Viewing profile — marcinw
marcinw
HN member- Joined
- Fri, Oct 23, 2009, 12:38 AM UTC
- HN karma
- 742
- Public activity
- 118 items
- HN profile
- View on Hacker News ↗
About marcinw
No profile information was provided.
Recent public activity
-
comment
Comment #13331247
(I am one of the developers of Doorman). Some background, from osquery's site: "osquery allows you to easily ask questions about your Linux, Windows, and OS X infrastructure. Wheth…
- story
-
comment
Comment #8013037
Proper Python would use the csv module for this operation, as your CSV export would break if `header` or `dataset[key]` contains a comma.
-
comment
Comment #7963387
Matt Levine sheds more light on this story[1], backed by evidence whereas the NYTimes is just hearsay. Why would Barclay's screw over institutional investors who account for a larg…
-
comment
Comment #7938473
In addition to SQL injection, many "advanced search" engines will compile regular expression patterns from user input. Depending on the language, this can range from a simple Regex…
- story
-
comment
Comment #6678190
Right, like getting access to the DOM was ever a hard thing to do. I was specifically referring to web apps in that point, but because you insist, I'll just reference [1]. Another …
-
comment
Comment #6677950
Java, Python, etc don't have a DOM to consider. When you're just an XSS away from an attacker doing: function encrypt(plaintext) { $.post(plaintext, ...); return plaintext; } then …
- story
-
comment
Comment #5890164
And that's your problem. I was the same way, though I live in NYC. With every pay raise I upgraded my lifestyle. Whether I was making $50k/year or $100k/year, I wasn't saving anyth…
-
comment
Comment #5888909
Quitting social networks and using Tor and PGP isn't going to protect you from a nation-state intelligence agency. To suggest so is laughable and naive. We're not even at amateur h…
-
comment
Comment #5722628
I hear people say all the time they drink a lot of water, but when you ask them to measure it out, it's a joke. The answer to this problem is to sit at your desk with a gallon of w…
-
comment
Comment #5722621
We've solved this in the Matasano NYC office by: * Going downstairs for coffee * Playing a round or two of darts
-
comment
Comment #5720214
When I worked in machining, we all had anti-fatigue mats at our stations. Everyone wore Red Wing boots (sneakers are terrible for you), and I heard no complaints of foot pain.
-
comment
Comment #5676890
For one, a built-in theme editor that exposes you to remote command execution in the presence of another vulnerability, such as cross-site scripting (XSS).
-
comment
Comment #5577473
We're working on it, but you can expect to start them this evening.
-
comment
Comment #4092892
Neils Ferguson, et. al of Cryptography Engineering (p. 95) suggest that truncating a HMAC-SHA-256 to 128 bits should be safe, given current knowledge in the field.
-
comment
Comment #3450319
When it comes to the social stigma of taking a nap at work, just ask if they'd prefer you take a smoke break every hour. Usually, people will get the hint. If not, too bad.
-
comment
Comment #3317545
Am I only the person ever to like Load? I know it's not their best, but I still enjoyed it.
-
comment
Comment #3309634
Hmm, where to even begin.... I take it you've never ridden the subway.
-
comment
Comment #2969621
-I is an HTTP HEAD request (which may return a different response code than a traditional GET). To print the headers in any kind of request, use lowercase -i.
-
comment
Comment #2969461
Wow, 61% of websites that responded with an Access-Control-Allow-Origin header had a value set to "*". This allows for the website to be access in a cross-domain manner (think XSS,…
-
comment
Comment #2882329
That's the trick. I find having a coffee and then closing my eyes for 15 minutes leaves me more relaxed yet full of so much more energy than before to take me through the rest of t…
-
comment
Comment #2871363
There's plenty of those to go around...
-
comment
Comment #2773459
I must admit, as an American male, a little older than you, my score was also so low, I'm too embarrassed to even mention. All those years of cheating on vocabulary tests (merely b…