitor.

The San Francisco-based ChatGPT maker told the Financial Times it had seen some evidence of “distillation”, which it suspects to be from DeepSeek.

...

OpenAI declined to comment further or provide details of its evidence. Its terms of service state users cannot “copy” any of its services or “use output to develop models that compete with OpenAI”.

OAI share the evidence with the public; or, accept the possibility that your case is not as strong as you're claiming here.

Same goes for "authorization" and "authentication" in OAuth and OIDC. In the normal sense, authentication deals with establishing the user's identity, while authorization determines what resources the user can access.

"Authorization", in the context of OAuth 2.0, means whether a third-party application is "authorized" to take actions on-behalf-of a resource-owner on some resource server. And, if the answer is yes, what is the "scope" of this "authorization".

From the OAuth 2.0 RFC's abstract[1]:

      The OAuth 2.0 authorization framework enables a third-party
      application to obtain limited access to an HTTP service, either on
      behalf of a resource owner by orchestrating an approval interaction
      between the resource owner and the HTTP service, or by allowing the
      third-party application to obtain access on its own behalf. ...

It's very clear that OAuth2 is all about third-party application and their access to a "resource owner" resource. As far as users and their access to their own resources are concerned, they're "resource owner" and they've all the "power" to do whatever they like (with their own resources–off course).

For example, in the early days of Facebook, FarmVille games needed user permission in order to post on users Facebook walls and/or message users' friends if something interesting happened in the FarmVille while users are/were playing. And this is just one funny example to get across my point; there're many use-cases where it's super useful if users can grant a third-party application permission so that they can do some useful work (whatever it happens to be) on their behalf.

Better examples for proper authorization standards are declarative authorization specification DSLs like XACML ...

I'm very well familiar with XACML and similar standards about access control policies; actually, I've build/developed an ABAC-based access-control service using XACML-like spec. for one of our customer-facing business application (in the recent past).

Yes, XACML and similar specs. are good for some use-cases for user access / "authorization" (based on business needs and threat-model). Yet, I'm not sure anyone would recommend them for third-party application authorization. Off-course, it's not impossible and it can be done; however, I doubt anyone would recommend doing it when simpler solutions are available–unless there is a strong business case from the business risks and security (threat-modelling) point-of-view.

---

[1] - The OAuth 2.0 Authorization Framework: https://datatracker.ietf.org/doc/html/rfc6749

> Didn't OpenID predate OAuth? What should OpenID have built upon?

Yes, you're right about "OpenID predate OAuth" part.

However, from my point-of-view, it seems the main source of confusion here is due to the fact that the word OpenID is used in more than one sense:

- First, OpenID used as part of the original OpenID authentication protocol developed around 2005 which communicates the idea of a decentralized online digital identity where one way a user can asserts their online digital identity is via a URL under their control.

- Second, OpenID used as part of the compound noun in "OpenID Connect" (which as per Wikipedia is "third generation of OpenID technology", published in 2014[1]) which implements the user identity and their authentication via authentication workflows built on top of OAuth2 spec.

Now, in my comment earlier i.e. "OIDC, unlike OpenID, ... built on top of existing OAuth spec ... to achieve its main objective ...", I was using OIDC (with "OpenID") in the second sense in comparison to the original OpenID authentication protocol where OpenID is used in the first sense (with both senses mentioned above).

I hope it helps.

---

As an aside, looking at all the comments about "OpenId" and "OpenID Connect" as nouns, I'm reminded of the following post: Two Hard Things[2]

---

[1] https://en.wikipedia.org/wiki/Openid#OpenID_Connect_(OIDC)

[2] https://martinfowler.com/bliki/TwoHardThings.html

You may already know this, I'm writing it as a note for my future self.

OpenID Connect (OIDC) is mostly concerned with authentication. On the other hand, OAuth (or, to be more specific, OAuth v2.0) is concerned with authorization.

> OpenID Connect is effectively an evolution of OAuth.

In my opinion, OpenID Connect is actually evolution of OpenID – in its vision/spirit:

- OIDC, like OpenID, primarily focuses on users' identity and authentication;

- OIDC, unlike OpenID, didn't (re)invent new authentication workflows, which were significantly different in their own ways. Instead, it built authentication workflows on top of existing OAuth spec (which was being (ab)used for authentication in some places which, unfortunately, is still the case) to achieve its main objective (i.e. authentication).

---

Edit: rephrased to better communicate my thoughts (still not perfect; but, as the saying goes, perfect is the enemy of the good so I stop here).

Disclaimer: I'm not a physicist; just a hobbyist interested in these topics.

What I understood, while reading this part of the article, was the author meant something along the line of supersymmetry[1,2] (as Groups are all about symmetry – up to isomorphism).

From CERN Supersymmetry article[1]:

  If supersymmetric particles were included in the Standard Model, the interactions of its three forces – electromagnetism and the strong and weak nuclear forces – could have the exact same strength at very high energies, as in the early universe.

--

[1] https://home.cern/science/physics/supersymmetry

[2] https://home.cern/science/physics/unified-forces

IMO studying the history of any subject, you're interested in, is really useful as it helps understanding why things are the way they're in the present.

Now, regarding the subject of the 'history of philosophy', what are the contents and how they're structured is a different kind of problem. And, unfortunately, it's not limited to the 'history of philosophy' as we face similar kind of challenge when studying other important subjects.

This challenge can't be avoided all the times but needs a systematic approach; otherwise, one might easily commit the (proverbial) mistake of "throwing the baby out with the bathwater".

Dear Chess World 4 years ago

From the horse's mouth:

"I had the impression that he wasn't tense or even fully concentrating on the game in critical positions, while outplaying me as black in a way I think only a handful of players can do. This game contributed to changing my perspective."

---

Personally I don't think that's strong enough reason to convince me that Niemann is a cheat. However, I would love to see more evidence before I change my position on this issue.

Very nice. After a quick skimming of the wiki's contents, I really like the contents and step-by-by approach of all the materials shared.

Does anyone here know of something of similar good-quality OpenGL resources[1] for mathematical/scientific visualization[2]. Currently, I've started going through the source codes and documentation of manim-web[3] and CindyJs[4] to learn the basics; however, I would love to learn the fundamentals and be able to write my own visualization library (or confidently be able to extend an existing one) if/when needed. Thanks in advance.

---

[1] - Personally I prefer books but I don't mind any other high-quality resources something similar to the one OP has shared here.

[2] https://github.com/topics/scientific-visualization

[3] https://github.com/manim-web/manim-web

[4] https://cindyjs.org/gallery/main/

Note: since I can't edit my earlier post, writing a new one (for future reference) which better reflects my earlier thinking.

1. s/eternal/age-old/ # replace "eternal" with "age-old"

2. s/form vs. substance/signified vs. signifier/ # I think signified-signifier[1] distinction is more specific and apt compared to form-substance distinction when it comes communication.

Additionally if you're interested and want to "read" more on "business plans", I would recommend checking MIT's "Nuts and Bolts of Business Plans" course[2], at least the first lecture[3, 4] if you aren't motivated enough to go through the whole course.

---

[1] - Signified and Signifier: https://en.wikipedia.org/wiki/Signified_and_signifier

[2] - MIT OCW - Nuts and Bolts of Business Plans: https://ocw.mit.edu/courses/sloan-school-of-management/15-s2...

[3] - Business Plan Basics - Lecture Video: https://ocw.mit.edu/courses/sloan-school-of-management/15-s2...

[4] - Business Plan Basics - Slide: https://ocw.mit.edu/courses/sloan-school-of-management/15-s2...

This tweet kind of invoke the eternal(?) form vs. substance debate.

Regarding the business plan part, it seems PG does indeed read[1] "business plans": not from some written document which has static form but from a source having a more dynamic form i.e. people who are primarily responsible for writing of those static documents if/when needed.

And, about the balance sheet part, I don't really know how useful it is for the kind of businesses (early stage startup) in which PG and YC are interested and primarily invests in.

---

[1] https://twitter.com/paulg/status/1492695627888672771