HN user

paralelogram

1,449 karma
Posts158
Comments45
View on HN
www.reuters.com 2y ago

Pentagon ran secret anti-vax campaign to undermine China during pandemic

paralelogram
117pts67
apnews.com 3y ago

Workers leave iPhone factory in Zhengzhou amid Covid curbs

paralelogram
7pts0
deadline.com 3y ago

Google’s Covid Outbreak Is Currently the Largest of Any Employer in Los Angeles

paralelogram
3pts1
www.usatoday.com 4y ago

World Health Organization says monkeypox outbreak is now a global emergency

paralelogram
5pts1
www.ynetnews.com 4y ago

Israeli spyware used in Polish political smear campaign

paralelogram
3pts0
www.biorxiv.org 4y ago

Evidence for a mouse origin of the SARS-CoV-2 Omicron variant

paralelogram
18pts3
www.9news.com.au 4y ago

Rare snow leopards die of Covid-19 complications at US zoo

paralelogram
14pts5
www.rferl.org 4y ago

Telegram Removes Navalny's Smart Voting from Messaging Service

paralelogram
7pts0
eu.usatoday.com 5y ago

California bar owner who sold fake Covid-19 vaccine cards to face felony charges

paralelogram
5pts0
www.reuters.com 5y ago

Biden set to ban most travel to U.S. from India to limit Covid-19 spread

paralelogram
5pts0
www.npr.org 5y ago

New York Sues Amazon over Covid-19 Workplace Safety

paralelogram
1pts0
www.mercurynews.com 5y ago

Coronavirus infections, hospitalizations keep decreasing across California

paralelogram
10pts1
www.theguardian.com 5y ago

Mark Zuckerberg says Facebook won't remove anti-vaccine posts

paralelogram
1pts0
www.medrxiv.org 6y ago

SARS-CoV-2 seroprevalence in donor and patient blood from the SF Bay Area

paralelogram
2pts0
abcnews.go.com 6y ago

70 people contract coronavirus in San Francisco's largest homeless shelter

paralelogram
3pts0
beincrypto.com 6y ago

Covid-19 Hits Ethereum Community Conference, Six People Test Positive

paralelogram
1pts0
www.bbc.com 7y ago

BBC websites blocked in China after security change

paralelogram
76pts33
www.asahi.com 8y ago

A new digital divide: Young people who can’t use keyboards

paralelogram
432pts356
torrentfreak.com 8y ago

Cloudflare Kicks Out Torrent Site for Abuse Reporting Interference

paralelogram
1pts0
android-developers.googleblog.com 8y ago

DNS Over TLS Support in Android P Developer Preview

paralelogram
1pts0
support.google.com 8y ago

Encrypted.google.com is going away

paralelogram
2pts0
betanews.com 8y ago

Cloudflare ditches sites that use Coinhive code after classing it as malware

paralelogram
2pts0
productforums.google.com 8y ago

Adsense Disabled Reason (“Firebase Robo Test” Click on Android App Ads)

paralelogram
3pts0
www.makeuseof.com 8y ago

The Google Drive Desktop App Is Being Shutdown in March, 2018

paralelogram
4pts0
torrentfreak.com 9y ago

US Embassy Threatens to Close Domain Registry Over ‘Pirate Bay’ Domain

paralelogram
3pts0
www.bloomberg.com 9y ago

Russian Cyber Hacks on U.S. Electoral System Far Wider Than Previously Known

paralelogram
2pts0
www.techdirt.com 9y ago

Copyright Troll Sues Tor Exit Node, Gets Partial Win

paralelogram
1pts0
www.inc.com 9y ago

You Won't Believe the Reason Google Pulled Ads from These Big Sites

paralelogram
3pts1
bugs.php.net 9y ago

PHP: DateTime for December 31st fails once every 400 years

paralelogram
3pts0
blog.cpanel.com 9y ago

Securing Your Site; Comodo, CPanel, and AutoSSL

paralelogram
2pts0

This Great Barrington Declaration is more restrictive than current laws in my Eastern European country.

For example, it says "Retired people living at home should have groceries and other essentials delivered to their home. When possible, they should meet family members outside" but in my country there is no such lockdown for any age group.

It says "Young low-risk adults should work normally, rather than from home" but in my country employers aren't required to stop allowing young people to work from home (before 2020 working from home without breaking laws was basically impossible in my country).

https://www.who.int/news-room/feature-stories/detail/the-sin...

A large phase 3 trial in Brazil showed that two doses, administered at an interval of 14 days, had an efficacy of 51% against symptomatic SARS-CoV-2 infection, 100% against severe COVID-19, and 100% against hospitalization starting 14 days after receiving the second dose.

Pfizer and Moderna vaccines aren't easily available outside of "first world" countries because of vaccine nationalism.

The largest ISP in Kazakhstan believes that it should be able to intercept all TLS traffic on their network: https://bits.blogs.nytimes.com/2015/12/03/kazakhstan-moves-t.... Because there are no technical differences between your TLS interception and what Kazakhtelecom is doing and no legal differences in most non-Western countries, I believe that all software should be changed to make TLS interception as hard as possible.

DirectAdmin, the most popular webhosting control panel in my country.

In my opinion this is not a bug because when I need to test a website, I often create an invalid hostname on the server and add the server's IP address to my computer's /etc/hosts. When I need HTTPS, I upload a certificate for the test hostname signed by my private CA.

I can create "773c7d.13445a.acme.invalid" in almost all shared hosting control panels I have access to.

When I send an HTTP request with Host: 773c7d.13445a.acme.invalid, the server responds with a file from ~/domains/773c7d.13445a.acme.invalid/public_html or a similar directory available through my FTP account.

When I connect using openssl s_client ... -servername 773c7d.13445a.acme.invalid, the server sends a certificate configured for 773c7d.13445a.acme.invalid in my control panel.

Is this a problem for Let's Encrypt? Doesn't Let's Encrypt's verification require creating files with random names in http://example.com/.well-known/acme-challenge where example.com is the certificate's common name?

All traffic to/from some IP addresses is blocked, additionally all Chinese DNS servers respond with random A records when the domain name is banned, for example:

  $ host facebook.com 202.97.0.6
  facebook.com            A       8.7.198.45
  $ host facebook.com 202.97.0.6
  facebook.com            A       243.185.187.39
  $ host facebook.com 202.97.0.6
  facebook.com            A       243.185.187.39
  $ host facebook.com 202.97.0.6
  facebook.com            A       46.82.174.68
  $ host facebook.com 202.97.0.6
  facebook.com            A       59.24.3.173
(202.97.0.6 is an open resolver in China)

In 2003-2004 I had a non-SSL IRC server in a German datacenter and found that something between my server and large British ISPs was rewriting all "ISON <nickname>" strings in TCP streams to "PRIVMSG <nickname> :!kapa". I moved the IRC server to another IP address and never had this problem again.

I think that GCHQ was monitoring the network traffic and had a bug in their IRC protocol implementation.

Logjam TLS attack 11 years ago

Is TLS_DHE_RSA_WITH_AES_256_CBC_SHA with a 768-bit group less secure than TLS_RSA_WITH_AES_256_CBC_SHA? Doesn't DHE just add an extra perfect forward secrecy layer to the non-DHE cipher suite without changing anything else?

Truecrypt report 11 years ago

Most Windows 7 versions (Starter, Home Basic, Home Premium and Professional) don't support full disk encryption.