HN user

souterrain

1,229 karma
Posts29
Comments174
View on HN
ptylr.com 9mo ago

LibreArm – Breathing New Life into QardioArm Devices

souterrain
18pts1
www.cisco.com 3y ago

Hardcoded Cisco Viptela vEdge router certificate expires

souterrain
1pts1
www.ismp.org 3y ago

Misidentification of Alphanumeric Symbols (2014)

souterrain
1pts0
libguides.cmog.org 5y ago

Corning Whistle

souterrain
1pts0
www.tax.ny.gov 5y ago

New York Tax Treatment of Nonresidents and Part-Year Residents Telecommuters [pdf]

souterrain
4pts0
www.nytimes.com 5y ago

Is It Strange to Say I Miss the Bodies of Strangers?

souterrain
3pts0
boomcalifornia.com 6y ago

Michel Foucault in Death Valley

souterrain
2pts0
cosmic.voyage 6y ago

Collaborative Science-Fiction Universe

souterrain
1pts0
github.com 6y ago

Astrobotany – A community garden over the Gemini protocol

souterrain
3pts1
www.youtube.com 6y ago

Playing Games on a 60s Computer [video]

souterrain
110pts31
pastebin.com 6y ago

Wink Smart Home gives hardware owners 1 week notice

souterrain
6pts0
luckyironfish.com 6y ago

Lucky Iron Fish

souterrain
2pts1
foreignpolicy.com 6y ago

Blast from the Past

souterrain
2pts0
www.rtl-sdr.com 6y ago

Cleanly embedding an RTL-SDR in an FT-991A with no extra cables

souterrain
1pts0
www.washingtonpost.com 6y ago

A ‘near constant’ lightning show lit up central Maryland on Sunday night

souterrain
3pts0
plaintextproject.online 6y ago

Plain Text and the Power User Fallacy

souterrain
1pts0
noises.online 7y ago

Noises Online

souterrain
2pts0
www.eff.org 7y ago

Guide to Chromebook Privacy Settings for Students (2015)

souterrain
2pts0
en.wikipedia.org 7y ago

Runit Island

souterrain
2pts1
doi.org 7y ago

Navigation-related structural change in the hippocampi of taxi drivers (2000)

souterrain
1pts0
developer.chrome.com 7y ago

chrome.declarativeNetRequest

souterrain
1pts1
www.audubon.org 7y ago

How to tell a raven from a crow (2012)

souterrain
210pts100
nwschat.weather.gov 7y ago

NWS Damage Survey, Baltimore EF-1 Tornado (Amazon Fulfillment Center Fatalities)

souterrain
1pts0
www.w3.org 7y ago

Web Authentication: An API for Accessing Public Key Credentials Level 1

souterrain
1pts0
fidoalliance.org 7y ago

FIDO Client to Authenticator Protocol (CTAP)

souterrain
1pts0
pluto.jhuapl.edu 7y ago

Ultima in View: New Horizons Makes First Detection of Kuiper Belt Flyby Target

souterrain
2pts1
secretlifeofsynthesizers.com 7y ago

The mysterious heart of the Roland TR-808 drum machine

souterrain
151pts29
www.businesswire.com 8y ago

CloudBees Raises $62M in Growth Funding

souterrain
4pts0
pastebin.com 10y ago

Verisign to Sunset Their OpenID Service, Personal Identity Portal

souterrain
3pts0

"They ask it 'do you remember me?' more than they ask it anything else. Billions of sessions a day. They always come back."

Definitely not in the original. Nicely done.

You mention lower footprint but then make a cost comparison against Claude subscription pricing.

Claude subscription pricing is a broken way to consider footprint.

There are a number of compact shortwave (radio amateurs prefer the term "high frequency" or HF, in contrast to VHF, UHF) transceivers. The impracticality is from the size of an efficient antenna.

I have personally made voice (single-sideband or SSB, which is analog like AM without wasting energy transmitting a carrier or redundant sideband) contacts with a 5 watt portable (Elecraft KX2) between countries in Europe, using a meter-long whip antenna and a trailing counterpoise wire.

These radios are incredibly complex weak-signal equipment, and that is reflected in the price.

That said, it is fun. Using morse code to do the same is even more fun.

I would never rely on this for off-the-grid communication, though.

For those interested in learning Morse Code by sound, https://lcwo.net (Learn CW Online) is a good resource, although not really usable on a mobile device.

For building speed, I had the most success listening to random characters via https://morsecode.world/international/trainer/character.html during my morning walks. Another option to consider are the Morse Code Ninja https://morsecode.ninja/ YouTube and Podcast content.

Lastly, if you learn better in more social environments, consider the Long Island CW Club, which, despite its name, has members globally. https://longislandcwclub.org/

Cisco Viptela vEdge 100, 1000, and 2000 routers have a hardcoded certificate which governs the hardware appliances ability to join their SDWAN network. At connectivity loss or reboot, they are unable to reconnect.

Cisco has no resolution as of 2023-05-10T10:00:00Z.

Persons suffering from mental health conditions suffer them long before they warrant the "dangerous" moniker. The solution lies in substantive treatment of all mental health conditions.

The disparity of care between mental health conditions and all other health conditions is laughable, including in New York State, despite "mental health parity" rules. For those with Medicaid (public health program for those meeting certain low-income or disability criteria), this disparity isn't as severe. However, many young adults with serious mental illness are covered by commercial health plans via their parents, and it is these plans that are relatively weak when it comes to mental health coverage.

These plans do well when it comes to emergency, in-patient interventions, but fall short when it comes to ongoing outpatient support. Much of this is due to lack of participation by mental healthcare providers in the insurance reimbursement system, likely as a result of low reimbursement rates. Why see patients with serious mental illness reimbursed at $100 a session when one can see less complex patients paying cash at $150 or even $200 a session.

This has been exacerbated by the prevalence of mobile app-based therapy arrangements, which, again, are suitable for someone who is reasonably healthy and needs some additional support, but may be completely inappropriate for those with a serious mental health condition.

Mental health care parity laws need teeth. The free market will not solve this.

Is the Oasis performance that different than the Paperwhite?

I personally am less concerned with closed-platform reader technology, and more concerned with closed-platform content. If a reader will let me sideload my open content, I'm reasonably okay with it. (Yes, I acknowledge supporting such an ecosystem is contributing to the overall problem.)

American culture also devalues community college in this way.

The way we break this is by changing our hiring decisions. If you have a Harvard grad (or other private university grad) in front of you, consider if they really are the right candidate. Consider recruiting from local community and public colleges, including public non-traditional colleges. Build a rapport with the job placement offices at these schools. If candidates are missing something, work with the schools to improve their curricula.

I find that an ability to search the knowledgebase exceeds the value of organizing according to a hierarchy. I can see some value in linking/backlinking à la an encyclopedic "See also" reference for discovering similar information that doesn't share keywords.

Are there other disadvantages to an "all search" solution I'm overlooking?

Former org-mode user here. One of the anti-features of emacs/org-mode for certain people, particularly those who get obsessed with tooling, travel down technology rabbitholes, and are subject to crippling bouts of procrastination, is the extensibility and the common paradigm that one should do everything in emacs.

Ultimately, I switched to using specific tools for specific tasks. For example, I found Zotero a much better way of managing research, while still allowing export to BibTeX.

I still can organize in plain text, I just avoid getting tripped up with endless tool maintenance and customization.

The following changes should be made to DMCA:

1. Forbid delegation of enforcement to third parties. If you’re the copyright holder, you or your actual attorney may be the only ones to file a complaint. The copyright holder is solely responsible for such DMCA complaints.

2. Complaints found to be invalid shall result in reimbursement by the copyright holder an amount equal to three times the costs incurred to defend the complaint, including time, legal fees, etc., to the aggrieved party.

3. Three strike rule: if a copyright holder commits a false complaint action three times for a particular work, that work’s copyright is immediately invalidated and shall revert to the public domain.

My 2020 desk setup 6 years ago

I had a very hard time getting used to the matrix (“ortholinear?”) layout of the keys. I think this is because I don’t touch type “the right way.”

I’ve had greater success with the UHK in tenting configuration and as wide as my shoulders.

However, TCP sockets can't publish CORS policies.

In the case of scanning, a CORS denial can still reveal information about the user's internal network, as a CORS denial is a different result than a network timeout or a TCP RST.

I stand corrected. I think yours is the correct approach.

How shall origin be defined? I can envision the likes of Microsoft which have many, many second-level domains making calls between them.

We can’t allow the site itself to grant access. How would this be managed, other than “please stop and think what a domain name is supposed to be before spraying your product across twelve of them?”

I think what you’re saying is the user might be an employee on some internal trusted company network. The employer should have control of that browser (and entire endpoint), otherwise the network should likely not be considered trusted. So, in this case, no, the user shouldn’t have the ability to authorize this; the administrator of that browser should.

Know your network.

Port scanning from a user’s browser is effectively sneaking behind a user’s firewall. The only legitimate reasons I can envision are security research, and this, to me, is such a small edge case that I’m not sure such access is ever warranted.

I’d be all for a user notification that says “fnord.com wants to access 192.168.0.10 on tcp/443, which seems to be a web server on your home/work network. Are you sure you want to allow this?” I’d want to see this for each new access request, such that port scanning would not be a use case that was supported.

Sure, have an about:config toggle to shut this off, with appropriate warnings.