Live data from Hacker News

Viewing profile — larssorenson

larssorenson

HN member
Joined
Mon, Sep 22, 2014, 7:38 PM UTC
HN karma
166
Public activity
69 items

About larssorenson

No profile information was provided.

Recent public activity

  1. comment
    Comment #29808778

    Your concerns aren't unfounded, but they're a bit misplaced. Password managers aren't intended to protect you from a local attacker, on your machine, like the malware you described…

  2. comment
    Comment #27096187

    You're right, it is done. I worded my comment carefully to leave room for this because it's hard to prove a negative, but I stand by my statement, specificay in refuting the implic…

  3. comment
    Comment #27095844

    GMO's are not produced by targeted radiation in the way you have described, at least not as common practice (i.e. the GMO food you buy isn't created this way). GMO crops are genera…

  4. comment
    Comment #24549069

    It's worth drawing the distinction that Steam, as opposed to Apple and their app store, does not hold an exclusive monopoly and cannot dictate where users can install software from…

  5. comment
    Comment #24384296

    I had this happen recently with a finance website! Although technically the reverse, it silently stopped logging me in because the password field was changed to use HTML validation…

  6. comment
    Comment #24384276

    Interesting, I haven't worked with rainbow tables very much since by the time I got into the world of hash cracking it had either been deprecated by salting or wasn't relevant (i.e…

  7. comment
    Comment #24384262

    Unfortunately short of forcing everyone to use an ORM I don't see how we can block the unsafe API, which I'm assuming to be the string-based query interface e.g. `conn.query("SELEC…

  8. comment
    Comment #24380255

    Compromising the hash and salt, since they must be stored close together, makes it possible to identify if the salted hash is a password in a corpus of previously compromised passw…

  9. comment
    Comment #24324126

    You're probably thinking of the twitter account @justsaysinmice, https://twitter.com/justsaysinmice . For the uninitiated and otherwise unaware, many studies regarding illnesses, d…

  10. comment
    Comment #21685557

    It is worth noting that there exists legitimate RATs that offer the bullet point features you've highlighted. The marketing issue is another problem entirely; these legitimate proj…

  11. comment
    Comment #21355972

    > I think a lot of vegans drink soy and pea protein powders to get enough protein in their diet. Actually a common misconception, most vegans get more than enough protein in their …

  12. comment
    Comment #21018709

    The previous discussion on HN highlighted Mens rea with regards to establishing intent, i.e. they didn't have criminal intent (they went in with the understanding that they had ful…

  13. comment
    Comment #20847722

    As a vegan who tracks their nutrients and vitamins pretty closely, I do not have trouble getting enough choline. The big hits in the vegetable world are: soybeans, cauliflower, pot…

  14. comment
    Comment #20556786

    Sweeteners are addictive, leads to more sales.

  15. comment
    Comment #20556721

    Re: stores that promote home cooking, their prices make them largely inaccessible to the broader market (and those who make less) since they tend to be branded "health food stores"…

  16. comment
    Comment #20556677

    I would posit that even mass manufactured is slightly off point. For instance, if you can produce bread dough of the same consistency and quality with 4 ingredients (flour, water, …

  17. comment
    Comment #20556624

    As a note, "sugar" isn't the only added sugar ingredient you'll find in bread, or really any packaged food. For instance, I read through the nutrition guide for Breadsmith's breads…

  18. comment
    Comment #17386942

    As someone who works as a "white hat hacker", allow me to shine some light on the industry. There are many branches, distinctly divided into two categories: Red team/Attackers and …

  19. comment
    Comment #17181921

    Yes, the author is specifically refering to KVM ( https://en.wikipedia.org/wiki/Kernel-based_Virtual_Machine ) which was merged into the Linux kernel in 2007. Whereas Docker ( http…

  20. comment
    Comment #10881857

    I thought the exact same thinng.

  21. comment
  22. comment
    Comment #10880168

    I got as far as the Security section before I had to comment. They claim they care about data and user security by providing a fingerprint reader, which is known to be a poor metho…

  23. comment
    Comment #10756555

    But I feel like it would have been the same if he got to the point he did and recognized that he had access to keychains. Whether or not he actually accessed them,especially since …

  24. comment
    Comment #10756536

    I see your point but I'm not sure if having passwords like 'changeme' qualifies as being a privacy violation... You should almost expect it to happen at that point. But I do recogn…

  25. comment
    Comment #10755103

    While I'm on his side, his wording seems to indicate he did download data from SOME of the buckets, just not those specifically containing user sensitive data.