Live data from Hacker News

Viewing profile — babawere

babawere

HN member
Joined
Fri, Dec 21, 2012, 5:20 PM UTC
HN karma
1,603
Public activity
194 items

About babawere

No profile information was provided.

Recent public activity

  1. comment
    Comment #47718073

    Both, honestly. Fun and production intent. But `production` here is very specific, embedded in a single Go binary, a single *.db not a CLI tool (the cli you see there is just for i…

  2. comment
    Comment #47717475

    The first bug has been confirmed however The second `vulnerability` would only be exploitable if an attacker could also break SHA-256 preimage resistance to forge valid checksums ?…

  3. comment
    Comment #47717153

    Thanks for sharing this. secret looks really well thought out, the three-layer key hierarchy is impressive. And using `age` is a solid choice. once considered it. Different trade-o…

  4. comment
    Comment #47716982

    Thanks for the look. On the verification hash, you're right, SHA256 would work there. Argon2id was overkill, I agree 100%. The crash-safe WAL is the part I'm most nervous about too…

  5. comment
    Comment #47716871

    So have been told. Will definitely look for a better name

  6. comment
    Comment #47716867

    thanks for the update ... will definitely look for a better name

  7. comment
    Comment #47716858

    Honestly… the initial use case is to hide certs from the file system and secrets from the environment. However, this can be extended. The primary issue has been not being able to m…

  8. comment
    Comment #47716831

    Definitely … agents cannot access your password unless you save it to the environment too. However it's better to use resolvers ... depending on your use case

  9. comment
    Comment #47716802

    not when you need an audit system

  10. comment
    Comment #47716781

    I was thinking its better to be boring-correct :)

  11. comment
    Comment #47716772

    Even when you have a proper function and use AI for auto documentation, it silently changes it (insane) … I will defiantly fix this.

  12. story
    Show HN: Keeper – embedded secret store for Go (help me break it)

    Keeper is an embeddable secret store (Argon2id, XChaCha20-Poly1305 by default). Four security levels, audit chains, crash-safe rotation. Vault is overkill for most use cases. This …

  13. story
  14. comment
    Comment #19668231

    Can you please explain in details?

  15. story
  16. story
  17. story
  18. story
  19. comment
    Comment #9099650

    Its came with the version 7 and you can see here https://help.comodo.com/topic-72-1-451-6840-.html it says You can install PrivDog while installing Comodo Internet Security or by d…

  20. comment
    Comment #9090861

    Why would comodo promote such a software ???

  21. comment
    Comment #9090844

    Its bad enough because this was bundled with Comodo Internet Security ( https://help.comodo.com/topic-72-1-451-6840-.html and https://help.comodo.com/topic-169-1-413-6109-.html )

  22. story
    Is PrivDog another Superfish

    While reading about Superfish, I ran this simple test at https://filippo.io/Badfish/ by visiting the webpage and noticed despite the fact i don't have superfish installed i failed …

  23. story
  24. story
  25. story