HN user

kbart

4,570 karma

You can contact me via email: kbart.misc@gmail.com

Posts17
Comments1,560
View on HN

Excuse my likely stupid question, but has anybody had some success using Claude Code with frontier agents (or Junie or anything else) to invoke local LLMs for specific sub-tasks or wrapped as skills? In other words, is there a way to use expensive, frontier models as orchestrators that manage local models to do the specialised coding tasks?

How do you know that they don't train their models or append your prompts to add backdoors, or compromise your supply chain by including evil dependencies? This seems hugely irresponsible.

Serverless Horrors 11 months ago

AWS skills are in quite strong demand, so it totally pays off to know the platform and have some hands-on experience if you work in the related area.

Of course. Both desktop and mobile version as well with uBlock Origin. Don't have any issues so far except Google Meet not being able to blur the background on the video calls, but I can live with that.

Why Telegram? I see Ukrainians use it a lot in this conflict,but I would really not trust it to be secure against such powerful adversary as Russia. Signal is much better bet under these circumstances.

I work at the big fintech with a large footprint in Eastern Europe. We have been ramping up our cyberdefence capabilities intensively for over a week now based on various public and non-public advisories. As far as I see from my extended network, we are definetly not alone doing that.

No. All ex-Soviet countries that joined NATO did that willingly as a way to protect their independence (looking at the examples of ex-Soviet countries that did not, it's clear that was the right decision). The "threat" of NATO invading Russia is bullshit and whataboutism.

What tools do you use for that? I tried similiar strategy just by looking at the publicly available tools (e.g. MartketWatch), but it seemed I'm always too late, so I resorted to mid-long term investments to the companies I believe.

GPS 5 years ago

Cool, so now we are back to 1996 with Internet as curated lists.

There are usually several copies of a varied quality to choose from based on ones needs on a decent tracker. Of course you can't expect stellar quality 2h movie fit into <1 GB, look for reasonable file sizes 5+ GB) to avoid ultracompressed versions with garbage sound. Making conclusions on a single sample is not very wise.

Cool, HoMM3 is by far my most favourite game for >20years now and we keep playing with my wife from time to time. It's like chess with some RNG, thus strategical and tactical depths are unlimited. Art and soundtrack is also charming in some strange way, as it feels more like tabletop than PC game (highlighted in the article as well).

While in theory you can, I'm yet to see a proper defense in depth implementation despite having >10 years in the industry. In my book, if you get shell access to pod, it's game over, as these secrets in program's memory are probably also available as environmental variables, accessible in k8s Secrets etc., not to mention other ways to compromise an underlying node and the whole cluster.. But yes, this is already too far from the original topic.

Fair enough, but that's more of how you package things - you can either have a separate class in Java inside your jar or you can have a standalone agent application (often also yet another Java application), but the attack surface doesn't change much. If log4j would be a standalone agent running on the same application server with this RCE vulnerability, the end result would be exactly the same.

That's not how logging works in real world. It might be sufficient for a pet project running on a single machine, but not when you have hundreds of instances running in parallel, when you to send logs to a central system for parsing/analysis in near realtime, when you need an ability to configure logging levels and formats in flight etc. and do all that with minimal impact on the performance. I don't advocate JNDI-like functionality enabled by default (as any sane person), but there's a middleground somewhere in between.

"These swarms aren't going to affect the average amateur astronomer very much."

Not true. Most of amateur astronomers are also astrophotographers that is affected by Starlink's light pollution. Just look up any astrophotography group, I see posts of ruined shots by satellites every day.

Dry Water 8 years ago

You are not helping by posting another pointless comment (or do you really want to start another round of endless 'HN is becoming reddit'?). To express your disapproval, just use downvote instead.

Why this myth 'elevator close door button does not work' keeps reapearing every now and then? It's not universal - in some places it works, in some it doesn't. Why the obsesion to find a single 'truth', is so hard to accept that it's not the same everywhere? Same goes for pedestrian crossing button - I've missed quite few green/red traffic light iterations on my way to work, because I forgot to press a button and had to wait for another round.