Live data from Hacker News

Viewing profile — lucasluitjes

lucasluitjes

HN member
Joined
Mon, Nov 09, 2020, 5:11 PM UTC
HN karma
240
Public activity
65 items

About lucasluitjes

I'm a one-stop dev/devops/infosec shop for startups. See https://www.luitjes.it for lots of details.

Recent public activity

  1. story
  2. story
  3. story
    Show HN: testing Ansible playbooks *fast*

    Testing ansible playbooks against local VMs is nice. But also pretty slow. I was wondering how far I could optimize that process while still having full reproducibility. rebuild.sh…

  4. comment
    Comment #47478800

    The ones mentioned in this thread all use Kiwix for off-line wikipedia, OSM for maps, Khan for educational videos. It looks like internet-in-a-box is aimed at working well on low-p…

  5. comment
    Comment #47296068

    The full report can be found here: https://services.google.com/fh/files/misc/2025_state_of_ai_a... That 17% increase is in self-reported effectiveness. The software delivery throug…

  6. comment
    Comment #47232723

    I've been annoyed with Google search quality lately and was wondering how the others fared on this specific issue. Turns out, mostly not much better. Bing, DuckDuckGo, Qwant, Ecosi…

  7. comment
    Comment #46704811

    Agree with all of that, especially modern supply chain risk (imho the more important reason to opt for VM isolation rather than containerization). But the original article specific…

  8. comment
    Comment #46698519

    It's the default behaviour for Vagrant. You put a Vagrantfile in your repo, run `vagrant up` and it creates a VM with the repo folder shared r+w to `/vagrant` in the VM.

  9. comment
    Comment #46692858

    > What you’re NOT protecting against: > a malicious AI trying to escape the VM (VM escape vulnerabilities exist, but they’re rare and require deliberate exploitation) No VM escape …

  10. comment
    Comment #46466644

    Location: The Netherlands. I'm flexible with working hours, I usually work with clients from either Western Europe or the USA. Remote: Yes Willing to relocate: No, but willing to t…

  11. comment
    Comment #45780595

    This. If you were writing a script to mass-scan the web for vulnerabilities, you would want to collect as many http endpoints as possible. JS files, regardless of whether they're c…

  12. comment
    Comment #45780503

    GrapheneOS is basically the Android equivalent of iOS Lockdown mode. Considering how the threat landscape has changed, it would be nice if Google offered this itself. Or became a l…

  13. comment
    Comment #45438614

    SEEKING WORK | REMOTE | Dev, DevOps, Security | Location: The Netherlands Willing to relocate: no, but willing to travel/visit. I'm flexible with working hours, I usually work with…

  14. comment
    Comment #45147739

    TLDR: they wrapped prompts with concepts from Buddhism and got better performance on alignment tests. Actual prompts are in appendix D in this PDF: https://osf.io/az59t I'm curious…

  15. story
  16. comment
    Comment #45101376

    SEEKING WORK | REMOTE | Dev, DevOps, Security | Location: The Netherlands Willing to relocate: no, but willing to travel/visit. I'm flexible with working hours, I usually work with…

  17. comment
    Comment #44941645

    > I have recently written security-sensitive code using Opus 4. I of course reviewed every line and made lots of both manual and prompt-based revisions. > Cloudflare apparently did…

  18. comment
    Comment #44447853

    I've seen LLMs generate plenty of wildly insecure code, but the percentage of insecure solutions out of the solutions that are functional, is even higher than I expected. Also, I'm…

  19. comment
    Comment #44447774

    Hardcoded API keys and poorly secured backend endpoints are surprisingly common in mobile apps. Sort of like how common XSS/SQLi used to be in webapps. Decompiling an APK seems to …

  20. comment
    Comment #44447606

    Ironically if you wanted to build that accurately and quickly, you would probably end up having an LLM classify content as being LLM-related or not. Keyword-based filtering would h…

  21. story
  22. comment
    Comment #42920609

    SEEKING WORK | REMOTE | Dev, DevOps, Security | Location: The Netherlands Willing to relocate: no, but willing to travel/visit. I'm flexible with working hours, I usually work with…

  23. comment
    Comment #42908791

    Here you go: javascript:(function(){window.scrollTo({top:0,behavior:'smooth'});})();

  24. comment
    Comment #42610126

    That is amazing research! Reminds me a bit of the 2017 research of RCE on a DNA sequencing machine by synthesizing shellcode in actual DNA/RNA molecules [0]. I was gonna say "next …

  25. comment
    Comment #42584781

    SEEKING WORK | REMOTE | Dev, DevOps, Security | Location: The Netherlands Willing to relocate: no, but willing to travel/visit. I'm flexible with working hours, I usually work with…