It somewhat decently identifies the object drawn, but fails badly to actually find the identified object.
HN user
flixic
Web and app designer and developer. @lekevicius
[ my public key: https://keybase.io/lekevicius; my proof: https://keybase.io/lekevicius/sigs/hrkS3l9IZp-H77PDQFN9cbMbAM9rFQ-6sISj9gTId9Y ]
This is a pretty good intro article: https://andrea.corbellini.name/2015/05/17/elliptic-curve-cry...
Facebook app, Instagram and Messenger are working for me.
I'd like to hear Microsoft's explanation for this "feature".
Despite benefiting tremendously from crpyto, I don’t believe this narrative.
The article mentions the core problem: being your own bank is a HUGE risk. I can accept that risk and deal with complex security mechanisms I have to maintain to both protect my own bank and keep it accessible. But a good security guide for crypto is 20-30 pages and requires serious cryptographic understanding. Currently, I can’t expect that from average users.
Everything can be solved over time. Social recovery wallets and user-friendly hardware might become mainstream. But I don’t see that happening in the next 5-6 years, and I fully expect CBDCs to be far along in that time. Then, countries will be a lot less motivated to promote crypto for the unbanked.
For transfers, Smart ID displays both recipient and amount. So that part can’t be easily MITM’d.
I never thought about this, but yes, I think it can be MITM'ed exactly as you described. Same attack can probably be performed on the web, where Smart ID is also a sign in method.
Banking systems in Baltic countries use a unified 2FA system called SmartID[0]. When authenticating to bank via phone, they ask for two things: your user ID (which is not secret), and to authenticate using Smart ID, which means entering a PIN on your phone.
However, each PIN entry is accompanied by "code check": bank's support person says their 4 digit code, and you can verify that it matches on request for PIN screen. This neatly prevents someone pretending to be a bank during a call, because each PIN request uses a different "code check".
It's also very simplistic. In subject matter, in character archetypes, sometimes in acting, and most annoyingly, in editing (how it never trusts the viewer to remember what happened 25 minutes ago, so they show flashbacks to remind you).
In many cases, "animations on the web" has become Lottie animations. Or, at least, Lottie raises the bar for animation expectations.
I'd love to see two things:
- A decent free or one-time payment editor for Lottie (don't make me use AfterEffects)
- Perhaps a Lottie implementation using Web Animations API, if that is even possible.
So, China is the worst because of censorship (strictly controlled information), and US is in a bad spot because of too much misinformation (too little control on information).
I'm struggling to understand this "measurement".
Initial Safari design was quite different from what shipped today (beta process worked!). The main differences were: all the buttons where crammed into the address field, dropping the toolbar (shipping design returned the toolbar), and the address bar was floating over content, detached from the bottom. This caused many sites to break.
It's been a long, long time since I read an LATimes article. It looks like they finally allowed people from Europe to view their website, after years of blocking it completely due to not willing to deal with GDPR. Well done, and "finally".
Current comments seem to be responding to the wrong topic. This article is not at all about energy use, but about mining hardware lifetime and resulting eWaste. Which seems like a legit argument, and harder to dismiss with "but it uses renewable energy".
Can’t agree more with this tweet. It was amazing fonts directed by Frere-Jones that created almost all the value for H&F-J.
Looks like we have a VPN duopoly forming:
- Kape with Cyberghost, PIA and ExpressVPN
- Tesonet with NordVPN, and allegedly a couple more most known, but there is no strong proof, so I'd rather not list them here.
Apple specifically introduced BlastDoor framework to combat this, so NSO shifted their attacks around decoding, avoiding BlastDoor.
What if 3 US citizens said "fuck no", and it was someone on much shakier ground who felt the pressure to say yes? Not a given at all, just makes it more likely.
The way I look at this, the UI would be only to speed things up / simplify things a little bit. It wouldn't try to do full error validation before execution. It's the job of a command-line app to fail with an error if wrong combination of flags or inputs was provided, and the UI might display that error in a pretty generic way.
Can be XML as well, but I think HTML is too complex. The goal, for me, is simplicity.
<section name="Options"><checkbox flag="c" label="Compile" /></section>
It shouldn't be a hassle at all to convert a man page to a UI that speeds up actions and avoids common errors.Anyway, this idea is free, so feel free to take it and do whatever, even full HTML (:
It seems to me that a lot of these projects aim to deliver really "good" apps: native UI, table output, etc… Results are great, but the UI building complexity also becomes quite high.
I think that's the wrong goal. The goal should be really simple definitions and ok quality apps. Simple JSON (or XML, don't care).
{ control: checkbox, flag: c, label: "Compile" }This is cool! Syntax might scare off many developers, I think one of the goals should be approachability, it should be super easy to transform your favorite command-line app into a GUI.
Gooey is a great northern star to follow, but this hypothetical app should work with any command-line app.
Idea would be to define UI structure that outputs (and executes) essentially a string (command) to run.
An idea that anyone is free to take: JSON-definable UI for command-line apps. Define checkboxes for flags, inputs for arguments, buttons for commands and file pickers / droppable wells for file input. Allow some customization of layout of these elements. Have in-app "store" to download these JSON definitions, maybe even suggest them based on `which` output. Electron app, obviously.
Tiny tip: loose is opposite of tight, to lose is opposite of to win.
The app literally says "Welcome to FractalCrypt!" when you open it. Not only revealing the encryption format name, but clearly hinting to how it works.
I'd much prefer an encryption format that hides itself in a well-known one layer encryption (like encrypted zip).
One my favorite subversions of this technique is in Mr. Robot, with a gun hidden in a popcorn machine. Using of the gun is never shown on screen: the show assumes that the person watching remembers that a gun was shown and hidden, and allows the connection to be made "between the lines". Excellent use of Chekhov's Gun, but it only works because of a certain amount of TV tropes literacy.
Took me a moment to realise, but this is for keyboards, not iPhones. I don't think (?) anybody can access anything from an iPhone using an evil cable (using publicly-known attacks).
It seems they are targeting "normal" people (to whom word "dockerized" sounds like a misspelling of something happening in a port).
Mixing "normal" people and self-hosted email is a recipe for very bad experience.
Do you mark Bin 2 as spam? I tend to, but not sure if it’s a good idea.