Viewing profile — maltalex
maltalex
HN member- Joined
- Wed, Oct 04, 2017, 10:01 PM UTC
- HN karma
- 3,952
- Public activity
- 679 items
- HN profile
- View on Hacker News ↗
About maltalex
Recent public activity
- story
- story
-
comment
Comment #48243684
This looks suspiciously cheap. The same model hosted by other providers is much more expensive [0]. So either DeepSeek can host it much cheaper than anyone else, or their business …
-
comment
Comment #48229722
Any automation-friendly email hosting is going to have a serious spam problem, and therefore a blacklisting problem. I suggest taking a look at what providers like Sendgrid, Mailch…
-
comment
Comment #48144452
An alternative explanation for this “over-hiring” is that many companies’ operating expenses have grown substantially because of AI spending. Companies can either eat the additiona…
-
comment
Comment #48057893
> 1. human verification for auth. How, at scale?
-
comment
Comment #47726697
Wouldn't a "WebRip" have to come from a streaming service by definition?
- story
-
comment
Comment #47604742
Only with certificate pinning or something similar. Otherwise, the attacker can get valid TLS certificates for any domain hosted on the hijacked IP addresses.
-
comment
Comment #47602055
Here are some examples: The attacker can impersonate the victim, get a valid x509 certificate issued to it, and create a perfect replica of their website/api/whatever. The attacker…
-
comment
Comment #47601086
RPKI doesn't make BGP safe, it makes it safer . BGP hijacks can still happen. RPKI only secures the ownership information of a given prefix, not the path to that prefix. Under RPKI…
-
comment
Comment #47559479
Absolutely. They've made the same mess with "Copilot" as with ".NET" in the early 00's [0]. Everything was ".NET" from consumer oriented services (".NET Passport"), to "Visual Stud…
-
comment
Comment #47557799
“Copilot” is not one product, it’s around 15 different products, seriously. I think that people often compare apples to oranges by comparing the “copilot” they have in Windows/Offi…
- story
- story
-
comment
Comment #47331311
> and nobody cares Everyone cares. In fact, there's an entire industry of tools being developed to solve this very problem. The current governance gaps are obvious to anyone who's …
-
comment
Comment #47241636
Maybe I'm missing something, but isn't this the same as writing code, but with extra steps? Currently, engineers work with loose specifications, which they translate into code. Wit…
- comment
-
comment
Comment #47101458
> Dependabot has some value IME, but all naïve tools that only check software and version numbers against a vulnerability database tend to be noisy if they don’t then do something …
-
comment
Comment #47043580
It's not just open source though. Many high quality sources of information are being (over-)exploited and hurt in the process. StackOverflow is effectively dead [0], the internet a…
-
comment
Comment #46949020
> you are both confusing two issues. How am I confusing the two? My whole point was the same as yours - that the existence of lawful intercept is a separate issue and that the focu…
-
comment
Comment #46947898
I get that you don't like lawful intercept. That's fine. But focusing on only that aspect of telcos derails the conversation and prevents us (in the very broad sense of "us") from …
-
comment
Comment #46947154
Even if the back door wasn't there, you wouldn't want nation state hackers anywhere near telecoms since they're critical infrastructure. Telecoms should be highly secure. Period.
-
comment
Comment #46947070
Yes, telecoms should be forced to invest in their own security if they're not doing it. But the focus on the back door misses the point in my opinion. Even if the back door wasn't …
-
comment
Comment #46946468
The problem isn't the back door. Every telecom company in every country provides access for "lawful intercept". Phone taps have been a thing for decades and as far as I know, requi…