HN user

grier

79 karma

software engineer. really likes security.

Posts4
Comments19
View on HN

I live in the US. I don't hold much hope in gun control changing after recent years. Recent federal and state policy is trending towards less regulation and removal of the previous administrations regulations.

In 2024, estimated 16,576 deaths in the US from guns (excluding suicide, which is a very large addition on top of that), and 499 mass shootings.

This article is about graduate student stipends. Tuition does not have a cost for these students, so the stipend only needs to cover living costs (which as the article points out, it frequently does not).

In CS, graduate students often intern over the summer and can make up for some of the difference.

Tuition is paid by the university, typically from a grant.

a non-profit organization

should be taken into account when comparing the goals and motivations of organizations developing various other communicators.

Business or funding models can change for both for- and non-profit organizations. Especially as people move to options that are believed to have better user-privacy, the idea that they do not sell/monetize collected user data today does not indicate what they will do tomorrow.

Unless users have strong evidence that companies are not collecting and/or monetizing this information (which as the OP pointed out, there is for Signal as found in a subpoena), the "billboard" approach towards promising user privacy via marketing and PR is a shallow one at best for non-profits as well as for-profit companies.

CIA Labs 6 years ago

Starting out of school with a BS in computer science or computer engineering was GS 7 or 8, so around $40-50k/year. The salaries are public for each level.

Additional degrees do not move you off the GS scale.

Reaching the equivalent of executive level can mean moving beyond GS to the senior executive service (SES).

The idea that even spam is does not fall into "content moderation" is very interesting.

A fake Rolex email is an interesting advertisement to some people and belongs in the garbage for others.

Research has shown that buyers of spam advertised products will literally dig through their spam folder to find a store to buy from.

As this (naturally, pun intended) expands to green coffee, açai, news articles about Florida man, and on up to what we see as disinformation, the difficulty in identifying intent becomes equally as challenging.

There's no way to "just host content", and anyone attempting to do this will face a range of laws, user challenges, and more that introduce "content moderation" into the platform.

What was Slack's role in all of this?

They appear to have turned over historical images and chat logs, not just for the person indicted, but even others in the same channel.

Did the FBI ask nicely or was there actually some formal process?

I'd argue that other questions around how the data is:

- handled

- available for access by employees

- retained, deleted, and stored

etc.. are at least as important for your privacy.

As someone who works in security, I am as concerned or more about the seemingly inevitable breach's impact on my privacy.

As you said, the goal with OP [1] (and in the initial Chrome [2] and MS research [3] work) was really to apply what we had learned with isolation for operating system level security (for the last several decades) onto how we build web browsers. Dropping privileges and routing calls via smaller kernel should not be cutting edge today.

edit adding references: [1] https://wkr.io/public/ref/grier2008op.pdf [2] https://seclab.stanford.edu/websec/chromium/chromium-securit... [3] https://www.microsoft.com/en-us/research/publication/the-mul...

Databricks - https://databricks.com/ - San Francisco, CA - Frontend, backend, site reliability engineers

Databricks is building a cloud platform that makes data science simple. We are founded by the team that created Apache Spark, and are dedicated to the open source development of Spark.

Frontend / Full stack engineers: focused on providing a feature rich notebook that enhances the user's experience with Spark. Working with React, Backbone, d3, new and creative visualizations, and improving the way people work with big data is what we do.

We are also hiring for other software engineering positions. Experience with scala and working knowledge of distributed systems is a major plus!

https://databricks.com/company/careers

If you have any questions feel free to email me directly at chris@databricks.com

It's also only a good signal as long as you aren't actioning on it.

As soon as it becomes advantageous enough to fit in with the normal user patterns, the attackers will modify their behavior accordingly.

The time-of-day, internationality, and many other signals mentioned in this post are easily evaded when it becomes profitable to do so.