Live data from Hacker News

Viewing profile — HerraBRE

HerraBRE

HN member
Joined
Sat, May 29, 2010, 7:08 AM UTC
HN karma
875
Public activity
309 items

About HerraBRE

Icelandic hacker, ex-Googler, focusing on Free Software, online privacy and doing my own thing.

My home-page: http://bre.klaki.net/

My projects: https://pagekite.net/ and https://www.mailpile.is/

You can send me e-mail at: bre at my project's domain.

Recent public activity

  1. story
  2. comment
    Comment #23869355

    This is neat! DoH/DoT over Tor will provide stronger security and privacy guarantees across the board, but a well run .odns (anycast, good caches) could probably provide better per…

  3. comment
    Comment #20614959

    To expand on this slightly, and illustrate: I'm going to go out on a limb, and assert that THE most common attack performed against peoples' e-mail, is a jealous person who knows t…

  4. comment
    Comment #20614614

    I wrote [most of] Mailpile. I'll check back here now and then and try to answer any questions folks have.

  5. comment
    Comment #20614598

    That's an interesting idea. I'd hesitate to implement it though, because of secondary risks. It would need to be thought through very carefully, and there are a whole bunch of abus…

  6. comment
    Comment #20614558

    Unless your adversary has a time machine, deleting from the server protects your past e-mails from any server-side compromise. That's not nothing. :-) But you're right there are tr…

  7. comment
  8. comment
    Comment #14661858

    This is still a muddled view of things. In pay-for-click, advertisers are paying for advertising which is effective. The click is how that is measured. There are other ways to meas…

  9. comment
    Comment #14646105

    Why do you say it was censored and removed? It's dropped down to page two, but that's perfectly normal once something has been on the front page for a while.

  10. comment
    Comment #14645723

    Neither of us knows this, so we may as well stop arguing about it. What we do know, is that running the servers and hiring all those engineers costs money, and their revenue is alm…

  11. comment
    Comment #14644464

    That is not how Google's business works. Advertisers quite literally pay for clicks. That was part of how Google disrupted the market back in the day; most other advertising networ…

  12. comment
    Comment #14644393

    It's still a means to an end. You don't pay with your data, you "pay" by interacting with ads. Consider that Google actually became super profitable well before all the detailed tr…

  13. comment
    Comment #14644036

    I actually feel it's misleading and wrong at a very fundamental level; this was the only thing I disagreed with in the whole press release! Consumers "pay" for Google's services by…

  14. comment
    Comment #14420540

    This is a legitimate concern. I would not put it past Facebook (or other businesses which are addicted to harvesting user data) to behave badly against networks like this. However,…

  15. comment
    Comment #14418353

    If the social contract says "delete things when you see a delete message", then that's useful in a federated environment. Only bad actors will disobey and they will have to modify …

  16. comment
    Comment #14089863

    People keep saying that. Lots and lots of species will go extinct before we do. And it will be our fault . Sure, the hunk of rock we call a planet will go on, and life will go on, …

  17. comment
    Comment #13749935

    Mostly it meant SREs tended to be older than other engineers at Google (I was an SRE there for a while), I think by an average of nearly a decade. Broad experience, depth on a few …

  18. comment
    Comment #13746825

    It's not mentioned in the article, but there is an underlying point that affects hiring for roles like this: you need people who can and will admit they don't know everything and w…

  19. comment
    Comment #13737022

    This attitude is harmful. Although new and better protocols is a worthy area of research and development, we should also improve the tools people are already using. Note I said res…

  20. comment
    Comment #13732719

    Mailvelope is a much better choice if your goal is to interact with the existing OpenPGP ecosystem; E2E was using ECC keys only if I recall, which makes their crypto incompatible w…

  21. comment
    Comment #13729003

    Thank you for injecting some optimism. :-) I'm disappointed and cynical about this.

  22. comment
    Comment #13728915

    If this is all that has happened since August, well, the commit speaks for itself: https://github.com/e2email-org/e2email/commit/434f99c66efe49... Hopefully there's more to come! :…

  23. comment
    Comment #13728850

    It looks like Google just pulled the plug on this: https://security.googleblog.com/2017/02/e2email-research-pro... HN submission: https://news.ycombinator.com/item?id=13728327 (Gen…

  24. comment
    Comment #13728812

    This appears to be a weak attempt to spin as positive the news that Google have abandoned the end-to-end project... mysteriously posted when everyone is busy processing the SHA1 an…

  25. comment
    Comment #13691805

    Thank you for sharing your experience, it's enlightening. I'm glad you're in a better place now.