Viewing profile — Sarien
Sarien
HN member- Joined
- Tue, Nov 20, 2012, 8:28 AM UTC
- HN karma
- 70
- Public activity
- 45 items
- HN profile
- View on Hacker News ↗
About Sarien
No profile information was provided.
Recent public activity
-
comment
Comment #8973195
I'm not sure how that is supposed to work. You would have to rewrite every webapp so that it's data can be protected by sandstorm. Which seems hugely impractical. And as long as th…
-
comment
Comment #8972897
I compromise an app, add myself admin account, log-in, download everything. What's stopping me?
-
comment
Comment #8972849
That's just marketing bullshit. Unless the API is magic (and I don't mean advanced technology "magic" but Harry Potter "magic") it has no way of knowing what the application is all…
-
comment
Comment #8972700
How can a COMPROMISED WEBapp ever not be able to leak data while being usable?
-
comment
Comment #8972640
Host authentication is a job of SSL though. So you should simply not log-in on a website if it cannot be verified that it is actually Paypal. This holds for both SQRL and passwords…
-
comment
Comment #8972246
@nly How does this system prevent me from setting up a website that looks like Paypal and giving you the address of my ssh server?
-
comment
Comment #8971874
It's pretty much the same thing but using QR codes. One thing that SQRL has is automatic management of different keys for each site. It wouldn't be hard to add that to the ssh vers…
-
comment
Comment #8971849
It's better because your browser doesn't have a button to clear your ssh private keys. Cookies simply aren't meant for storing important data.
-
comment
Comment #8953046
Q: "What does it do?" A: "A utility library delivering consistency, modularity, performance, & extras." Q: "Yeah, but what does it do?" A: "Oh, nothing but it does it consistently,…
-
comment
Comment #8873293
"there are legitimate uses for such keys" - not for crypto
-
comment
Comment #8640791
Doesn't this violate the minecraft ToS?
-
comment
Comment #8636143
But paypal/ebay is a third party. Something that this system tries to avoid.
-
comment
Comment #8635404
In short: The protocol is not even remotely thought through. It is incomplete and cannot work the way it is described. I wonder if it is theoretically impossible to create a protoc…
-
comment
Comment #8602131
Oh, sorry! Confused.
-
comment
Comment #8602023
Well, at least I'm not the only one who apparently didn't pay attention for half of the tutorial. :)
-
comment
Comment #8601982
Oh, I thought it was in the same row. Well, that makes more sense. I treated it like a form of sudoku with only 2 symbols and 3 repetitions allowed.
-
comment
Comment #8601970
Bug? http://imgur.com/DmSGy76
-
comment
Comment #8268514
I intentionally did not try to answer the question myself because I assume there are people who are much more familiar with the details of the XMPP protocol and much more suited to…
-
comment
Comment #8268137
I would like to know how this is different from jabber/xmpp and how likely it is that these differences are worthwhile. They say their API is more "pragmatic" and writing a full-bl…
-
comment
Comment #8041510
Best screenshot ever.
-
comment
Comment #7954369
It is a shitty generalization slandering all articles which (possibly poorly) chose a question as headline. This is obviously an "article" where the author was legitimately interes…
-
comment
Comment #7954338
Well, could anybody sum this up? Because I'm definitely not going to read Part 2 since it seems Fowler didn't even bother to produce correct sentences.
-
comment
Comment #7909154
Another headline completely bereft of any information.
-
comment
Comment #7909151
It's true and important why wouldn't it be enough?
-
comment
Comment #7882949
I am totally in favor of good tools with good visual representations but those almost always have to be handcrafted for every specific problem. Which is probably why Bret has never…