Live data from Hacker News

Viewing profile — ge0rg

ge0rg

HN member
Joined
Thu, Apr 01, 2010, 12:31 PM UTC
HN karma
3,510
Public activity
566 items

About ge0rg

Ph.D., IT Security consultant, geek.

[ my public key: https://keybase.io/ge0rg; my proof: https://keybase.io/ge0rg/sigs/IbGDkSaF88bGZ5TR2pBfzVgSpIjQIR2ujem0AQx0qms ]

Recent public activity

  1. story
  2. story
  3. comment
    Comment #46957825

    This is technically true, and nobody contested the CABF's focus on HTTPS TLS. However, eventually, the CABF started imposing restrictions on the public CA operators regarding the i…

  4. comment
    Comment #46956494

    Let's Encrypt also provides value by providing signed TLS certificates that are enrolled in all major operating systems, and that can be used to authenticate any TLS server. This i…

  5. comment
    Comment #46953404

    The public TLS PKI was never supposed to serve every use case and you know it. But let me point out when it was possible to get a public CA certificate for an XMPP server with SRVn…

  6. comment
    Comment #46953270

    Yes, this is what is happening. It isn't happening fast enough, so some implementations (especially servers that don't upgrade often enough, or running long-term-support OS flavors…

  7. comment
    Comment #46953171

    Can you point out, at which point in time exactly, the public TLS PKI infrastructure has been reduced to WebPKI?

  8. comment
    Comment #46953081

    A federated ecosystem of servers that need to verify each other based on their domain name as the identity is the prime use-case for a public CA to issue domain-verified client cer…

  9. comment
    Comment #46952933

    It is really great how they write "TLS use cases" and in fact mean HTTPS use cases. CA/Browser Forum has disallowed the issuance of server certificates that make use of the SRVName…

  10. story
  11. comment
    Comment #46588277

    The interop was a nice feature implemented by their engineers, but it violated the lock-in operational principles of the gatekeeper services, so it had to be abandoned. Let's see i…

  12. story
  13. story
  14. comment
    Comment #45379590

    Yeah, I've documented a thing or two about the NX series on https://op-co.de/blog/tags/samsung-nx/ Regarding the RTOS, I took my NX300 from the shelf some weeks ago to make a few s…

  15. comment
    Comment #45372726

    The other half of the problem is what to gain from a root shell. You can't influence the stages of the image processing without a PhD in Sony DSP Reverse Engineering, and so what r…

  16. comment
    Comment #45370445

    When reverse-engineering some of the Samsung NX camera firmware files, I found USB-PTP code that implements different custom remote commands https://chaos.social/@ge0rg/11472307640…

  17. comment
    Comment #45370406

    The last two generations of Samsung NX cameras were built around Tizen Linux, and it was (and still is) easy to get a root shell on them. They still make great photos and you still…

  18. comment
    Comment #43912535

    Looks like it was invented by two Fujitsu engineers, is free of patents and maybe was optimized for hardware implementation? I've linked some Japanese sources in the post, but I do…

  19. story
  20. story
  21. story
  22. story
  23. story
  24. comment
    Comment #40972443

    Creating a high performance image processing pipeline requires significant engineering effort and probably a custom SoC or DSP. You need to take care of auto focus and all the othe…

  25. comment
    Comment #40972410

    I want back the UX of electronics from twenty years ago, with physical knobs and dials. Spare me the glitchy touch screens on kitchen appliances that can't be operated with wet fin…