Live data from Hacker News

Viewing profile — aleksejs

aleksejs

HN member
Joined
Fri, Apr 05, 2019, 1:40 AM UTC
HN karma
91
Public activity
32 items

About aleksejs

No profile information was provided.

Recent public activity

  1. comment
    Comment #49212347

    I'm not sure I understand the intended message here. The author seems to describe their own project as "cover[ed] ... with invasive advertising" while saying that new technology ac…

  2. comment
    Comment #49184614

    > If you go looking for the public record of what Mythos actually found you land on roughly 40 CVEs, and 28 of those are Firefox and 9 of them are wolfSSL. A browser and a cryptogr…

  3. comment
    Comment #49141161

    I just added CEC to mine today by soldering some wires to my DP-to-HDMI adapter and having Claude write some firmware to run on a Pi Pico to inject the CEC messages at the right ti…

  4. comment
    Comment #49102135

    That limitation can be bypassed through the Accessibility API on Android. KineStop supports this, but for some reason does not advertise it particularly widely. You want KineStop →…

  5. comment
    Comment #48954946

    That sounds fun too!

  6. comment
    Comment #48954591

    Buried at the bottom of the article, my favorite thing about modern Lego kits: > One of the most intriguing features is unlocked when you press the ‘build together’ button on selec…

  7. comment
    Comment #48770393

    The camera (even the regular model) does not have its own GPS receiver at all. It relies on a smartphone to transmit GPS coordinates over Bluetooth. This is pretty common in modern…

  8. comment
    Comment #48517793

    You can install a custom operating system on (a non-carrier-locked model of) every phone Google has ever made.

  9. comment
    Comment #48341638

    > This is imperfect, as CAA record validation is not mandatory yet. But by March 2027 all the CAs a supposed to have support. Is that true? My read of Section 1.2.1 in [1] suggests…

  10. comment
    Comment #48341172

    The jabber.ru post referenced here presents clear evidence (in the section titled "Network") that the malicious actor was able to reroute traffic going to the legitimate jabber.ru …

  11. comment
    Comment #48165408

    The leasing company leases these cars to Uber drivers in NYC, who presumably did not get cut off.

  12. comment
    Comment #48087580

    > It doesn't provide a useful security feature, but it does lock out competition very well. This seems to presuppose that service providers using reCAPTCHA are either clueless idio…

  13. comment
    Comment #48087551

    TFA is authored by the developers of an alternative operating system that can be freely installed on every Google phone since Pixel 6.

  14. comment
    Comment #48087499

    It argues no such thing. Of the 20 instances of the word "interest", 19 are obviously referring to the interest that the IRS will charge you on your balance if you don't pay your t…

  15. comment
    Comment #46746295

    It's a cultural difference thing: https://russian.stackexchange.com/questions/13142/what-do-or...

  16. comment
    Comment #46746179

    How do you even begin to define what correctness means for the transformations if you have no formalized model of the thing you're transforming into?

  17. comment
    Comment #46745575

    The linked website and repository do not refer to the outputs as "verified C++". The use of that term in the submission title here seems misleading, and the Design Principles [1] d…

  18. story
  19. story
  20. comment
    Comment #46257455

    I'm not sure why you take me for a JSON/JWT fan (I'm happy to agree they've had their own share of implementation bugs), or what that has to do with signature wrapping bugs in XML-…

  21. comment
    Comment #46256667

    I am comfortable saying that, when designing a signature scheme, people should not want features that are known to consistently lead to catastrophic vulnerabilities.

  22. comment
    Comment #46256372

    That is not, in fact, the question. The whole point of storing signatures separately from the serialized bytes they sign is not having to rely on any properties of the serializatio…

  23. comment
    Comment #46251591

    Most of these attack vectors have been known for 10 years, and yet researchers keep finding bugs in major implementations to this day. Here's one from last week: https://portswigge…

  24. comment
    Comment #46123842

    > God forbid you have an accident and you end up at the wrong hospital when the one down the road is in-network but the one they took you to is out-of-network and you wake up owing…

  25. comment
    Comment #45715826

    > The focus on maps and gemini is hilarious. The first is literally the anti-use case, It reminded me of the Wii U Street View app and the interview with its developers (at https:/…