HN user

mandalar12

125 karma
Posts1
Comments37
View on HN

Why not just use Amazon or Google music and download everything ? Google Music is especially good because it lets you download a .zip with complete album compared to Amazon that only lets you download one song at a time.

I used to buy and rip CDs but it takes time and space and feels really backward.

No that is not a solution. If they swapped the public key they can read the message being sent back (it is encrypted with their public key), then encrypt it again with the real public key.

The only solution is to use another channel to authenticate the other's key, be it GPG's web of trust, or any other imperfect way (phone call, physically meeting, ...)

The most difficult part in your setup is to make untraceable the VPN you run after going through Tor. The problem is: if you believe this VPN is safe / untraceable enough, why do you even use Tor in the first place ?

The problem is that you, at some point, pay the VPN, and that is very likely to be linked to your real identity somehow.

Nice project. Are the source available ? It would be nice to use but I'd rather host/use it locally.

Besides I don't know which font (Symbola?) you use in the .pdf but it appears ugly (part of the 'o' is missing and it is overall not too easy to read) on my laptop running Ubuntu 14.10.

Thank you for saying that.

I would add that you need not to have ADHD, drug problems or gotten pregnant as a disadvantage: you might just come from a social/family background that encourages you to take a job as soon as you finish high school and you get stuck at you minimum wage job.

Then when your life becomes what sheltgor described, you don't have any perspective in your job, you can't afford moving or holidays. At that point you are used to not having much but you still want to spend it as you wish. Anyway what is the point of giving much into savings if you can't enjoy your life ? That's when the spending might get irrational (paying more for less, smoking, etc.).

Here is an article [1] trying to estimate that kind of numbers (wage, number of active workers, etc.) from various sources and questionning the ethics of using MTurk for science purposes.

The bottom line is: one third of tasks are achieved by people relying on MTurk (as primary or secondary money input) having working conditions that would not be considered acceptable in any first-world country (hourly wages around $2, working long hours with, obviously, no kind of worker advantage or protection).

[1] https://hal.archives-ouvertes.fr/file/index/docid/569450/fil...

They might have changed the page since your comment but this is on the page :

"Android 5.0 Lollipop, which comes on Nexus 6, Nexus 9 and Nexus Player, will also be available on Nexus 4, 5, 7, 10 and Google Play edition devices in the coming weeks."

I agree that you need some user input or the program will get it wrong in some cases.

But the distinction between source and destination is relevant with some algorithms (one-way sync) and irrelevant in others.

Let say you have two directories A and B to sync and both contain a file f but the one in B is more recent than the one i A. A consistent strategy would be to always favor the most recent file and end up with A and B containing the same f file that was the one being in B at the beginning of the syncing. At no point I asked the user to define a source nor a destination but still the two directories are synced.

Note that it is your choice to continue or not the discussion as much as it was mine (not yours, shockingly) to answer your post. So please keep your "End, full stop" and "Think before answering" to yourself, they are quiet annoying.

Sync has always meant merging semantic changes in state between two or more devices.

That is a definition of file synchronization [1]. Usually the aim of "syncing" is to input two directories and the outcome is that the contents of both directories are the same.

What you are describing below point 1. is an algorithm to achieve this goal.

The algorithm you describe needs a source and destination folder and this may be Apple's algorithm and implementation (I have no idea) but this is by no means the only way to do so (see two-way file synchronization [1]).

[1] https://en.wikipedia.org/wiki/File_synchronization

What would be the "good" alternative ? I often tries "rmdir" or "rm -r" if the directory is not empty and very often there are some "protected files" so I add -f. Thus it happens that I directly lauch "rm -rf".

I am not ignoring the reality: public or semi-public posts (facebook) are not going anywhere and should be considered public information.

Reading my previous post you can surely infer that I disagree with the mass spying but not that I am (or not) gay. This is not a coincidence: I don't hide this political view and accept to be vocal about it publically because I believe discussing it helps protecting the democracy I live in today. If I am to be accused of having that opinion later on, then so be it because that was an accepted risk.

On the other hand I don't accept that my privacy can be used against me, be it related to my sexuality or the opinions I chose to keep for myself or only share with close friends privately.

Overall I am not denying that the information can be found elsewhere or that the Nazis used past associations (I have no opinion about that) but the key point is that you should be able to dissociate between your public life and your private life.

I am well aware of the public traces I leave on forums and "social media" but I don't know to which extend my private conversations are infiltrated and I am much less careful when I write them. So I am not sure what extreme (or not so extreme) opinion I once formulated and was stored somewhere. That could be used against me by the next fascist government. There are two ways to avoid that: the first is that it is never stored in the first place, the second is that I never formulate such an opinion. I want the option that is compatible with a democracy.

The article misses the working part of the law. Book prices in France are not a free market since we have a fixed book price law (https://en.wikipedia.org/wiki/Fixed_book_price_agreement) meaning that the publisher decides the retail price of the books it publishes. There is an exception authorizing retailers a maximum of 5% discount. In practice all majors players (book store chains, Amazon, supermarkets...) systematically apply the 5% discount.

The new law forbids retailers to apply the discount if the book is delivered but allows them to apply the discount on the delivery fees (which is useless to Amazon who offers the delivery).

The final effect is that books on Amazon are 5% + 1 cent more expensive than in physical stores.

Yes but, for instance, if you lived under a fascist anti-gay regime and were gay you would hide it very actively. On the opposite gays today, through their correspondances, might be quiet easily spotted by the NSA or anyone with access to their phone calls / mails / texts. Once the regime becomes anti-gay, they will come for you and it is too late to do anything.

I have a different experience tutoring (exercises and labs) in an engineering school in France for programming / CS beginners.

We moved from Java to python this year and I miss a few things. Due to the absence of explicit typing the students don't bother to understand types anymore and it leads them to a lot of mistakes and misunderstandings: confusion between simple types, lists, dictionaries, instances of a user created class, etc. Besides I think the verbose and rigid syntax of Java forced them to understand what their wrote and for a first language that was a good thing.

Overall I found that since it is easier to write code in python they rush to writing anything without understanding the algorithmic problem first. Thus they are less able to decompose a problem in sub-problems and write atomic functions to solve each of them.

Note that I think teaching python as a first language is a viable option but in our case the course needs to be intensively rewritten and the labs adapted. For instance my lattest point about algorithms is not a problem with the language: it could be resolved by having a part of the lab being pure algorithmics and then an implementation part.

I guess the new license only applies to the release it is distributed with and this latest version removed encryption features so I doubt it will make the truecrypt project more compatible with FOSS licenses.

The [1]'s article wording is a bit wrong, "Gendarmerie" is not "French national police". Gendarmerie is a part of the military but acting as a police force mostly in rural areas. French national police, operating in cities has not migrated to linux. It is still an massive migration though.

He addresses your third point in the FAQ:

Why is there no “no warranty” clause?

The WTFPL is an all-purpose license and does not cover only computer programs; it can be used for artwork, documentation and so on. As such, it only covers copying, distribution and modification. If you want to add a no warranty clause for a program, you may use the following wording in your source code:

/* This program is free software. It comes without any warranty, to * the extent permitted by applicable law. You can redistribute it * and/or modify it under the terms of the Do What The Fuck You Want * To Public License, Version 2, as published by Sam Hocevar. See * http://www.wtfpl.net/ for more details. */

http://www.wtfpl.net/faq/

It goes futher than that in OTR. After the ephemeral keys are out of use, the public keys (used for encryption, not decryption) are broadcasted so if later someone gets an old encrypted message, it could "effectively" have be written by anyone.

Has anyone done the same level of analysis on TextSecure ? I feel like their model/seriousness is better but there might be flaws in the implementation (or protocol) and being audited might highlight some of them.