Any chance Apple Private Relay still works? That’s why I stick to Safari. Am a paying Kagi user.
HN user
regecks
You don't need it, they've migrated to motherless.xxx.
Damn. The "iPhone last setup or erased on ..." is really nasty. What can a user really do about that? I feel like this should be fudged somehow by the OS.
Haha, as a former maintainer to one of these tools, it makes me laugh to see someone pop a shell. Creative, nice work, nice resource.
I’d be interested to see a benchmark of actually selecting rows by manually specifying the partition vs not.
This benchmark seems to be pure computation of the hash value, which I don’t think is helpful to test the hypothesis. A lot can happen at actual query time that this benchmark does not account for.
We’re looking for a distributed Go cache.
We don’t want to round trip to a network endpoint in the ideal path, but we run multiple instances of our monolith and we want a shared cache tier for efficiency.
Any architecture/library recommendations?
I haven’t benchmarked this, but I have recently benchmarked Spark Streaming vs self-rolled Go vs Bento vs RisingWave (which is also in Rust) and RW matched/exceeded self-rolled, and absolutely demolished Bento and Spark. Not even in the same ballpark.
Highly recommend checking RisingWave out if you have real time streaming transformation use cases. It’s open source too.
The benchmark was some high throughput low latency JSON transformations.
It works but it shows phone numbers rather than contact names and you can’t assign a name to a number without giving access to your entire contacts … it ticks me off.
What’s this “neural information retrieval system” thing about?
I’m just hacking away and presenting the LLM with some JSON data from our metrics database and making it answer user questions as a completion.
Is this embedding thing relevant for what I’m doing? Where should I start reading?
I always set `RestartSec`.
No, it isn’t. Browser root programs have certificate transparency (SCT embedding) requirements which would immediately reveal to the world if an ISP started to use a trusted root to MITM its users.
I think the title buries the most horrifying part of this. The HiCA certificate authority is relying on an RCE to do an end-run around the semantics of the ACME HTTP-01 validation method.
Fucked up and they should be booted from every root program for this.
There is years and years and years of amazing content and community on Reddit. Rallying people around a replacement looks challenging. I am hopeful that it happens.
ELI5 OpenXLA vs TensorRT? Are they solving the same problem, just that the former is not married to NVIDIA devices?
Is Amazon-managed encryption (SSE-S3) mostly a checklist/regulatory thing? Like, is it mainly protecting against somebody walking out of a DC with a storage device?
In this context, I think "requires DNSSEC" is an opinion at best. "Requires" is probably the wrong word.
You are welcome to use CAA accounturi without DNSSEC and it will be effective.
Your zone may be vulnerable to an active man-in-the-middle DNS attack (which is hard to pull off), but it will still be protected against somebody figuring out how to upload an /.well-known/acme-challenge/ file on your domain and issue an unauthorized certificate from a foreign ACME account. This attack is much easier - I did it against a popular mail provider a few years ago.
schoen wrote a nice post here: https://community.letsencrypt.org/t/peter-eckersley-may-his-...
There is a clear reason not to use Authy, which is that making your data portable is extremely annoying. No export function. I ended up writing a 3rd party Authy client just to get my TOTP keys out.
For iOS users, I cannot say enough good things about https://apps.apple.com/us/app/otp-auth/id659877384. Author is responsive, encrypted backups, portable data format.
Looking externally at the company they’re listed as having 50,000-100,000 employees
Uhhhh. Do you mean Apple or Spotify? Spotify's 2021 Q4 press release says:
At the end of Q4, our workforce consisted of 7,690 FTEs globally.
And then combine it with `--libcurl program.c`!
Thanks! And you're right, sorry for jumping on you like that.
It's kinda true.
I haven't been able to disable older TLS for my Cloudflare Pages domains. The setting you mentioned is ineffective for that product.
Based on what I've read on the Cloudflare forums and Discord, it's a known restriction.
As with others, I trust Apple to safeguard this information waaaay more than constantly rolling the dice with shady app publishers every time I sign up to something.
That I can sign up to TikTok with "Sign in with Apple", with an auto-generated Apple Privacy email address and literally no other information, is quite amazing and useful.
I recently found one of the tools (some kind of low level REPL console) helpful to get my phone out of a recovery mode boot loop. I couldn't figure out how to do it any other way and was pretty grateful for its existence.
I had been feeling brave and tried to do a reset + update via KVM'd iTunes, but something went wrong with USB hot plugging with the way the device switches modes between boots ^_^.
For text I like http://termbin.com. It just accepts text on port 9999, no HTTP required.
Today, are there any messaging frameworks similar to zeromq or nanomsg ng, implementing a QUIC transport? Looking to play with a bit. gRPC is a bit heavy for me and lacks a pure-C implementation.
To add another datapoint, we recently faced an issue where Microsoft rolled out a change to their OIDC endpoints, which broke our client's tenant, but not other tenants. (It was crashing with an HTTP 500 if the Accept request header was a certain value: the default value in OpenJDK 8).
Some days later and after our complaints, Microsoft rolled back the change.
I would call this evidence that they do practice gradual deployments of changes.
I would guess that this outage was caused by something more complex than MS not slow-rolling their deployment.
Me too. If it helps OP: https://paste.sr.ht/blob/a9c9431df20e51106c21834abc321e64c23...
Edit: oh, so looking at strace, right before it crashes, the program is looking for sox, which it apparently needs to play audio. Installing sox makes the segfault goes away.
Why do you say they get away with it?
TW for sure reports to my country's financial intelligence agency (AUSTRAC).
I get paid in foreign currency via TW and it's pretty amazing.