I loved the idea of Pebble watches, but I found them too bulky for what they offered. I hope the relaunch focuses on the same core functionality in a much much sleeker design.
HN user
cantsingh
I've been playing with the same thing, it's like a weird mix of social engineering and SQL injection. You can slowly but surely shift the window of what the bot thinks is "normal" for the conversation. Some platforms let you rewrite your last message, which gives you multiple "attempts" at getting the prompt correct to keep the conversation going the direction you want it.
Very fun to do on that friend.com website, as well.
Yeah, this is a nightmare scenario for me and why I moved off of Google Voice after using it nearly my entire adult life (shoutout GrandCentral!). Google is just not reliable anymore.
Exact same boat here. A friend and I both bought the 2020 Intel MBA thinking that the M1 version was at least a year out. It dropped a few months later. I immediately resold my Intel MBA seeing the writing on the wall and bought a launch M1 (which I still use to this day). Ended up losing $200 on that mis-step, but no way the Intel version would still get me through the day.
That said...scummy move by Apple. They tend to be a little more thoughtful in their refresh schedule, so I was caught off guard.
Ugh, exactly. I'd kill to get a stacktrace of the mind.
Yeah, I agree with the author's moral stances, but I'd fire them too.
nostalgia is a hell of a drug.
I loved this piece; sometimes I think of reviewing past memories as akin to rewatching a familiar show. There are no surprises, so even the hardest plot-twists have less anxiety associated with them.
The biggest issue is that it doesn't seem like these subreddits are doing anything beyond closing down.
Point people to an alternative. Not just in the vague direction of The Lemmiverse or Squabbles or whatever; if your sub is going dark, you should have somewhere to receive all your refugees.
Even better if the mods coordinate so that all subs are pointing to the same place(s).
Even a shared Discord would have been a big step up imo.
This protest was just gone about the wrong way.
They appear to have gone dark for the rest of the month, unless I'm missing something.
This is where Apollo builds their own reddit clone, implements reddit's API, and starts their own competing social network. Use the ~$5/month to pay for server costs, or run an ad supported variant.
Could it be configured so if I go to, for example, https://i.haasie.com/something.png and you haven't already backed up from imgur, you back it up when that URL is hit?
You can use the Spotify Smart Playlists feature to do this. I used to do something similar before giving up. It's clunky, but it works. You basically set it to pull all new songs from the feeder playlists into the accumulation playlists, every night.
Thanks for the suggestions, it's neither of these :(
Same situation. I usually pride myself on having good situational awareness, but something about the shock of suddenly having a flat on a major highway took it out of me. I replaced my front right tire, pulled back into the slow lane, only to finally realize my back right tire had also been blown out. I called roadside assistance, left the car there, and Uber'd home.
That was a rough day.
combine this with Lucky Commit
aka 'git gaslight'
He got 30k from Instagram for the exact same concurrent bruteforce attack on their password reset flow.
You seem to have a lot of knowledge on this, so apologies if I am misunderstanding, but aren't you still overlooking the fact that that for iCloud accounts that hadn't been used on Apple devices (even if it was a small subset of devices), he was able to reset the provided password via concurrent brute-forcing the OTP endpoint?
Isn't that alone sufficient to demonstrate complete iCloud account takeover?
Agreed that this should not be taken as proof that the other reset flow was not vulnerable, but to me it seems like two separate issues.
I think you are misunderstanding what he has achieved. There is a secondary attack that he theorizes was possible and patched by Apple before he demonstrated an ability to exploit it. I agree that he should not receive any bounty reward for this (theoretical) attack.
However, the first half of the article focuses on him successfully being able to reset the password on any iCloud account that hadn't been used to log in to an Apple device.
Being able to remotely change the password of an iCloud account should earn him the full $100,000 reward, even if it is only on some subset of iCloud accounts.
How sophisticated the attack/exploit may be is not the point here. The salient point is that he demonstrated complete iCloud account takeover, and Apple lists that as a $100k bounty reward, but are only offering him $18k. Please correct me if there is something I'm missing.
They must be a project manager.
Not strictly programming, but:
An SEO consultant walks into a bar, pub, speakeasy, drinking hall, club.
I used to have a Twilio phone number hooked up to a Lambda function so that people could press the buzzer box at the front of my apartment building and it would automatically send back the required DTMF to unlock it, then text me to let me know someone had been buzzed in.
Other than that, just some bespoke Tasker automations and some hotkeys on my computer. Reading through this thread makes me feel like a rookie, though.