A much more interesting article would cover HOW they are still up. Would love to know the details of the how in this case.
HN user
nwellinghoff
you need to upload that torrent :)
Not a great trend. Installing a OS that makes me tie provably verifiable identity directly to a install or session will be a pretty stupid liability for anyone to agree to. Feel bad for all the non techs that will just accept this lying down. Especially when the solution is so easy to solve with existing tech. Got a internet connection? Block the domains at the router level. Then we need the cell phone providers to allow parents to do similar things at the network level with cell internet. Done. Let the parents do it.
This reflects a lack of technical understanding of the subject. The proposal is not enforceable, as there is no control over the end user’s networking stack. E.g. you can't actually rely on "3D printers that report themselves". The law makers need our help and some technical consultation.
Indeed very clever. I wonder if you framed this problem up with claude how it would “guide” you to solve this problem. Would be an interesting match up of ai vs human. Love the story!
Nice. I like how you made it an easy to drop in proxy. Will definitely use this when debugging issues!
Yeah it does not make a whole lot of sense as the useful lifespan of the gpus in 4-6 years. Sooo what happens when you need to upgrade or repair?
A lot of these accounts seem anecdotal. I have a clean copy of win 11 iot ltsc running on my laptop and it runs well. The desktop management, included hyper V, wsl2 and awesome RDP make it a great platform to get work done. Most problems people encounter with Windows have to do with driver maturity. And in the case of a mega corp managed machine its all the “security” bs the put on there that slows you down to a crawl.Once you get stable drivers; I find Windows 11,with wsl as my shell, to be quite nice.
Man that tech was cool and did you a solid.
You can achieve the same thing with electronic voting. Just because its electronic does not mean you do away with the “layers”
Are these assumptions wrong? If I 1) execute the ai as a isolated user. 2) behind a white list out and in firewall 3) on a overlay file mount
I am pretty much good to go from a it can’t do something I don’t want it to do?
Agreed. So much easier with self hosted runner. Just get out of your own way and do it. Use cases like caching etc also much more efficient on self hosted runner.
You could restrict the ssh port by ip as well.
He is absolutely right. The soap opera effect totally ruins the look of most movies. I still use a good old 1080p plasma on default. It always looks good
The “non exclusive” thing may come back to bite them. If another big player comes in to lic the tech and get “different” tech than nvidia it opens up law suits. Also this seems like it’s just a bet on time. The head engineer who invented this technology will be replicated. But I guess that will take a while and the margin money machine will print Bs while the dust settles.
As your parents age you should convince them to transfer their assets into a trust where they still maintain control but withdraws etc can be optionally approved by a spouse or other family member. The trust has many other benefits but is especially good for fraud as it can disassociate the holders identity from the assets and have specific conditions for withdrawal. It also can provide a clean transfer of ownership in the event of a death etc. I am sorry this happened to you, it is becoming more common in the us too. And all of these “companies” seem to establish bank accounts and addresses in Delaware…
I said this in a previous post and was shot down hard. I think you are right. Every time I look at a ipv6 address my brain goes “fack this”.
Pfsense firewall. There is a week long learning curve and it’s best to put it on dedicated hardware.
What a fucking joke. They are going to charge me for running a script I wrote on MY server that is merely launched by their server that I am already paying an outrageous amount for to have a private repository. By the minute!!!! It never ends.
Nice write up. It would be great if the authors could follow up with a detailed technical walk through of how to use the various tooling to figure out what an extension is really doing.
Could one just feed the extension and a good prompt to claude to do this? Seems like automation CAN sniff this kind of stuff out pretty easily.
Too bad aws does not support any of these other vector extensions in managed rds.
You single handedly built all of Cloudfare workers? Impressive, most of us would have required a team or a “we”.
Seriously. I don’t get all the over concern over the verbosity. At least in java you can tell what the hell is going on. And the tools…so good. Right now I am in python typescript world. And let me tell you, the productivity and ease of java and c# are sorely missed!
Agreed. The whole idea that they are in it for the “service” is a really naive idea. If we want honest hardworking and qualified people to do the job the salaries should be in the 500k to 1.5m (senate) range. Then knock out the corruption.
This is pretty easy to work around via vpns etc. Guess its another barrier…for now. But it forces escalating tactics by the other side to appear legit. So if ppl come to trust the “source” information. It might actually end up worse in the long run as the sources are all spoofed. Would need a more advanced system using signatures and real life verification to actually know a source. Similar to a ca with all of its drawbacks. Point being, this move is kind of a wash.
Not to mention these modern showers that have a slab of glass on the 1st 3rd but then open door for the rest such that water leaks all over the place. Looks great on insta but sucks at being a shower.
Eh. Judging by the large negative response I think the point might still have a point. Can you quickly rattle out ipv6 cidr blocks when you are setting up network configs? Most can grok and crank on ipv4 no problem. But for ipv6…its to the calculator. Not saying its a valid reason. Just saying ppl are lazy sooo if you want something adopted you might have to lean into lazy.
I think it might be as simple as ipv4 is just nicer to look at…maybe we should have just done “ipv5” and added another block. Eg 1.1.1.1.1. I know its stupid, but ipv6 addresses are just so hard to remember and look at that I think its just human nature to gravitate towards the simplicity of ipv4.
Orrr AWS could just buffer it for you. Algo.
1) you hit the cap 2) aws sends alert but your stuff still runs at no cost to you for 24h 3) if no response. Aws shuts it down forcefully. 4) aws eats the “cost” because lets face it. It basically cost them 1000th of what they bill you for. 5) you get this buffer 3 times a year. After that. They still do the 24h forced shutdown but you get billed. Everybody wins.
The real take away is that so much functionality depends on a few players. This is a fundamental flaw in design that is getting worse by the year as the winner takes all winners win. Not saying they didn’t earn their wins. But the fact remains. The system is not robust. Then again, so what. It went down for a while. Maybe we shouldn’t depend on the internet being “up” all the time.