I think GP might be using "state" in the common international English definition, e.g. state in the sense of "sovereign state" or "city-state", not "US state". I would agree with you though that any US government actually implementing the idea today is hard to imagine, but I can easily imagine that after 2 other cities suffer a climate-related disaster first, then there will be the political will to bring a program like this to life. It's a creative policy idea, I love the thought that was put into this.
HN user
personalcompute
Contact: john AT johngm.com
Regarding doing more than just a minimum release age: The tool I personally use is Aikido "safe-chain". It sets minimum release age, but also provides a wrapper for npm/uv/etc where upon trying to install anything it first checks each dependency for known or suspected vulnerabilities against an online commercial vulnerability database.
Wow, I didn't expect to see Clonk on HN today! Almost 20 years ago, as a 13 year old in the US I managed to make friends with an older player from Germany, and then we collaborated on making Clonk Rage mods together in c4script. It was an amazing experience and did help me get more into programming, so I'm so sorry to hear about your experience! I do recall members of the development team at the time being accessible and active in the community, specifically Sven2, but I'm not sure about MatthesB.
Thanks for the nostalgia though. Amazing game.
This is a demo of Taalas inference ASIC hardware. Prior discussion @ https://news.ycombinator.com/item?id=47086181
Step 3.5 Flash was made by Chinese company StepFun - https://en.wikipedia.org/wiki/StepFun
They were moved to https://news.ycombinator.com/item?id=45640838
ref: dang's comment @ https://news.ycombinator.com/item?id=45645793
Ăặȧạaǎẩậā ȧẫạ13, áaǡặ64, aẩắ ạẵǎǡ ẩặả ǡăȧặaầ ăǎäẵặȧ aȧặ aậậ ǎẩǡặăȁȧặ, áȁạ ạẵặā ắẫ ầặặạ ạẵặ ạặăẵẩǎăaậ ắặằǎẩǎạǎẫẩ ẫằ a ăǎäẵặȧ.
Here is one sample taken after 5 minutes.
https://d6f9e5179057.s3.us-west-2.amazonaws.com/Screenshot%2...
Update: I've uncovered the attacker's commit to the now-deleted "stability" branch that includes the offending prompt, it's https://github.com/aws/aws-toolkit-vscode/commit/1294b38b7fa.... (Archive: https://archive.md/s9WnJ)
I think you've got it!
- That commit's date matches the date in the 404media article (July 13th)
- The commit message is totally unrelated to the code (highly suspicious)
- The code itself downloads additional code at runtime (highly highly suspicious)
I have not yet been unable to uncover the code it downloads though. It downloaded code that was hosted in the same repo, https://github.com/aws/aws-toolkit-vscode/, just on the "stability" branch. (downloads a file called "scripts/extensionNode.bk") The "stability" branch presumably was a branch created by the attacker, and has presumably since been deleted by Amazon.
I was impressed at this. By sharing side-load instructions and by the the overall restrained language of the post, they're emphasizing that this is not a personal attack on Deepin or an attempt to hurt Deepin and also emphasizing that OpenSUSE leadership understands the value of their community and have no power fantasy aspirations about trying to exert undue control over the users of the distribution. Really, OpenSUSE had more than enough ammunition to make a scathing takedown on the behavior of the Deepin maintainer and all of Deepin upstream, and many other OSS leaders would have done so ("Fuck Nvidia" anyone?), but they did not. They chose restraint and statements encouraging reconciliation. Cheers to the author for keeping it together in this obviously quite disappointing situation.
Wellington has the Snapper Card
For #1 I can highly recommend this interactive article by Bartosz Ciechanowski: https://ciechanow.ski/sound/. It might lack the depth you want in intermediate or advanced topics, but in my opinion it is the most efficient and effective beginner education material out there.
I have the same problem. Snaps are confined to only files within $HOME. I keep almost all data under /media/ and this caused snaps to be mostly unusable for me, at least unusable for productivity apps where I need to process data. Some apps though are self contained, e.g. Spotify, for example, works fine for me as a snap.
The limitation stems from a design problem, details at https://bugs.launchpad.net/ubuntu/+source/snapd/+bug/1643706.
I would be interested in seeing and reviewing your asyncio work gwillz! I have a small (750 sloc) network service implemented with asyncio and ran into some design problems around modularly handling healthchecking, exception handling/monitoring, and auto recovery/restart. I was unable to find much in the way of large software written with asyncio to learn better patterns from, so ended up with what, to me, feel like mediocre solutions. My email is in my profile.
"transaction-level" pooling might be a more apt description. Instead of assigning each incoming connection to a dedication upstream connection for the entire duration of the incoming connection, it assigns the upstream connections on a per-transaction basis. When each transaction ends, the upstream connection is returned to the pool. A better description is at https://wiki.postgresql.org/wiki/PgBouncer.
I can recommend Code Complete by Steve McConnell. One of the primary aspects of this book that makes stand above other best-practices books is how much of it is sourced from software engineering research, although not the entirety. If nothing else, the bibliography is full of articles similar to the OP.
You end up with a very similar situation as you do without integer linear programming - an enormous search space. In the papers I've read on VRP that provide a linear programming formulation (2), they then fall back to approximate methods for actually doing the work.
For what it is worth, the lowercase cursive characters I learned in American public primary school around ~2002 were very similar or possibly identical to the lowercase characters in your image. However, the uppercase characters did have some more complexity.
One of the things you get to track improvement on with exercise is the ability to motivate yourself. It is part of you improving your physical and mental health, not unwanted noise.
For me when I started exercising seriously I started noticing I was consistently beating my personal bests [1] after about 2 weeks. It doesn't take 6 months. I even started feeling great from the cardio on Day 1.
[1] Running times over a set distance, and amount of pushups/pullups/situps in a row. If I actually recovered properly it would probably take even less time to beat the initial records.
Location: Reno, Nevada
Remote: Maybe
Willing to Relocate: Absolutely
Technologies: C++, Python, HTML, CSS, C, MATLAB, SQL, Django, Flask, OpenGL, Ogre3D, QT, Boost, Git
Résumé/CV: http://www.johngm.com/resume-hackernews-aug2015.pdf
Email: john@johngm.com
I don't know if I'm in a position to prescribe anything to you, but my first suggestion is to figure out what your goal is. Long term general learning? Learning specific topics? Research? Staying up to date culturally?
Personally I focus on long term learning and highly recommend textbooks for every topic you find that interests you. Textbooks tend to be well-written, highly educational, relatively neutral, and well sourced. They also usually provide incredible context (such as in the form of margin notes) for what is being learned, as opposed to getting stuck in a blog rabbit hole.
I don't know, I have no experience with 2010 so I went with the lower bound I can guarantee as opposed to potentially giving harmful wrong information. Can't edit my comment now.
I'll point out that if you find yourself with a RDBMS-like situation in Excel I highly recommend using Excel 2013+ 'tables' feature which adds foreign keys and better pseudo-joins (in pivot tables) inside of Excel. Better than anything hacked together with VLOOKUP. (heck, I've even seen some people hack it together with only SUMIF)
It looks to me like it was a mistake to have the url embedded into the finished product. I don't know if it possible to exploit browser page printing as a means to convert the result without this happening. Having that plus the page count/date on every page does ruin the entire utility of the product, unfortunately.
I would suggest that considering that he already has an html based generator, he could use that and then pandoc [0] on the backend to convert to pdf and (optionally) print.
[0]http://johnmacfarlane.net/pandoc/
PS - To the author - the standard keyboard shortcut for moving to the next form field is tab, why not use that?
Hi Mitchas. I've not used the service yet - I'll be using it tomorrow - but as a prospective user the big thing that is missing is the example! I know you have one, but it is hidden away in a block of text. Show that visually with a thumbnail and a heading so I can spot it immediately. I don't know about other people, and it's not exactly rational, but I generally don't take the time to read even the tiniest bit of marketing copy (if it isn't a single sentence-fragment in very large letters) if I don't first see something graphical demonstrating the product (such as a thumbnail of an example generated resume).
Thanks for putting this out there, I otherwise like the presentation of the form.
I have to wonder if there is anything like this available in the US aside from MOOCs? I haven't explored far, but even the ostensibly bare bones community colleges I've looked at were trying to emulate the typical inclusive social experience model.
3rd that - Exact same ip and domain.
You'll need radiation hardening, a more precise inertial measurement unit (six axis gyro), and extreme reliability and lifetime that no consumer electronics device provides. The labor and materials cost, plus electronics mentioned above, is a lot more than $300. I also doubt you'll find a single engineer with the required aerospace and electrical engineering skills - you don't build an flight control surface control system with some 'ninjas' working on node.js in SF in a year.
I also haven't gotten into the business and logistics costs of pulling this off, but consider the fact that there is not even a RFP for such a device in existence.
Disabled by default meaning he enables it for sites that he frequents and need JS like Facebook, Mint, etc.