Live data from Hacker News

Viewing profile — int2e

int2e

HN member
Joined
Tue, Mar 03, 2009, 12:05 AM UTC
HN karma
24
Public activity
17 items

About int2e

I do security and some web mashups... http://int2e.com/blog/

Recent public activity

  1. comment
    Comment #798307

    Here's 30 ideas: http://ycombinator.com/ideas.html

  2. comment
    Comment #786659

    Every non-trivial app has vulnerabilities. One indication of a vuln is not "blatant incompetence" I've responsibly reported my fair share of Twitter vulns over the years. In genera…

  3. comment
    Comment #781842

    There are still lots of features I want to add, but any feedback is appreciated! :) There are a few internationalization issues to fix, but the basics work.

  4. story
  5. comment
    Comment #764933

    Some of the rectangle sizes look wrong. Compare "Walmart Profits" to "OPEC Climate Change Fund". Compare Google to Facebook.

  6. comment
    Comment #700693

    webpagetest actually renders the document and all referenced items. It's more similar to what firebug/yslow will tell you, and very useful for designing a site to load quickly.

  7. comment
    Comment #683532

    Be careful not to confuse uniques with impressions. Assuming 10 impressions per unique, that's still a very respectable CPM of $15.

  8. comment
    Comment #675796

    Perhaps there are some interesting corner-cases where the browser will locally cache the JSON. Time to go play with it...

  9. comment
    Comment #675782

    Yeah, XSSI has been well known for a while. This article's argument against using custom headers is a bit bunk. If you're not properly disabling proxy caching for sensitive data, y…

  10. comment
    Comment #671853

    I think they have value for branding. Because the cost to register an account is just one captcha solution, squatting twitter names seems to becoming more common.

  11. comment
    Comment #671775

    Any thoughts on how I should expand the tool? I can see it going two paths... 1) Add more social network sites and more features such as auto-registering your desired name once it'…

  12. story
  13. comment
    Comment #655601

    Every* web developer should be familiar with cross-site scripting (XSS) and how to prevent it. http://www.google.com/search?q=xss * If you don't have a login system or any sensitiv…

  14. comment
    Comment #655340

    just received an email letting me know they've deactivated my account: "Microsoft contracted with us, Intrepid Consultants, Inc, to conduct the TechNet Plus Pilot Study program res…

  15. comment
    Comment #618202

    It's definitely a useful trick for only showing certain content to certain users. For example, I wrote a script so you only show Digg buttons to visitors that have been to digg.com…

  16. comment
    Comment #509031

    How about just using hanging gets?

  17. comment
    Comment #500832

    It looks like some newspaper replacements are doing a fine job watching the gov (and the gov's money): http://www.tmz.com/2009/03/01/tmz-story-forces-bank-to-retur...