HN user

ancarda

2,456 karma
Posts28
Comments796
View on HN
openai.com 4mo ago

Codex Security: now in research preview

ancarda
35pts2
blog.jetbrains.com 7mo ago

Meet the Islands Theme – The New Default Look for JetBrains IDEs

ancarda
3pts0
www.theguardian.com 3y ago

Airport security rules on liquids and laptops could be lifted in UK in 2024

ancarda
12pts0
www.ssllabs.com 3y ago

1.1.1.1 doesn't have a valid TLS cert, only cloudflare-dns.com

ancarda
4pts2
lots-project.com 4y ago

Living Off Trusted Sites (Lots) Project

ancarda
1pts0
www.youtube.com 4y ago

I survived a DDoS attack – Jeff Geerling [video]

ancarda
2pts0
sourcehut.org 4y ago

What's cooking on Sourcehut? October 2021

ancarda
2pts0
www.bbc.co.uk 5y ago

Covid-19: UK in early stages of third wave – scientist

ancarda
3pts0
www.icann.org 5y ago

DNSSEC Now Deployed in All Generic Top-Level Domains

ancarda
2pts0
www.bbc.co.uk 5y ago

Coronavirus: France finds first case of new variant

ancarda
2pts0
www.abetterinternet.org 5y ago

Introducing ISRG Prio Services for Privacy Respecting Metrics

ancarda
2pts0
www.bbc.co.uk 5y ago

Amy Coney Barrett Confirmed to US Supreme Court

ancarda
19pts30
news.ycombinator.com 5y ago

Ask HN: Do you experience a crippling fear of “writing low quality software”?

ancarda
4pts5
www.bbc.co.uk 6y ago

Brain implants used to fight drug addiction in US

ancarda
1pts0
medium.com 8y ago

Digital Exile: How I Got Banned for Life from AirBnB

ancarda
632pts311
www.bbc.co.uk 8y ago

Facebook explored unpicking personalities to target ads

ancarda
1pts0
www.bbc.co.uk 8y ago

Man guilty of hate crime for filming pug's 'Nazi salutes'

ancarda
3pts0
socii.network 8y ago

Socii – The Social Network

ancarda
2pts0
www.bbc.co.uk 8y ago

Rehab camp aims to put young cyber-crooks on right track

ancarda
21pts6
news.ycombinator.com 9y ago

Ask HN: What are some light (not bloated) websites?

ancarda
6pts0
news.ycombinator.com 9y ago

Ask HN: How can I get involved with Linux/OpenSSL/GnuPG/etc

ancarda
103pts29
letsencrypt.org 10y ago

Why Let's Encrypt only issues certificates for 90 days

ancarda
2pts0
blog.cloudflare.com 11y ago

Origin Server Connection Security with Universal SSL

ancarda
5pts0
news.ycombinator.com 12y ago

Ask HN: I was a victim of bike theft. What can I do?

ancarda
5pts15
stackoverflow.com 12y ago

Memory leak in Go http standard library?

ancarda
10pts7
getkidnapped.com 12y ago

KidnApp - An app that lets you create and schedule your own private kidnappings

ancarda
11pts5
www.bbc.co.uk 13y ago

David Cameron urges Internet firms to block child abuse images

ancarda
2pts1
robrhinehart.com 13y ago

Nothing to Fear : Mostly Harmless

ancarda
6pts0
Zig's New Async I/O 9 months ago

I really hope this is going to be entirely optional, but I know realistically it just won't be. If Rust is any example, a language that has optional async support, async will permeate into the whole ecosystem. That's to be expected with colored functions. The stdlib isn't too bad but last time I checked a lot of crates.io is filled with async functions for stuff that doesn't actually block.

Async clearly works for many people, I do fully understand people who can't get their heads around threads and prefer async. It's wonderful that there's a pattern people can use to be productive!

For whatever reason, async just doesn't work for me. I don't feel comfortable using it and at this point I've been trying on and off for probably 10+ years now. Maybe it's never going to happen. I'm much more comfortable with threads, mutex locks, channels, Erlang style concurrency, nurseries -- literally ANYTHING but async. All of those are very understandable to me and I've built production systems with all of those.

I hope when Zig reaches 1.0 I'll be able to use it. I started learning it earlier this month and it's been really enjoyable to use.

Show HN: JSON Query 9 months ago

It's likely because there's a citation in a paper. That's apparently the bar you need to reach to get Wikipedia to see something as significant enough. I tried to get a draft article about SourceHut ( https://sourcehut.org/ ) to be published after extensive improvements and they refused because there weren't enough third party links. This is despite the fact there's like a dozen pages in Wikipedia about software that is hosted on SourceHut, so it seems notable enough?

Are you running the long-term (6.x) branch? RouterOS 7.x (stable) is much better at IPv6 as far as I know.

When was the last time you tried? I used to run into issues too but for a few years now it's basically "just worked".

Oh this hurts a lot. I don't know of a good alternative to this website. Other sites I've found either run fewer tests (so are less useful for debugging) or incorrectly claim I don't have IPv6 (I do?).

I don't suppose we can donate some money to keep this website up? Or perhaps some company like CloudFlare would like to host a mirror?

I don't think it's unrelated at all. I saw the same picture and just closed the tab right away. Why should I read this article, the whole thing might be written by an LLM.

Sorry, I don't have an iOS device, so I'm not sure. The only mention I could find on the website was: https://www.migadu.com/guides/gmail_android/

While Gmail is an IMAP client app, it will not check for new mails continuously. Not only it does not support IMAP Push extensions which are standard nowadays, but the [most] frequent polling interval is 15 minutes

Which I guess implies they offer IMAP push, since they're expressing disapproval that the Gmail app doesn't support IMAP push

I was a happy FastMail customer for years, but lack of IPv6+DNSSEC was also disappointing for me. I eventually heard about Migadu ( https://www.migadu.com/ ) which has all that, and AFAIK, EU servers as well.

The only downside for me is the web UI isn't nearly as polished as FastMail.

I don't know a lot about C or the internals of OpenSSL, but going by the commit message, does this mean we should disable TLSv1.3 until we've had a chance to patch OpenSSL?

Edit: Actually, reading through the code a few times, maybe TLSv1.2 should be disabled?

I really wish we had some way to protect ourselves until the patch is widely available.

There's lots of prior art, such as https://wheelmap.org/ -- so I imagine OSM is somewhat open to this sort of thing. Might be worth looking at how Wheelmap edits OSM. I believe it's from a generic account and edits are tagged such to make it clear it's from a member of the public.

You could also implement OAuth (sign-in with OSM) to do edits, similar to how some tools like https://maproulette.org/ work, though you'll get less contributions if you don't have an option for anonymous public edits.

Allowed you to block certain domains from your search results

I would love for Google to build this in. Until they do, there is a WebExtension that does this: https://addons.mozilla.org/en-US/firefox/addon/hohser/ ("Block or Highlight Search Engine Results"). I use it to block stuff like W3Schools so when I search for something, MDN is always #1. Saves me a lot of time having to add "MDN" to the end of every query.

Almost all spam I receive is from Gmail. It's gotten so bad I've actually setup a filter that routes everything from @gmail.com into spam - except for some whitelisted email addresses. G Suite is fine, it's only @gmail.com that is an issue

And yes, it's genuinely from Gmail; valid SPF, valid DKIM, came from a Google IP address, etc...

To say the biggest source is Gmail might be technically wrong though - I suspect there's a large volume of spam that Migadu (my provider) is dropping before it even reaches my inbox, i.e. emails that it is 100% sure are spam and it can just drop. Nevertheless, an overwhelming amount of spam I observe/have to deal with is coming from Gmail. Second to that is outlook/hotmail.

How did you know to contact Microsoft to have them whitelist your IP? Was that from a DMARC report?

This is the sort of thing that puts me off self-hosting email, as much as I'd like to do it -- it seems like a huge amount of effort, tracking down who I need to shout at this week to have them whitelist my IP address.

As far as I know, a lot of DDoS attacks use UDP amplification, which can be prevented if every ISP implements BCP 38; i.e. drop UDP traffic at the edge of their network that has a source that cannot have come from within their network.

EDIT: To clarify, this won't stop layer-7 based DDoS attacks, or anything that uses TCP (like SYN flooding). Just UDP amplification.

Gimp 2.10.28 5 years ago

On macOS side, the activity is still slow, if not non-existent.

So if you want this to change, please join us!

I'd like to help, though I feel like I don't know enough C, and I've never used GTK. Is it possible to get a mentor, like you can for Linux kernel development, who can help me write my first few patches?

A vending machine on another uni's campus replying to your pings

Really? Wow. I can't even ping internal AWS services (like the EC2 Metadata Service, NTP, or DNS). Nothing responds to ICMP Echo anymore, and it makes me sad. Lately it feels like `ping' has become useless

Why are we doing this to ourselves?

Is there any way to add a close button (or any button) through the IPC mechanism? I know you can do something like $Mod+x to close a window, but I'd honestly rather just use a button. Maybe the button can have a tooltip reminding you what close is set to

I have a feeling the i3 maintainers won't want to add a close button, however.

    Estimated Cost to Develop (organic) $467,287,312
    Estimated Schedule Effort (organic) 142.185717 months
    Estimated People Required (organic) 291.973834
Where does this come from? Does cloc now try to estimate how much time/money would be required to build software?

I'd be interested what it thinks of my code. Do you have to give it a lot of code for these numbers to appear?