HN user

pdoconnell

1,640 karma
Posts4
Comments21
View on HN

If they're insolvent, depending on who they're using for their infrastructure their systems and services may have literally been turned off on them.

Chrome 100 4 years ago

Time to find out how many applications have regexes with a user agent parser with version /d{2} instead of /d+.

There's actually interesting issues with how property paid for through mortgages are impacted by nuclear regulations. I recall something deep in my mortgage about how (I think) the nuclear regulatory control act placed restrictions on local use vis a vis nuclear energy.

In general the court seems to try to go to the easiest decision point in a case. The copyrightability of an API is less relevant if the user being sued should win regardless because of fair use. This is better than a plurality decision where there's multiple reasonings on API copywrite that make future decisions difficult. Here at least the court gives guidance on how to think about evaluating fair use in this context, which lower courts can apply.

Epic Hosting | Verona, Wisconsin | https://www.epic.com/

I'm a security engineer with Epic's hosting team. We are the hosting side of the largest electronic health record company in the country, and our hosting environment is responsible for approximately 20% of the country's medical activity on a given day. We strive to provide a truly secure healthcare environment, and I'm proud to come here every day for work.

We have openings right now for security engineers (https://epic.avature.net/Careers/FolderDetail/Verona-Wiscons...), network security engineers (https://epic.avature.net/Careers/FolderDetail/Verona-Wiscons...), and security operations center technicians (https://epic.avature.net/Careers/FolderDetail/Verona-Wiscons...).

If you have questions about any of the roles, or interest in applying, reach out to me at poconnel@epic.com.

Firefox Lockbox 8 years ago

The need to use a third party plugin to get any form of cloud sync working for one. Minor weirdness with it scrolling through your secret share structure on the left instead of up and down your passwords if you have accidentally clicked over (a feature that acts more like a bug). The lack of ability (or at least any documentation) on how to use something like Google Authenticator as MFA for the database.

Question for you, what company do you work for? I've really wanted to break into NGO security in particular for a lot of reasons. Spent a lot of years working in NGOs, and now do internal corporate security. Pay's better but it feels different. Could you possibly reach out to me? pdoconnell at gmail

No, you're about right. On the bigger corporate side, security is at least the big buzzword. The VP- and C-level positions want to be sure that action is being taken to improve security, but day to day requests to poke holes in the walls come in. That is not to even mention the huge, ancient systems that are in the middle of multi-year replacement processes that began before security was so important. That means at best the replacement will have the security best practices of the last few years stapled on awkwardly, but more likely nothing will change given the millions poured in already.

We started seeing this around the 9th I believe. We were not the only people as well, based on a somewhat late ISC post[1].

We thought it was a new form of intelligent blackholing. Instead of sending traffic to IPs that could easily be blacklisted by tools to get around the firewall, the Great Firewall would start sending them to random "good" IPs for the same result. Others seem to think the same thing[2].

[1] https://isc.sans.edu/forums/diary/Are+You+Piratebay+thepirat... [2] https://en.greatfire.org/blog/2015/jan/gfw-upgrade-fail-visi...

I've been using this for about a year now. It does seem to have a noticeable impact on my comfort given the time I spend staring at screens.

The transition points at sunrise and sunset are very disruptive, however. Even knowing it is coming, it will break your thought process.

I can't even imagine what my life would be like without T1D. I've had it for almost 20 years now. The constant monitoring, the general feeling of crappiness, the extreme costs. I spend thousands of dollars a year on the costs.

Any given sickness can have catastrophic effects as well. When I have a flu, I usually check myself into the hospital for monitoring. Blood sugar fluctuates hard, and its difficult to keep food down. My dad's best friend died from exactly this, a normal flu that disrupted eating patterns.

Literally ANY mistake can be life threatening. Over the last year I have been required emergency care twice due to low blood sugars. I would pay anything, do anything to have this go away.

Physically qualify I believe, but either really works. Everyone would just grumble about all the health visits they would have to do in September and October to be ready.

Look at the job linked at the start of the article. There's always a few positions being floated either with IceCube, UW SSEC, or UW AOS that end up down there every year. That is also true of grad student positions, as you say.

I used to work at UW Space Science and Engineering Center, which did lots of remote support for the projects down on the ice. We would often be communicating with IceCube to plan shipments, or get machines that touched each other working. This was one of the most interesting systems support you can think of.

The hardest part of the support was system updates. There wasn't even a local yum cache on the continent, and many of these machines had security standards they had to meet involving staying patched. Once I managed to start a batch-update job over SSH, and within 15 minutes I had the team lead run into my office to see if I was doing anything, because he received a call saying we were saturating the bandwidth to the continent.

I never even considered applying for the jobs down on the ice, because I would never PQ. Even migraines can be too much, because if you're going down they need you ready to work EVERY day you're down there. Transient medical issues happen, but chronic without any control, or requiring medicine for survival, immediately disqualifies you. My friend who just hit McMurdo this week had to have dental work done to qualify.

All that being said, Barnett and the rest of the Ice Cube team do some amazing work with extremely difficult technical problems to solve. It is the same level of difficulty as anything in space, and they have done remarkably.

Anonymity Is Hard 13 years ago

If you are working on such a site, I hope several things. 1) That the user name you're using here is randomly generated 2) You used domain registration authorities that consider secrecy imperative. Even with that, you used single-use credit cards or the like, and didn't use your real name. 3) You always browse everything in whatever your browser's privacy mode is. It doesn't solve everything, but its another layer. 4) Do not have java or flash installed, it can expose you more and leak data. 5) Finally, really do not go to sites like this and ask questions like this without having a burner account set up. If you have to ask these questions, log in from a location you will never visit again. Use a tool like the trashmail extension to use one-of accounts (https://addons.mozilla.org/En-us/firefox/addon/trashmailnet/)