Viewing profile — carvalho
carvalho
HN member- Joined
- Sun, May 14, 2017, 2:12 AM UTC
- HN karma
- 139
- Public activity
- 24 items
- HN profile
- View on Hacker News ↗
About carvalho
No profile information was provided.
Recent public activity
-
comment
Comment #15679763
Edit: ...
-
comment
Comment #15642106
To be a fully random sequence, a sequence would have to contain substrings of apparent predictable beautiful order. If it didn't, it would be more predictable (you could then disca…
-
comment
Comment #15642017
It is not relevant that you were on the internet before Google even existed. Apparently you are the only person in the universe that regularly gets never-before-seen error messages…
-
comment
Comment #15637959
Maybe I never experienced it, because if I want to force exact match results I simply place the error message within double quotes. But often you do not need exact match searches t…
-
comment
Comment #15635135
Thanks, but can you please give a specific example? One, I do not share this experience, and think the quality issue is overstated (you are more likely to remember the time that a …
-
comment
Comment #15634853
Can you give an example of a random error message where the results do not match?
-
comment
Comment #15533382
There is nothing wrong with that, but it is good advice if your goal is to become exceptional. The only way to equal or beat someone naturally talented is to put in many hours. Rel…
-
comment
Comment #15447060
Way down this thread, so time to ask the question: Do American anti-virus, social media, and search companies do exactly the same, but for the US military? I've always found it sus…
-
comment
Comment #15421263
I do hope that companies like Twitter and Youtube take their responsibility. How about 15 years of jailtime for the CEO of a company that facilitates streaming of terrorist propaga…
-
comment
Comment #15158068
More like implementing a password hashing scheme using a library and not understanding the maths behind bcrypt. Or mocking up a proof-of-concept in Python with no idea of how to sp…
- comment
-
comment
Comment #15000831
Why wouldn't Youtube pass on any extremist material on to the FBI before making it unavailable for the wider public?
-
comment
Comment #14999374
War crime evidence can also be extremist material. It is often repackaged as propaganda to rile up new troops. Give evidence to the courts or police. Don't upload it to a video ent…
-
comment
Comment #14646632
It is basically WannaCry without the kill switch. It is using the same exploits (EternalBlue). Not some recent zero-day, but sloppy patching.
-
comment
Comment #14582535
In Europe there is a mindset that companies can become so big that you can not avoid them anymore. Nobody forces you to use Google or Facebook, but you are put at a disadvantage if…
-
comment
Comment #14557299
The major concern for the US military when attacking North Korea was not nukes, but military hackers inside a bunker disrupting everything. There probably is a lot of know-how ther…
-
comment
Comment #14557282
Of note: The Shadow Brokers hinted at the same thing a few weeks back. "In May, No dumps, theshadowbrokers is eating popcorn and watching "Your Fired" and WannaCry. Is being very s…
-
comment
Comment #14441216
Prolog is used in IBM Watson, Datalog, and AFAIK in Windows OS. Prolog is not so popular for general purpose computing since: compilers are inconsistent, compatibility problems, di…
-
comment
Comment #14372251
Apparently I was part of a test where input sanitization was turned off. Reported and fixed before they could push it live. Very "monkey on a typewriter". I was not even looking fo…
-
comment
Comment #14372112
On Quora someone asked what the longest search query time was. I was able to craft a query that took multiple seconds to complete. It used wildcards and undocumented iteration allo…
-
comment
Comment #14371534
Depending on the severity of your finding, your report could wake up a senior security engineer. When your report is out of scope, Google will not ignore your report. When there is…
-
comment
Comment #14371466
Good catch! Also studied Google's 404 pages. Seems like they have unified all but a few of them. One of them I found was vulnerable to old utf-7 injection (specified customizable p…
-
comment
Comment #14337972
I was surprised to find the Central Intelligence Agency in my weblogs. This means they both leave JavaScript on and use the company IP for casual browsing. I'd expect that they mak…
-
comment
Comment #14333916
My first (and last) non-compete was when I was starting out as a web developer in a small company. By the time I fully realized what I had signed I had contractually given up my ri…