HN user

jrochkind1

28,355 karma
Posts118
Comments7,644
View on HN
noelrappin.com 8mo ago

Ruby and Its Neighbors: Smalltalk

jrochkind1
229pts143
www.newyorker.com 1y ago

"Mountainhead" Channels the Absurdity of the Tech Bro

jrochkind1
11pts6
www.newyorker.com 2y ago

Apple Is Bringing A.I. To Your Personal Life, Like It or Not

jrochkind1
37pts44
jardo.dev 2y ago

System Tests Haven't Failed

jrochkind1
1pts1
blog.heroku.com 2y ago

New Heroku Postgres Essential Plans Built on Amazon Aurora

jrochkind1
2pts0
blog.rubygems.org 2y ago

The Implications of Crypto Rewards on Rubygems.org

jrochkind1
4pts0
www.reuters.com 2y ago

Faster US stock settlement poses 'systemic risk' to Europe: asset managers

jrochkind1
2pts0
www.nytimes.com 2y ago

Blunders in New Fafsa Form Plunged College Admission Season into Disarray

jrochkind1
5pts0
support.authy.com 2y ago

Authy Desktop EOL moved from August 2024 to March 19 2024

jrochkind1
28pts34
www.nytimes.com 2y ago

Big Chip Makers Are Pushing Back on Restrictions on China Semiconductor Sales

jrochkind1
3pts1
www.neowin.net 2y ago

Google brings more security features to its password manager

jrochkind1
5pts0
www.insidehighered.com 2y ago

University of Michigan Halts Internet During First Week of Classes

jrochkind1
1pts0
libera.chat 2y ago

Libera/Matrix Bridge Temporary Shutdown, a Retrospective

jrochkind1
15pts1
www.scotusblog.com 3y ago

Justices rule against Andy Warhol estate in copyright dispute

jrochkind1
2pts0
www.nytimes.com 3y ago

Lobbyists begin chipping away at Biden’s $80B IRS overhaul

jrochkind1
220pts214
www.theatlantic.com 3y ago

Crypto carbon emissions could be even higher this year than last

jrochkind1
2pts0
www.bloomberg.com 3y ago

New Starbucks CEO Takes Reins Early from Howard Schultz

jrochkind1
2pts1
www.nytimes.com 3y ago

Americans’ Old Car Batteries Are Making Mexican Workers Sick

jrochkind1
2pts2
shopify.engineering 3y ago

Good Documentation Can Improve Productivity

jrochkind1
2pts0
www.nytimes.com 3y ago

Walgreens Executive Says Shoplifting Threat in San Francisco Was Overstated

jrochkind1
71pts52
blog.testdouble.com 3y ago

Effective and easy strategies to hate bugs a little less

jrochkind1
1pts0
www.nytimes.com 3y ago

FTX’s Collapse Casts a Pall on Effective Altruism Philanthropy Movement

jrochkind1
3pts1
www.theatlantic.com 3y ago

Elon Musk Is Bad at This

jrochkind1
12pts0
www.vice.com 3y ago

Airbnb to List Actual Prices

jrochkind1
4pts0
crimethinc.com 3y ago

Tracing Twitter from Its Roots as a Protest Tool to Elon Musk’s Acquisition

jrochkind1
1pts0
www.nytimes.com 3y ago

I Make Video Games. I Won’t Let My Daughters Play Them

jrochkind1
9pts4
www.nytimes.com 3y ago

A Rail Strike Could Wreak Havoc on the American Supply Chain

jrochkind1
14pts13
www.newyorker.com 3y ago

The search for dirt on Mudge

jrochkind1
229pts225
old.reddit.com 3y ago

Recent Heroku_ext changes break pg:copy and pg:restore for existing DBs

jrochkind1
3pts1
www.theatlantic.com 4y ago

ACLU: Free Speech for All Is Still Our Mission

jrochkind1
3pts3

It's interesting you used both saxophone and violin as your examples, as they are very different historically.

Violins are basically ancient and evolved gradually over huge time spans, yes.

But saxophones -- invented by a guy named Adolph Sax and patented in France in 1846! It really was a kind of new thing, combining aspects of brass and woodwind instruments in ways that hadn't been done before. I think it's fair to say he invented it as a new instrument. (What legal protection that should get how is another story, I don't know that I like patents honestly). https://en.wikipedia.org/wiki/Saxophone

Sax was really mad about manufacturers reverse engineering and copying his saxophone without a license and tried suing them etc, for the period before his patent expired, but it was still being copied a lot -- it was a new thing people were excited about. Once the patent expired, it was definitely a free for all.

Regressive JPEGs 4 days ago

I haven't been able to see it even setting Chrome developer tools to crazy slow network speeds. Maybe chrome developer tools simulation isn't enough to see it?

The observations you are reporting are from images you created yourself and you know are in fact progressive jpegs? (not "regressive", although that's funny). There are of course other techniques to start with a lower resolution image that do "work" (in the sense of actually displaying a lower resolution image first at least).

So it was done on the clock as a project at Developer Relations team, I don't know if that should be called a personal project or not, maybe, it does seem Developer Relations projects could be one person's idea and execution, but just to be clear on what happened.

It was released 2 and a half months before Google IO.

The way I read this, they decided to announce it at Google IO because of the attention the project released by the Developer Relations team got. No one with inside knowledge has said the "official tool" (not from Dev Relations) was already planned when it was released. Maybe it was. Maybe a guy on the Dev Relations team would or should have known it was if it was. Easy for me to believe it was not however.

I don't know that I'd call the repo "non-Google-affiliated", but whatever it is, it is still up [1] in a google-owned github organization [2], which also includes several other repos with the line "This is not an officially supported Google product," such as this one that's two years old [3].

So, yeah, whatever it is, I'd say it looks normal.

[1] https://github.com/googleworkspace/cli

[2] https://github.com/googleworkspace

[3] https://github.com/googleworkspace/redriveapp

What about local models do you find preferable?

I guess "starting to find them preferable" suggests to me you think they work better, but this is surprising to me so I think I may have misunderstood, so I ask!

Like you're saying they work better than the proprietary models (in what ways?), or you find them mostly good enough and prefer the privacy or cost, or what?

Will It Mythos? 30 days ago

Why are they being told anything outside of the test? What is that for? Isn't “can you find this bug in this file?” also a test? It sounds like there are two kinds of tests? I'm clearly confused, I realize.

Will It Mythos? 30 days ago

And, all of the bugs can be identified by several models if they are pointed directly at it and told what to look for.

This made me think, well, sure, if you tell them what to look for... but then:

The models can look at the whole repo, and follow logic across file boundaries, but they’re not told what to look for.

So okay, the first one was an accidental mis-statement?

Makes sense, and the conclusion would be that the goal of trying to ban or censor tools or information that could be used to exploit vulnerabilities is impossible and counter-productive in the first place.

You will end up actually helping the attackers maintain an advantage over the defenders, as they will still find illegal ways to access the illegal tools/information.

Which, I guess, that's really my suspicion, parts of the US government probably actually prefer for the attackers to have an advantage, they consider themselves the biggest baddest attackers and their right to have the abilities to keep attacking sacrosanct.

I admit I hadn't really thought about that before (I don't work specifically in security), but I see your point.

But, so... the solution people think is limiting people's ability to discover and patch vulnerabilities, and hoping the black hats won't find a way anyway? This does not seem like a sustainable or feasible plan. It does, to be honest, make me wonder how much of the government's motivation is ensuring that they have access to vulnerabilities that remain unpatched.

the former nerd type was based on not having social and economic power. people wit social and economic power are inevitably drawn to be assholes (which is what nerds used to know).

Because encouraging a culture of disrespect and bullying is actually bad for security not good for it. Politely decline, please, no need to be rude because of your (not always guaranteed to be correct) perception of where someone (or some thing!) is coming from.

Shouldn't it get swapped out of RAM if it's not being used for a long time? My understanding was that modern memory management is very good at this, there's no need to be shutting idle things down and starting them up all the time. I could be wrong.

This whole thing seems kind of silly to me I must admit. It seems obvious that Claude Desktop needs a VM for security for the majority of it's actual real world use. VM's take up memory, yeah. Them's the breaks. If other competitors have managed to provide as good (or ideally better) security scenario with less RAM, that would be interesting, but just complaining about it seems weird and uninformed to me.

There is no reason you can't be gracious, courteous and polite while refusing to accept or even to review the PR. These things are not tied together. You can also refuse to be bullied by submitters, stop engaging altogether. But bullying is part of the problem, not the solution, normalizing bullying is the wrong direction and will not result in more secure code.

The worst part:

In addition, Williamson said that Giovannini (or his agent) had submitted patches that were incorrect and then "replied to objections with LLM-generated justifications that eventually overwhelmed the maintainer into merging the fix"

this was a regulated monopoly, and if their customer satisfaction dropped below 96% (if I remember correctly) it could result in millions of pounds in fines.

OK, I'm still at the beginning and irrelevant to the article, but as a USA-ian, I am so jealous about that. Unheard of here.