HN user

whirlwin

253 karma
Posts6
Comments135
View on HN

So bubblewrap is the community medicine to this issue. But isn't it funny that we're now trusting a single GH user (although allegedly a RH employee) for the supply chain security? Imagine bubblewrap itself being compromised.

Now you trust a single GH user rather than a company. Fair enough. I just think it's very paradoxical.

Not long ago RH Product Security created a blog post around lola, their AI context package manager. Ref: https://developers.redhat.com/articles/2026/04/08/manage-ai-...

The article refers to their GH repo and that was all cherry and sunshine up until just recently, where it is redirected to https://github.com/LobsterTrap/lola.

No mention of it anywhere. "Did it get compromised?" was my initial thought. Still in the fog here.

[dead] 3 months ago

If you don't have ad-blocker, you will get redirected to betting/crypto broker sites

Windows is just a wonderful box of chocolate that keeps expanding. You never know what you get, all brilliant frontier tech innovations like Edge, Bing, the calculator, vertical taskbar, and now the highly intelligent Copilot, up there fighting with OpenCode, CC and others...!

For showing something "hacker-looking" in the screen, I think also tcpdump could be a good alternative, because nmap might be a bit slow...

Gentoo on Codeberg 5 months ago

Many European software companies are looking for alternatives outside the US now with the geopolitical situation between the US and EU. It's not only limited to the three big cloud providers, but Microsoft in general, in addition to other US providers.

TLS certificates is not the only technology for which the default mode is failure. What about disks, databases or syntax errors in configuration files in general?

In technology, there are known problems and unknown problems. Expiring TLS certificates is a known problem which has an established solution.

Imagine if only some of the requests failed because a certificate is about to expire. That would be a debugging nightmare.

This is how Heroku has been doing it for years since it started out 10+ years ago.

$ git push heroku master

So you'll have to make sure to push to e.g. GitHub as well for version control.

You're pointing out something important. I think it's feasible for the crowd who dislikes the overall direction Docker has been heading and need a simple drop-in replacement

The socialists’ rallying cry has long been, “Finally, it’s ordinary people’s time.” But in reality, ordinary people have seen their wealth steadily decline, while the state has only grown fatter and richer. The slogan should be more honest: “It’s the state’s time now.”

Now the state has more employees and will continue growing to attain more power, and thereby more voters. Having worse public services than 10 years ago while the spending has increased drastically is a bad sign.

That being said, it'll have to get drastically worse before ordinary people realize where their money went, and then it might shift

For Norwegian situation, I can recommend the book "The country that got too rich" which in fact is very accurate. Socialism works to a point but if it continues to spiral into more aggressive socialism you will end up in a much worse place for everyone, this is where Norway is heading the moment unfortunately even though we are a social democracy on paper.

iTerm2 Web Browser 10 months ago

Would be nice if the browser tabs had a terminal pane inside. Usually I'm reading something in the browser that I want to immediately run via the terminal.