How exactly do they "try to keep extension authors from destroying the editor"?
HN user
gtklocker
There's mypy.
This is making me really curious because while Chrome is buttery smooth on my Macbook Pro, Firefox 57 is really sluggish, especially when creating/closing tabs. You can literally see the animation stuttering. Other times when a page loads it won't paint for some seconds even if it appears that it has completed loading. Is anyone else having these issues?
Very nice!
docker id is gtklocker, thanks!
Didn't restore most stuff for me (especially SMSs and calls) last time I tried it on my N4.
* I'm not talking about F-Droid. I'm talking about CM as a whole and the recovery someone may use.
* There is a way, however it's common practice to leave it unlocked and I'm not sure you mention that in your article.
The idea of freeing your phone is cute, however, there are some considerable dangers.
* The software that you give access to your phone (be it drivers or the recovery images themselves) isn't signed by anyone. Some of the software isn't even available via HTTPS. I think it's a bad idea to trust some HTTP and unsigned executable more than Google, who are making all they can to ensure the integrity of anything that runs on your phone.
* Unlocking your bootloader is a bad idea. Google erases all your data whenever you unlock your phone[1]. They don't hate you, they've just realized the security issues that come from having an unlocked phone. Take this for example: You're at the airport and ready to leave. However, TSA stops you for a "random" check. They have your phone for about 5 minutes and there's nothing you can do about it. Now, they could ask you for your passcode but then you'd know something's wrong. Now, your bootloader is unlocked, which means they can see your device at firmware level and alter it to their liking it. Nothing can stop them from plating a backdoor in there or just making a copy of all your files and you wouldn't know. That's why Google does [1].
[1] http://wiki.cyanogenmod.org/w/Install_CM_for_maguro#Unlockin...
Good to see the HTTPS site/download working. Now if only we had GPG signatures for this.
I regret putting myself on one of those circles. :(
The SafeSearch setting isn't saved on https. Did they even test this thing before pushing it out?
They're stating they have a partial DB leak. https://twitter.com/1775Sec/status/421842856748126208
Am I the only one who remembers this?
http://www.edn.com/design/automotive/4423428/Toyota-s-killer...
Point is, I should not be able to access a plaintext version of a website hosting such cryptographically crucial software/information.
It's obvious why it can be a grand target for Man in the Middle, defacement and worst of all integrity attacks. Apart from preventing many of the latter, implementing HSTS could have really mitigated the problem. Anyone who had already visited the site wouldn't see the defaced page. Furthermore, they could get added to an STS preloaded list[1], making the attack invisible to anyone using a modern browser.
If you are interested, the Wikipedia page[2] does a fair job at explaining more about why HSTS is needed.
[1] https://src.chromium.org/viewvc/chrome/trunk/src/net/http/tr...
[2] https://en.wikipedia.org/wiki/HTTP_Strict_Transport_Security...
What is a good reason for openssl.org not to utilize HSTS[1]?
$ curl -I https://www.openssl.org/
HTTP/1.1 200 OK
Date: Sun, 29 Dec 2013 03:57:54 GMT
Server: Apache/2.2.22 (Ubuntu)
Accept-Ranges: bytes
Vary: Accept-Encoding
Content-Length: 15686
Content-Type: text/html
[1]: https://en.wikipedia.org/wiki/HTTP_Strict_Transport_SecurityI want to believe!
A thing I've noticed is that pinch to zoom is much more smooth than Chrome in OS X.
How do I switch tabs using my keyboard? Cmd-<N> doesn't work, so does not Cmd-Alt-Left|Right.
What do you mean native? How is this more native than Chrome?
3.4.2-x86_64-linode25 doesn't seem to suffer from this.
gunther> gcc -O2 semtex.c
gunther> ./a.out
a.out: semtex.c:63: main: Assertion `(map = mmap((void*)0x380000000, 0x010000000, 3, 0x32, 0,0)) == (void*)0x380000000' failed.
Aborted
gunther> uname -r
3.4.2-x86_64-linode25I really like Google Glass.
Nameterrific is down. https://www.nameterrific.com/
I'd prefer the Air or even the Pro (there's really not much difference in portability terms) and still work remotely. It's liberating to host everything on the cloud. You don't have to worry about your local setup failing, the VMs hogging resources and making your machine unusable (or destroying your battery).
Right now I'm using a Macbook Pro 2012 w/o the Retina. I do all my development on Linode servers, remotely. I get 6 hours of battery life and the machine is a pleasure to work on. I wouldn't go back to my old Windows laptop, where I used PuTTY to work.
Some services, like Facebook, normalize the mail address (turn all letters to lower case). Can you make sure that mails to the normalized email also reach my inbox? (They don't now!)
Poorly written, does not even work for me.
Error: Command failed: /tmp/test969394043.c:1:0: fatal error: can’t open /root/assembler/ccMEBJ3B.s for writing: Permission denied compilation terminated. The bug is not reproducible, so it is likely a hardware or OS problem.
Really.
Shit rms says.
As long as data is concerned, http://google.com/dashboard will tell you about everything tied with you account.
I'm currently trying to do this as well and the only viable solution sounds self-hosted email. I tried a bit with hushmail and Tor (also look at hushmail's Diceware for password encryption) but it has a tight limit of 25MB for free accounts.
Good luck.
t * ((t>>sin(7)|t>>cos(10))&tan(3221)&t>>44)
Alarm clock?