Live data from Hacker News

Viewing profile — angry_octet

angry_octet

HN member
Joined
Sat, Feb 08, 2014, 10:47 PM UTC
HN karma
5,650
Public activity
2,771 items

About angry_octet

No profile information was provided.

Recent public activity

  1. comment
    Comment #49259024

    It is insane that this key is not kept in a HSM. It would be good if there way a way to attest that a key was generated on and bound to a specific HSM.

  2. comment
    Comment #49256242

    Start with some train travel books. I enjoyed reading Paul Theroux Riding the Iron Rooster before and during travel around China.

  3. comment
    Comment #49256160

    No, that's not why.

  4. comment
    Comment #49256136

    "Is there telemetry? Yes, and it is opt-out: set ANTE_TELEMETRY=off" Opt-out every time is unacceptable. If you opt out once it should be enough. One accidental execution path with…

  5. comment
    Comment #49252681

    This is a very dangerous site for train travel geeks. Like, what am I doing with my life? I should be catching the Nile Valley Sleeper, 879km "Overnight up the Nile past Luxor’s te…

  6. comment
    Comment #49246461

    Who do you think created firecracker? gVisor?

  7. comment
    Comment #49243450

    LLMs are great at finding 0-day, and people are rubbish at updating their containers and hosts to patch b-day. Containers have access to the kernel ABI, and as shown in the latest …

  8. comment
    Comment #49240758

    Bubble wrap is just containerisation no?

  9. comment
    Comment #49240683

    Oh no, you should definitely be worried about that. Podman might make it harder to escalate to host root, or manipulate other containers, but it is still vulnerable. Now I'm curiou…

  10. comment
    Comment #49240646

    It's a VM.

  11. comment
    Comment #49237625

    I'm confused as to why Apple rejects astrology apps. They accept Bible and Koran apps...

  12. comment
    Comment #49236155

    ...andd they are now working for ICE HSI for higher pay.

  13. comment
    Comment #49230125

    Exactly the opposite of what I wrote. The OpenSSH team have taken extensive efforts to mitigate against bugs; they suspect themselves of erroneous thinking.

  14. comment
    Comment #49229789

    I can think of better straw men. But if they had approached their task with half the seriousness of the openssh maintainers then they probably wouldn't be failing to check the retu…

  15. comment
    Comment #49228649

    It's more likely to interfere in politics to achieve this objective: - Socialists are taking control of the town, we need the state to step in a protect jobs. - The councillors are…

  16. comment
    Comment #49227494

    I would love than, and it might happen as a process of natural selection, but instead we will get automated AI patch generation and patch application, and agentic EDR and agentic S…

  17. comment
    Comment #49227439

    That's what attackers do now. Exploring is required for discovering exploits. But that is also where tricks like Canary Tokens and honeypots are useful.

  18. comment
    Comment #49227419

    The way they had Artifactory configured was poor, and they were too reliant on it working perfectly, with no reason for such faith. Their config lacked any defence in depth and con…

  19. comment
    Comment #49227343

    Because of the architecture of Artifactory. It's design is premised on the idea it is bug free. What incredible hubris. Licencing fee structures and human laziness motivates single…

  20. comment
    Comment #49227260

    These attacks are also incredibly loud . Many attackers are motivated to operate very quietly. We haven't seen any tradecraft from these machines, it's all noisy and bombastic. Whe…

  21. comment
    Comment #49211067

    Maybe read the article before leaping to conclusions.

  22. comment
    Comment #49184712

    Is Chrome?

  23. comment
    Comment #49184643

    This is revolutionary stuff. It crystalises latent thoughts I've had about how to safely integrate agentic capability for serious work. We're starting to see indifferently architec…

  24. comment
    Comment #49144940

    Where do PVs work best? Since you can't put them on the roof, out in the back yard. So you run a long extension cord and plug them into a power board. Or in an apartment, there mig…

  25. comment
    Comment #49144887

    Traditionally we have been quite prescriptive about what people can do electrically on their side of the meter, in the name of protecting people from themselves. (Even with a grid …